Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
enum4linux-ng preview

enum4linux-ng

GitHubcddmp/enum4linux-ng

A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security…

ctfinformation-gatheringnetwork-security+2
1.6k
6 months ago
bscan preview

bscan

GitHubwelchbj/bscan

an asynchronous target enumeration tool

ctfinformation-gatheringnetwork-mapping+4
2517 years ago
autoenum preview

autoenum

GitHubgr1mmie/autoenum

Automated service enumeration tool that runs parallel nmap scans, detects services, and launches targeted enumeration tools (nikto, gobuster,…

ctfinformation-gatheringnetwork-mapping+4
2303 years ago
zenbuster preview

zenbuster

GitHub0xtas/zenbuster

Multi-threaded URL enumeration/content-discovery tool in Python.

ctfinformation-gatheringpenetration-testing+2
1072 years ago
pspy preview

pspy

GitHubdominicbreuker/pspy

Monitor linux processes without root permissions

ctfinformation-gatheringpenetration-testing+2
6.2k5 months ago
recon preview

recon

GitHubknowledge-wisdom-understanding/recon

Enumerate a target Based off of Nmap Results

ctfdns-analysisdns-subdomain-enumeration+9
762 years ago
OFFPORT_KILLER preview

OFFPORT_KILLER

GitHubth3xace/offport_killer

Automates service identification behind manually discovered ports using NMAP, IANA, and Linux databases. Useful for penetration testing, CTFs, and…

ctfinformation-gatheringnetwork-security+3
505 years ago
PayloadsAllTheThings preview

PayloadsAllTheThings

GitHubswisskyrepo/payloadsallthethings

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

ctfcurated-resourceseducation+8
80.4k16 days ago
AutoRecon preview

AutoRecon

GitHubautorecon/autorecon

Multi-threaded network reconnaissance tool that automates service enumeration, port scanning, and information gathering for penetration testing and…

ctfinformation-gatheringnetwork-mapping+3
6.1k9 months ago
cloudgoat preview

cloudgoat

GitHubrhinosecuritylabs/cloudgoat

Vulnerable-by-design AWS deployment tool for hands-on cloud security training. Deploys curated CTF scenarios to practice IAM enumeration, privilege…

cloud-securityctfeducation+5
3.7k5 months ago
linux-smart-enumeration preview

linux-smart-enumeration

GitHubdiego-treitos/linux-smart-enumeration

Linux enumeration tool for pentesting and CTFs with verbosity levels

ctfinformation-gatheringpenetration-testing+2
4.0k3 months ago
linuxprivchecker preview

linuxprivchecker

GitHubsleventyeleven/linuxprivchecker

Local Linux enumeration script that identifies privilege escalation vectors including misconfigurations, world-writable files, clear-text passwords,…

ctfeducationinformation-gathering+3
1.8k5 years ago
WAES preview

WAES

GitHubshiva108/waes

Automated web enumeration and reconnaissance platform orchestrating nmap, nikto, gobuster, and other tools into a unified pipeline for CTF, bug…

ctfeducationinformation-gathering+7
707 months ago
Windows-Privilege-Escalation-Notes preview

Windows-Privilege-Escalation-Notes

GitHubsaisathvik1/windows-privilege-escalation-notes

Educational handbook on Windows privilege escalation: enumeration, kernel and service exploits, registry misconfigurations, and credential harvesting.

ctfeducationexploitation+5
594 years ago
IkeAbuser preview

IkeAbuser

GitHubrandomuser1983/ikeabuser

A simple tool wrapper to automate the enumeration, fingerprinting, and PSK extraction of an IPSec VPN gateway.

ctfeducationinformation-gathering+5
32 months ago
THM-MagnusBilling-CVE-2023-30258-Exploit preview

THM-MagnusBilling-CVE-2023-30258-Exploit

GitHubcyb3rk0ala/thm-magnusbilling-cve-2023-30258-exploit

Step-by-step walkthrough exploiting CVE-2023-30258 (MagnusBilling RCE) and escalating privileges via fail2ban misconfiguration on a TryHackMe lab.…

command-and-controlctfeducation+7
15 days ago
CVE-2015-1328 preview

CVE-2015-1328

GitHubfernandocassiodev/cve-2015-1328

Step-by-step walkthrough for exploiting CVE-2015-1328 (OverlayFS) to escalate privileges from a low-privileged user to root on Ubuntu 14.04. Includes…

binary-exploitationctfeducation+3
1 month ago
Zimbra preview

Zimbra

GitHubjam620/zimbra

Educational walkthrough of CVE-2022-27925 unauthenticated RCE exploitation on Zimbra Collaboration Suite, including mass target enumeration, PoC…

ctfeducationexploitation+3
83 years ago
Previous12Next