Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
691 results
cve-2025-55182-mitigator preview

cve-2025-55182-mitigator

GitHubrashedhasan090/cve-2025-55182-mitigator

CLI scanner that detects likely vulnerable React/Next.js dependencies for CVE-2025-55182 and provides mitigation targets. Supports JSON output and…

code-analysisdefensive-toolsdevsecops+3
8 months ago
cve-2026-31431-checker preview

cve-2026-31431-checker

GitHubgubiczap/cve-2026-31431-checker

Shell scanner for CVE-2026-31431 "Copy Fail" — a local privilege escalation via Linux kernel page cache corruption (algif_aead/AF_ALG). Checks kernel…

configuration-auditingdevsecopsexploitation+5
3 months ago
apache__dolphinscheduler_CVE-2023-51770_3-2-00 preview

apache__dolphinscheduler_CVE-2023-51770_3-2-00

GitHubshoucheng3/apache__dolphinscheduler_cve-2023-51770_3-2-00

Exploit for CVE-2023-51770 targeting Apache DolphinScheduler, enabling remote code execution via crafted SQL injection in data source configuration.

cloud-securitycontainer-securitydevsecops+3
1 year ago
apache__dolphinscheduler_CVE-2023-49109_3-2-0 preview

apache__dolphinscheduler_CVE-2023-49109_3-2-0

GitHubshoucheng3/apache__dolphinscheduler_cve-2023-49109_3-2-0

Exploit for CVE-2023-49109 targeting Apache DolphinScheduler, a cloud-native data orchestration platform. Enables security testing of workflow…

cloud-securitycontainer-securitydevsecops+3
1 year ago
-CVE-2025-55182 preview

-CVE-2025-55182

GitHubdanielxavierjob/-cve-2025-55182

Browser-based scanner that audits GitHub repositories for known vulnerabilities in React and Next.js dependencies, checking all branches and…

code-analysisdevsecopseducation+3
8 months ago
windows-security-cve-2017-8543 preview

windows-security-cve-2017-8543

GitHubamericanhanko/windows-security-cve-2017-8543

InSpec profile to verify a node is patched and compliant for CVE-2017-8543

cloud-securityconfiguration-auditingdevsecops+1
9 years ago
jenkinsci__workflow-cps-global-lib-plugin_CVE-2022-25174_544-vff04fa68714d preview

jenkinsci__workflow-cps-global-lib-plugin_CVE-2022-25174_544-vff04fa68714d

GitHubshoucheng3/jenkinsci__workflow-cps-global-lib-plugin_cve-2022-25174_544-vff04fa68714d

Exploit for CVE-2022-25174 in Jenkins Pipeline Shared Libraries plugin, demonstrating code injection via crafted library definitions for security…

code-analysisdevsecopseducation+2
1 year ago
OpsGuard-simulation preview

OpsGuard-simulation

GitHubshubham-01-star/opsguard-simulation

OpsGuard eliminates the "3 AM PagerDuty" nightmare, specifically protecting against threats like the recent CVE-2025-55184 (Next.js DoS)

cloud-securitydevsecopseducation+2
18 months ago
ansible-cve-2023-36845 preview

ansible-cve-2023-36845

GitHubp4x1s/ansible-cve-2023-36845

Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞)

devsecopsnetwork-securityscripting-automation+2
2 years ago
seal-security-nuget-demo-net7 preview

seal-security-nuget-demo-net7

GitHubseal-sec-demo-2/seal-security-nuget-demo-net7

.NET 7 fork of seal-security-nuget-demo: same CVE-2024-21907 exploit story, retargeted for customers locked to .NET SDK 7.

curated-resourcesdevsecopseducation+3
3 months ago
actions-secrets preview

actions-secrets

GitHubgmh5225/actions-secrets

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

code-analysisdevsecopssecret-detection+1
3 years ago
cpra preview

cpra

GitHubziad-hsn/cpra

CPRA is a high-performance infrastructure monitoring system designed for platform teams managing large-scale microservice architectures. Built on…

anomaly-detectioncloud-infrastructure-securityconfiguration-auditing+6
6 months ago
unicode-control-characters-action preview

unicode-control-characters-action

GitHubpierdipi/unicode-control-characters-action

A GitHub Action to find Unicode control characters using the Red Hat diagnostic tool https://access.redhat.com/security/vulnerabilities/RHSB-2021-007…

code-analysisdevsecopseducation+3
3 years ago
duo-agentflow-auditor preview

duo-agentflow-auditor

GitLabcentisgood/duo-agentflow-auditor

AI Code Security — four agents that catch what SAST misses in AI-generated code. Built on GitLab Duo Agent Platform.

ai-securitycode-analysisdevsecops+8
6 months ago
whitesource__curekit_CVE-2022-23082_1-1-3 preview

whitesource__curekit_CVE-2022-23082_1-1-3

GitHubshoucheng3/whitesource__curekit_cve-2022-23082_1-1-3

Java security library providing contextual encoders and sanitizers to automatically remediate vulnerabilities like XSS, path traversal, and command…

code-analysisdevsecopsencryption-decryption-tools+3
1 year ago
CVE-2019-17041 preview

CVE-2019-17041

GitHubresery/cve-2019-17041

Proof-of-concept exploit for CVE-2019-17041, a buffer overflow in rsyslog's parser, demonstrating remote code execution.

devsecopsgeneral-purpose-utilitiesincident-response+3
5 years ago
puppet-shellshock preview

puppet-shellshock

GitHubrenanvicente/puppet-shellshock

This module determine the vulnerability of a bash binary to the shellshock exploits (CVE-2014-6271 or CVE-2014-7169) and then patch that where…

configuration-auditingdevsecopsscripting-automation+2
11 years ago
imagick_secure_puppet preview

imagick_secure_puppet

GitHubjackdpeterson/imagick_secure_puppet

Puppet module to harden ImageMagick policy.xml against CVE-2016-3714 by restricting dangerous image processing directives.

cloud-securityconfiguration-auditingdevsecops+2
10 years ago
Previous1…313233…39Next