Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
63 results
bettercap preview

bettercap

GitHubbettercap/bettercap

The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.

bluetooth-securitydata-exfiltrationfingerprint-spoofing+16
20.0k
1 month ago
chisel preview

chisel

GitHubjpillora/chisel

Fast TCP/UDP tunnel over HTTP with SSH encryption, supporting reverse port forwarding, SOCKS5 proxy, and client authentication for secure network…

command-and-controldata-exfiltrationgeneral-purpose-utilities+8
16.6k1 month ago
pillager preview

pillager

GitHubbrittonhayes/pillager

Pillage filesystems for sensitive information with Go 🔍

data-exfiltrationinformation-gatheringpenetration-testing+4
31710 months ago
azure-pentesting-suite preview

azure-pentesting-suite

GitHubhac01/azure-pentesting-suite

Go toolkit for authorized Azure security assessments: enumerates subscriptions and resources, audits misconfigurations, and attacks public Blob…

cloud-securitydata-exfiltrationinformation-gathering+9
8812 days ago
CVE-2026-85706-gitlab-poc preview

CVE-2026-85706-gitlab-poc

GitHubgagaltotal/cve-2026-85706-gitlab-poc

Go exploit for CVE-2026-85706, an unauthenticated arbitrary file read in GitLab CE/EE Workhorse via URL-encoding bypass, with concurrent requests and…

data-exfiltrationexploitationpenetration-testing+3
18 days ago
antnium preview
Archived

antnium

GitHubdobin/antnium

A C2 framework for initial access in Go

command-and-controldata-exfiltrationpayload-development+3
1994 years ago
amass preview

amass

GitHubowasp-amass/amass

In-depth attack surface mapping and asset discovery

data-exfiltrationdns-analysisdns-fuzzing+10
15.2k5 months ago
mosint preview

mosint

GitHubalpkeskin/mosint

Automated email OSINT tool that verifies emails, checks data breaches and password leaks, finds related emails/domains, scans pastebin dumps, and…

data-exfiltrationemail-harvestinginformation-gathering+2
6.0k3 years ago
ethr preview

ethr

GitHubmicrosoft/ethr

Cross-platform CLI for network performance testing over TCP, UDP, HTTP, HTTPS, and ICMP: bandwidth, connections/s, packets/s, latency, loss, jitter,…

data-exfiltrationgeneral-purpose-utilitiesinformation-gathering+3
5.9k9 months ago
gonc preview

gonc

GitHubthreatexpert/gonc

Netcat with automated NAT traversal, secure P2P, and advanced features for shell access, file transfer, and network proxying.

command-and-controldata-exfiltrationencryption-decryption-tools+6
7325 days ago
HTTPUploadExfil preview

HTTPUploadExfil

GitHubingokl/httpuploadexfil

A simple HTTP server for delivering and exfiltrating files/data during, for example, CTFs.

ctfdata-exfiltrationpenetration-testing+1
821 year ago
cve-2022-44268-detector preview

cve-2022-44268-detector

GitHubjnschaeffer/cve-2022-44268-detector

Detect images that likely exploit CVE-2022-44268

binary-analysisdata-exfiltrationforensics+3
52 years ago
CVE-2026-69083_exploit preview

CVE-2026-69083_exploit

GitHub0xdak/cve-2026-69083_exploit

Python PoC for CVE-2026-69083, an unauthenticated SQL injection in SiYuan's asset-content search endpoint. Supports REGEXP breakout and raw SQL…

database-securitydata-exfiltrationexploitation+2
1 month ago
TotalCMS-Arbitrary_File-Upload--XSS_Steal_Cookies---TotalDepot preview

TotalCMS-Arbitrary_File-Upload--XSS_Steal_Cookies---TotalDepot

GitHubsromanhu/totalcms-arbitrary_file-upload--xss_steal_cookies---totaldepot

TotalCMS is affected by Arbitrary File Upload - XSS vulnerability which allows Cross-Site Scriting (XSS) Stored and also stealing session cookies

data-exfiltrationeducationexploitation+3
3 years ago
oss preview

oss

GitHubejfkdev/oss

Cross-cloud S3-compatible object storage CLI to list, export, and download buckets across AWS, Aliyun, Tencent, Huawei and more, with anonymous…

api-securitycloud-infrastructure-securitycloud-security+7
123 days ago
HackBrowserData preview

HackBrowserData

GitHubmoond4rk/hackbrowserdata

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

data-exfiltrationdigital-forensicsencryption-decryption-tools+4
14.6k7 days ago
sliver preview

sliver

GitHubbishopfox/sliver

Adversary Emulation Framework

adversarial-attackcommand-and-controldata-exfiltration+16
11.9k5 days ago
transfer.sh preview

transfer.sh

GitHubdutchcoders/transfer.sh

Easy and fast file sharing from the command-line.

data-exfiltrationencryption-decryption-toolsgeneral-purpose-utilities
15.9k4 days ago
Previous1234Next