Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
858 results
GitLeaks preview

GitLeaks

GitLabniclas-zone/ci/gitleaks

CI component for Gitleaks SAST tool that scans git repositories for hardcoded secrets, API keys, and tokens with custom and remote configuration…

code-analysisdevsecopssecret-detection+1
1
2 months ago
tarian preview

tarian

GitHubdevopstoday11/tarian

Anti-Virus for K8s. Protect your Applications running on Kubernetes from malicious attacks with pre-registered source code, runtime processes…

cloud-securitycontainer-securitydevsecops+2
24 years ago
CVE-2026-23918 preview

CVE-2026-23918

GitHubhackervlogofficial/cve-2026-23918

This is a proactive tool for security auditing. For your GitHub repository, you’ll want a description that highlights its safety (non-intrusive) and…

configuration-auditingdevsecopsnetwork-security+2
14 months ago
React2shell-CVE-2025-55182-checker preview

React2shell-CVE-2025-55182-checker

GitHuboways/react2shell-cve-2025-55182-checker

Passive CVE-2025-55182 detection tool for vulnerable React Server Components. Scans package.json, JavaScript bundles, HTTP headers, and API endpoints…

code-analysisdevsecopssupply-chain-security+3
29 months ago
GuardModel preview

GuardModel

GitHubshivang0/guardmodel

GitHub Action that scans ML model files for malicious code and security vulnerabilities

ai-securitycode-analysisdevsecops+5
28 months ago
CVE-2026-4660-PoC preview

CVE-2026-4660-PoC

GitHubgouldnicholas/cve-2026-4660-poc

PoC for CVE-2026-4660: arbitrary file read via git checkout in hashicorp/go-getter

cloud-securitydevsecopsexploitation+3
5 months ago
flight-risk preview

flight-risk

GitHubjoaoreis13/flight-risk

Security toolkit for CVE-2025-55182 (React2Shell) — scan, detect, correlate, and test React Server Components RCE vulnerability

cloud-securitycontainer-securitydevsecops+6
4 months ago
salt-shellshock preview

salt-shellshock

GitHubapsl/salt-shellshock

Salt recipe for shellshock (CVE-2014-6271)

cloud-securityconfiguration-auditingdevsecops+3
111 years ago
ingress-nginx-0.21-1.19.5 preview

ingress-nginx-0.21-1.19.5

GitHubflyniu666/ingress-nginx-0.21-1.19.5

based on nginx 1.19.5 to fix for CVE-2018-16843, CVE-2018-16844, CVE-2019-9511, CVE-2019-9513, and CVE-2019-9516

cloud-securitycontainer-securitydevsecops+3
15 years ago
ansible-role-cve-2026-31431 preview

ansible-role-cve-2026-31431

GitHubjoltcan/ansible-role-cve-2026-31431

Ansible role that applies and verifies the modprobe.d mitigation for CVE-2026-31431 by disabling the algif_aead kernel module, with safety checks for…

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
4 months ago
almalinux-fix-cve-2026-31431 preview

almalinux-fix-cve-2026-31431

GitHubomerati/almalinux-fix-cve-2026-31431

Automates kernel patching for CVE-2026-31431 and Dirty Frag, sets secure kernel as default in GRUB, and disables testing repo for production safety.

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
4 months ago
copyfail-fix preview

copyfail-fix

GitHubpaulorlima9/copyfail-fix

Quick mitigation and patch script for CVE-2026-31431 (Copy Fail) on Ubuntu/Debian VPS

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
4 months ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubeximiait/cve-2026-31431

Ansible playbooks to check and mitigate CVE-2026-31431 on Linux hosts, with scripts for local, remote, and containerized environments, including…

cloud-infrastructure-securityconfiguration-auditingcontainer-security+2
4 months ago
Mitigaciones preview

Mitigaciones

GitHubnet0bsd/mitigaciones

Automated detection and mitigation of CVE-2026-31431 local privilege escalation on Linux via Bash scripts and Ansible playbooks, with CIS-standard…

configuration-auditingdevsecopsvulnerability-analysis
4 months ago
cve-2026-0300-audit preview

cve-2026-0300-audit

GitHubtailwindrg/cve-2026-0300-audit

Read-only audit tooling for CVE-2026-0300 (PAN-OS User-ID Authentication Portal exposure)

cloud-infrastructure-securityconfiguration-auditingdevsecops+3
4 months ago
cve-2026-31431-fleet-remediator preview

cve-2026-31431-fleet-remediator

GitHubwavesman/cve-2026-31431-fleet-remediator

Fleet-scale CVE-2026-31431 audit and remediation orchestrator for Linux hosts via SSH, with strict host-key verification and multi-format reporting.

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
4 months ago
CVE-2025-12543-Fix-for-Wildfly preview

CVE-2025-12543-Fix-for-Wildfly

GitHubkavin71725/cve-2025-12543-fix-for-wildfly

Docker base image with backported Host header validation fix for CVE-2025-12543 in Undertow 1.4.x, enabling secure deployment of WildFly 11…

cloud-infrastructure-securitycontainer-securitydevsecops+4
5 months ago
DepAlert preview

DepAlert

GitHubcybergabisoft/depalert

DepAlert is an open-source security gate for your CI/CD pipeline. It analyzes SBOMs against malware intelligence data and quickly tells you whether…

devsecopsmalware-analysissecret-detection+3
5 months ago
Previous1…192021…48Next