Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
24 results
capability-sdk preview

capability-sdk

GitHubpraetorian-inc/capability-sdk

Shared Go SDK defining a standard capability interface for security scanners, with multi-format finding output (terminal, JSON, NDJSON, Markdown,…

defensive-toolsdevsecopsscripting-automation+4
1
3 days ago
MCPwnfluence preview

MCPwnfluence

GitHubplutosecurity/mcpwnfluence

Information about CVE-2026-27825 & CVE-2026-27826 discovered by Pluto Security and a bash script for identifying vulnerable mcp-atlassian instances…

configuration-auditingdevsecopseducation+3
77 months ago
log4jhound preview

log4jhound

GitHubmebibite/log4jhound

Created after the disclosure of CVE-2021-44228. Bash script that detects Log4j occurrences in your projects and systems, allowing you to get insight…

code-analysisdevsecopsstatic-analysis+2
4 years ago
Mitigaciones preview

Mitigaciones

GitHubnet0bsd/mitigaciones

Automated detection and mitigation of CVE-2026-31431 local privilege escalation on Linux via Bash scripts and Ansible playbooks, with CIS-standard…

configuration-auditingdevsecopsvulnerability-analysis
5 months ago
CVE_kernellinux_jsh preview

CVE_kernellinux_jsh

GitHubjshdevs/cve_kernellinux_jsh

Framework modular Bash para auditar CVE-2026-31431 (CopyFail) y CVEs relacionados del kernel Linux en distros RPM-based (AlmaLinux, Rocky, CentOS…

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
15 months ago
content preview

content

GitHubcomplianceascode/content

Generates SCAP, Ansible, Bash, and CEL security content for compliance evaluation and automated hardening across Linux hosts, containers, and…

cloud-securityconfiguration-auditingcontainer-security+3
2.8k6h 50m ago
ansible-cve-2023-36845 preview

ansible-cve-2023-36845

GitHubp4x1s/ansible-cve-2023-36845

Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞)

devsecopsnetwork-securityscripting-automation+2
2 years ago
safetext preview

safetext

GitHubgoogle/safetext

Go library for safe YAML and shell generation, using syntax-aware templates to detect and block injection attacks via annotations for trusted data.

defensive-toolsdevsecopsscripting-automation+1
1518 days ago
fix-react2shell-next preview

fix-react2shell-next

GitHubvercel-labs/fix-react2shell-next

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

code-analysisdevsecopsscripting-automation+3
4019 months ago
react-vuln-scanner preview

react-vuln-scanner

GitHubumairahmadh/react-vuln-scanner

A bash script to scan your server for React applications vulnerable to **CVE-2025-55182** — a critical remote code execution vulnerability (CVSS…

code-analysisdevsecopsexploitation+3
110 months ago
puppet-shellshock preview

puppet-shellshock

GitHubrenanvicente/puppet-shellshock

This module determine the vulnerability of a bash binary to the shellshock exploits (CVE-2014-6271 or CVE-2014-7169) and then patch that where…

configuration-auditingdevsecopsscripting-automation+2
12 years ago
cookbook-bash-CVE-2014-6271 preview

cookbook-bash-CVE-2014-6271

GitHubjblaine/cookbook-bash-cve-2014-6271

Chef cookbook that will fail if bash vulnerability found per CVE-2014-6271

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
12 years ago
bash-cve-2014-7169-cookbook preview

bash-cve-2014-7169-cookbook

GitHubgina-alaska/bash-cve-2014-7169-cookbook

Chef cookbook to detect and patch the Shellshock (CVE-2014-7169) bash vulnerability across servers using automated configuration management.

cloud-securityconfiguration-auditingdevsecops+1
11 years ago
react2shell-audit preview

react2shell-audit

GitHubhamm0nz/react2shell-audit

A lightweight, recursive Bash script to detect Next.js and React Server DOM versions vulnerable to CVE-2025-55182 (React2Shell) in local projects.

code-analysisdevsecopseducation+3
110 months ago
cve-2025-55182-checker preview

cve-2025-55182-checker

GitHubgonaumov/cve-2025-55182-checker

A portable Bash script to detect vulnerable versions of React Server DOM and Next.js packages affected by [CVE-2025-55182]

code-analysisdevsecopsstatic-analysis+3
10 months ago
Log4J_checker preview

Log4J_checker

GitHubandypitcher/log4j_checker

Log4J checker for Apache CVE-2021-44228

code-analysisdevsecopsmisconfiguration+3
4 years ago
OpenSSH-CVE-2024-6387-Fix preview

OpenSSH-CVE-2024-6387-Fix

GitHubalmogopp/openssh-cve-2024-6387-fix

A Bash script to mitigate the CVE-2024-6387 vulnerability in OpenSSH by providing an option to upgrade to a secure version or apply a temporary…

cloud-securityconfiguration-auditingdevsecops+3
2 years ago
Log4j-Updater preview

Log4j-Updater

GitHubvinnimarcon/log4j-updater

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

configuration-auditingdevsecopsgeneral-purpose-utilities+3
24 years ago
Previous12Next