Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
34 results
ROPE preview

ROPE

GitHubxhowenma/rope

Defense framework enforcing routed origin policy to prevent indirect prompt injection in tool-using LLM agents, with deterministic origin checks and…

ai-securitydefensive-toolseducation+2
20 days ago
cryptoquant-key-gen preview

cryptoquant-key-gen

GitHubternopil-te-te-t4p/cryptoquant-key-gen

Patcher utility that bypasses CryptoQuant premium tier restrictions to unlock advanced analytics and real-time data access, with a Python GUI for…

curated-resourceseducationexploitation+2
1333 months ago
DeepTrap preview

DeepTrap

GitHubzjuicsr/deeptrap

Security benchmark for evaluating OpenClaw agents against adversarial execution contexts including poisoned files, injected skills, misleading tool…

adversarial-attackai-securitycommand-and-control+8
104 months ago
joomla_exploits preview

joomla_exploits

GitHubaramosf/joomla_exploits

Curated collection of validated Joomla exploit artifacts with Docker lab environments. Includes RCE, SQLi, XSS, and privilege escalation scripts…

crawlereducationexploitation+5
12 months ago
WebGoat.NET preview

WebGoat.NET

GitHubowasp/webgoat.net

OWASP WebGoat.NET

code-analysiseducationlabs-practice+3
7313 years ago
RootPipeTester preview

RootPipeTester

GitHubsideeffect42/rootpipetester

RootPipe (CVE-2015-1130) and Phoenix (CVE-2015-3673) vulnerability testing utility for Mac OS X 10.2.8 and later

educationexploitationpenetration-testing+2
1811 years ago
WiseDelete preview

WiseDelete

GitHubskimask1690/wisedelete

Windows utility that uses the vulnerable WiseDelfile64.sys driver affected by CVE-2025-66680 to enable kernel-assisted file deletion.

binary-exploitationeducationexploitation+2
11 month ago
Winrar-Exploit-CVE-2023-38831 preview

Winrar-Exploit-CVE-2023-38831

GitHublightningspeed221/winrar-exploit-cve-2023-38831

C# utility demonstrating CVE-2023-38831 archive-structure exploitation technique for WinRAR versions below 6.23. Builds proof-of-concept binaries for…

binary-exploitationeducationexploitation+3
4 months ago
CVE-2025-32463-PoC preview

CVE-2025-32463-PoC

GitHubfreedurok/cve-2025-32463-poc

Proof of Concept for CVE-2025-32463 Local privilege escalation exploit targeting sudo -R on vulnerable Linux systems. For educational and authorized…

educationexploitationlabs-practice+3
51 year ago
CVE-2024-48990-PoC preview

CVE-2024-48990-PoC

GitHubloaxert/cve-2024-48990-poc

Proof-of-concept exploit for CVE-2024-48990, demonstrating local privilege escalation in needrestart via PYTHONPATH manipulation. Includes runner…

educationexploitationpayload-development+3
10 months ago
CVE-2024-3094_xz_check preview

CVE-2024-3094_xz_check

GitHubhackerhermanos/cve-2024-3094_xz_check

This repository contains a Bash script and a one-liner command to verify if a system is running a vulnerable version of the "xz" utility, as…

educationscripting-automationsupply-chain-security+2
92 years ago
cve_2022_0492 preview

cve_2022_0492

GitHubperimora/cve_2022_0492

PoC for CVE-2022-0492

container-escapeeducationexploitation+2
1 year ago
CVE-2021-3560 preview

CVE-2021-3560

GitHublucaspdiniz/cve-2021-3560

Exploitation of the CVE-2021-3560 polkit vulnerability

educationexploitationpenetration-testing+3
22 years ago
CVE-2021-3281 preview

CVE-2021-3281

GitHublwzsoviet/cve-2021-3281

Proof-of-concept for CVE-2021-3281: directory traversal vulnerability in Django's TarArchive utility via crafted tar files, with Python tarfile…

educationexploitationpapers-research+2
25 years ago
CVE-2020-3452 preview

CVE-2020-3452

GitHubparan0id34/cve-2020-3452

CVE-2020-3452 - directory traversal in Cisco ASA and Cisco Firepower Threat Defense

educationexploitationpenetration-testing+2
15 years ago
CVE-2020-15778-SCP-Command-Injection-Check preview

CVE-2020-15778-SCP-Command-Injection-Check

GitHubdrackyjr/cve-2020-15778-scp-command-injection-check

This script is a safe and simple tool that helps system users, students, and administrators check if their SCP (Secure Copy) client is vulnerable to…

educationexploitationpenetration-testing+3
21 year ago
ZipCracker preview

ZipCracker

GitHubthe-hollowclan/zipcracker

A 100% free standalone ZIP password recovery tool

educationpassword-attackspassword-cracking+1
9 months ago
SpecuCheck preview

SpecuCheck

GitHubionescu007/specucheck

Windows utility that queries kernel API to report software and hardware mitigation status against speculative execution vulnerabilities (Meltdown,…

educationhardware-securityvulnerability-analysis
5857 years ago
Previous12Next