Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
57 results
SWE-agent preview

SWE-agent

GitHubswe-agent/swe-agent

LLM-powered agent that autonomously fixes GitHub issues, finds cybersecurity vulnerabilities, and solves CTF challenges using configurable tool-use…

ai-securityctfeducation+4
20.1k
1 month ago
cheatengine-mcp-bridge preview

cheatengine-mcp-bridge

GitHubmiscusi-peek/cheatengine-mcp-bridge

Connect Cursor, Copilot & Claude AI directly to Cheat Engine via MCP. Automate reverse engineering, pointer scanning, and memory analysis using…

ai-assisted-reversingbinary-analysiscode-analysis+7
1.3k13 days ago
AperiSolve preview

AperiSolve

GitHubzeecka/aperisolve

Automated steganalysis platform that detects hidden data in images using 16 parallel analyzers, bit-layer visualization, and an in-app wiki for CTF…

cryptographyctfeducation+2
8373 days ago
dcipher-cli preview

dcipher-cli

GitHubk4m4/dcipher-cli

🔓Crack hashes using online rainbow & lookup table attack services, right from your terminal.

cryptographyctfhash-analysis+1
2335 years ago
exrop preview

exrop

GitHubd4em0n/exrop

Automated ROP chain generator for x86-64 binaries using symbolic execution. Supports register/memory writes, function calls, syscalls, badchar…

binary-exploitationctfexploit-frameworks+2
3095 months ago
dcipher preview

dcipher

GitHubk4m4/dcipher

Decipher hashes using online rainbow & lookup table attack services.

cryptographyctfhash-analysis+1
1525 years ago
crypto_identifier preview

crypto_identifier

GitHubacceis/crypto_identifier

Crypto tool for pentest and ctf : try to uncipher data using multiple algorithms and block chaining modes. Usefull for a quick check on unknown…

cryptographyctfencryption-decryption-tools+1
1278 years ago
wordreaper preview

wordreaper

GitHubnemorous/wordreaper

📜 Scrape targeted wordlists for password cracking using CSS selectors

crawlerctfinformation-gathering+5
514 months ago
quantumslop preview

quantumslop

GitHubyuvadm/quantumslop

Quantum solver for the Elliptic Curve Discrete Logarithm Problem using Shor's algorithm, implementing multiple oracle strategies to recover ECC…

binary-analysiscryptographyctf+3
264 months ago
binja_sensei preview

binja_sensei

GitHubnccgroup/binja_sensei

A plugin that provides resources for beginners to learn reverse engineering using Binary Ninja. It automatically installs several other plugins, and…

binary-analysisbinary-exploitationctf+4
269 years ago
CVE-2023-4427 preview

CVE-2023-4427

GitHubtianstcht/cve-2023-4427

Exploit for CVE-2023-4427 targeting Chrome 117 V8, using many cross-origin iframes to brute-force ASLR and achieve code execution. Provides…

binary-exploitationctfeducation+3
282 years ago
otto-support preview

otto-support

GitHubbishopfox/otto-support

An implementation of a vulnerable MCP server using mcp-go

api-securityauthentication-authorizationctf+5
194 months ago
silicon2022-capturetheflag preview

silicon2022-capturetheflag

GitHubpaill/silicon2022-capturetheflag

Collection of 41 capture-the-flag challenges deployed via Docker and Azure Kubernetes using the RootTheBox platform. Includes terminal-based puzzles…

ctfeducationlabs-practice
84 years ago
WEB-CLI_RCE_React2Shell preview

WEB-CLI_RCE_React2Shell

GitHubraivenlockdown/web-cli_rce_react2shell

WEB-CLI_RCE_React2Shell is an educational PoC exploit tool for CVE-2025-55182, a critical Prototype Pollution flaw in Next.js applications using…

ctfeducationexploitation+5
62 months ago
CVE-2024-14027_slop preview

CVE-2024-14027_slop

GitHublcfr-eth/cve-2024-14027_slop

Exploits for CVE-2024-14027 creating using AI/Claude as a test.

ai-assisted-reversingbinary-exploitationctf+3
65 months ago
Mahoraga-Webapp-Defender preview

Mahoraga-Webapp-Defender

GitHubageofalgorithms/mahoraga-webapp-defender

AI-powered reactive website defense system that detects attacks, analyzes them, and autonomously patches source code in real-time using LLM agents.

ai-securityapi-securityctf+6
43 months ago
ghostlock-vagrant-box preview

ghostlock-vagrant-box

GitHubdaniyal48/ghostlock-vagrant-box

An isolated Vagrant testbed designed to simulate a complete attack chain: Initial access via the Nginx heap buffer overflow (CVE-2026-42533) followed…

ctfeducationexploitation+3
11 month ago
Popcorn-TJNULL-OSCP- preview

Popcorn-TJNULL-OSCP-

GitHubr3fr4kt/popcorn-tjnull-oscp-

Popcorn HTB write-up covering advanced directory fuzzing, file upload bypass via magic numbers/extension spoofing using Burp Suite, and privilege…

ctfeducationexploitation+7
2 months ago
Previous1234Next