Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
Reversecore_MCP preview

Reversecore_MCP

GitHubsjkim1127/reversecore_mcp

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

binary-analysisdigital-forensicsdynamic-analysis-sandboxing+7
188
3 days ago
h4cker preview

h4cker

GitHubthe-art-of-hacking/h4cker

Curated collection of cybersecurity resources, labs, and training materials covering ethical hacking, penetration testing, exploit development,…

ai-securityctfcurated-resources+5
29.1k6 days ago
uefi_bootkit_softlanding preview

uefi_bootkit_softlanding

GitHubares-sys/uefi_bootkit_softlanding

First public analysis of SoftLanding UEFI bootkit: Ring -2 implant, CVE-2025-7029, 240+ Gigabyte boards, GPU AI evasion, dual C2. YARA + Sigma +…

defensive-toolsdigital-forensicsfirmware-analysis+5
19 days ago
IIITA-IoT-Security-Research preview

IIITA-IoT-Security-Research

GitHubivmks74/iiita-iot-security-research

IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note…

digital-forensicsembedded-systems-securityfirmware-analysis+4
23 days ago
follina-msdt-threat-investigation preview

follina-msdt-threat-investigation

GitHubzavikhttak/follina-msdt-threat-investigation

🔵 Threat analysis writeup for Follina (CVE-2022-30190) — Microsoft MSDT RCE zero-day exploited in the wild. Covers static analysis, VirusTotal,…

digital-forensicseducationincident-response+4
1 month ago
USB Spy preview

USB Spy

GitLabchristophe.duvernois/usb-spy

Intercepts and analyzes USB Mass Storage traffic at the block and file level, emulates USB devices, and supports custom Python stubs for security…

digital-forensicsexploitationfirmware-analysis+6
31 month ago
joomla-cve-2015-8562-exploit-and-linux-forensic-analysis preview

joomla-cve-2015-8562-exploit-and-linux-forensic-analysis

GitHubdrolley919/joomla-cve-2015-8562-exploit-and-linux-forensic-analysis
digital-forensicsexploitationforensics+3
1 month ago
acropalypse-reconstructor preview

acropalypse-reconstructor

GitHubiqbaalilmii/acropalypse-reconstructor

A lightweight CLI tool to detect and reconstruct cropped images vulnerable to Acropalypse (CVE-2023-21036 and CVE-2023-28303) written in Python.

data-recoverydigital-forensicsexploitation+2
2 months ago
XWFAcropalypse preview

XWFAcropalypse

GitHubpolitoinc/xwfacropalypse

X-Ways Acropalypse extension detects CVE-2023-21036 in common images

data-recoverydigital-forensicsexploitation+2
4 months ago
SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis preview

SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis

GitHubzedocun/sharepoint-toolshell-cve-2025-53770-incident-analysis

Technical analysis of a SharePoint ToolShell (CVE-2025-53770) exploitation attempt involving RCE, webshell deployment, and MachineKey extraction.

digital-forensicseducationexploitation+7
14 months ago
dfir-malware-investigation preview

dfir-malware-investigation

GitHubsuyash-r-k/dfir-malware-investigation

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

digital-forensicseducationincident-response+9
6 months ago
xz-cve-2024-3094 preview

xz-cve-2024-3094

GitHubhackura/xz-cve-2024-3094

Python demo simulating CVE-2024-3094: a supply chain backdoor in XZ Utils with a trigger-based stealth activation.

digital-forensicseducationforensics+6
6 months ago
SentinelNav preview

SentinelNav

GitHubsmolfiddle/sentinelnav

SentinelNav: zero-dependency, pure Python binary visualization and forensics tool.

binary-analysisdata-recoverydigital-forensics+4
1478 months ago
SOC335-CVE-2024-49138-Exploitation-Detected preview

SOC335-CVE-2024-49138-Exploitation-Detected

GitHubbridg3ops/soc335-cve-2024-49138-exploitation-detected
digital-forensicseducationincident-response+4
8 months ago
Scalar-Venom-Attack preview

Scalar-Venom-Attack

GitHubdemining/scalar-venom-attack

Scalar Venom Attack: A critical HSM initialization vulnerability (CVE-2025-60013) enables private Bitcoin wallet key recovery through buffer overflow…

binary-exploitationcryptographydigital-forensics+8
39 months ago
LetsDefend-SOC173-Follina-0-Day-Detected preview

LetsDefend-SOC173-Follina-0-Day-Detected

GitHubarkha-corvus/letsdefend-soc173-follina-0-day-detected

We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered…

digital-forensicseducationincident-response+5
10 months ago
TryHack3M-Bricks-Heist preview

TryHack3M-Bricks-Heist

GitHubanjai7/tryhack3m-bricks-heist

TryHackMe CTF writeup — WordPress RCE via CVE-2024-25600, crypto miner forensics, and LockBit ransomware group identification

ctfdigital-forensicseducation+5
11 months ago
Detecting-and-Analyzing-CVE-2024-24919-Exploitation preview

Detecting-and-Analyzing-CVE-2024-24919-Exploitation

GitHubmacuchegit/detecting-and-analyzing-cve-2024-24919-exploitation
digital-forensicseducationincident-response+5
1 year ago
Previous12Next