Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
31 results
Packet-Sniffer preview

Packet-Sniffer

GitHubeonraider/packet-sniffer

Raw socket-based network packet sniffer that captures and disassembles TCP/IP packets from network interfaces for security analysis and educational…

educationinformation-gatheringnetwork-security+1
786
4 days ago
securityonion preview

securityonion

GitHubsecurity-onion-solutions/securityonion

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

anomaly-detectionanti-botdefensive-tools+9
4.9k17 days ago
Cyber-Defenders-lab- preview

Cyber-Defenders-lab-

GitHubabiral-timalsina/cyber-defenders-lab-

My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers TeamCity RCE (CVE-2024-27198), XSS session hijacking, and…

digital-forensicseducationincident-response+3
1 month ago
CVE-2026-6060-QUIC-Handshake-Amplification-via-Address-Validation-Bypass preview

CVE-2026-6060-QUIC-Handshake-Amplification-via-Address-Validation-Bypass

GitHubgeorge0papasotiriou/cve-2026-6060-quic-handshake-amplification-via-address-validation-bypass

Educational Python PoC for a QUIC address-validation bypass that triggers handshake amplification, including vulnerable server simulation and attack…

adversarial-attackeducationexploitation+2
1 month ago
CVE-2026-2222-MQTT-Broker-CONNECT-Packet-Heap-Overflow preview

CVE-2026-2222-MQTT-Broker-CONNECT-Packet-Heap-Overflow

GitHubgeorge0papasotiriou/cve-2026-2222-mqtt-broker-connect-packet-heap-overflow

Demonstrates CVE-2026-2222 heap overflow in MQTT CONNECT packet handling with a simulated vulnerable broker and proof-of-concept exploit code for…

binary-exploitationeducationexploitation+2
1 month ago
CVE-2026-46331 preview

CVE-2026-46331

GitHubv0idnetwork/cve-2026-46331

pedit COW

binary-exploitationctfeducation+4
12 months ago
CVE-2026-46331 preview

CVE-2026-46331

GitHub0xblackash/cve-2026-46331

CVE-2026-46331

binary-exploitationeducationexploitation+3
323 months ago
PacketPatch preview

PacketPatch

GitHubxuyw-seu/packetpatch

Practical black-box adversarial packet generation against encrypted traffic classification with minimal overhead and full packet recoverability.

adversarial-attackai-securityeducation+6
83 months ago
CVE-2026-41089 preview

CVE-2026-41089

GitHub0xabcd01/cve-2026-41089

CVE-2026-41089 PoC — Netlogon CLDAP stack buffer overflow (CVSS 9.8 CRITICAL)

binary-exploitationeducationexploitation+2
2313 months ago
PcapXray preview

PcapXray

GitHubsrixivas/pcapxray

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

ctfdns-analysiseducation+7
1.9k5 months ago
Cyber-Attack-Analysis preview

Cyber-Attack-Analysis

GitHubiamwajd/cyber-attack-analysis

In-depth case study analyzing the 2020 Virgin Mobile KSA breach via CVE-2020-0688 exploitation, packet sniffing, and patch management failures, with…

educationincident-responsenetwork-security+3
7 months ago
-CTT-NSP-Convergent-Time-Theory---Network-Stack-Projection-CVE-2026-24858- preview

-CTT-NSP-Convergent-Time-Theory---Network-Stack-Projection-CVE-2026-24858-

GitHubsimoesctt/-ctt-nsp-convergent-time-theory---network-stack-projection-cve-2026-24858-

A Proof-of-Concept demonstrating the application of 3D Navier-Stokes CTT formulations to packet flow optimization and defensive bypass.

educationexploitationids-ips-evasion+1
8 months ago
CVE-2025-55315-Scanner-Monitor preview

CVE-2025-55315-Scanner-Monitor

GitHubjlinebau/cve-2025-55315-scanner-monitor

Quick and Simple Scripts to Scan for Vulnerable Servers and Packet Level Monitors

educationnetwork-securitypacket-sniffing-analysis+3
211 months ago
CVE-2016-10708 preview

CVE-2016-10708

GitHublggcs/cve-2016-10708

Proof-of-concept script for CVE-2016-10708 that scans OpenSSH servers for vulnerability and performs denial-of-service via crafted SSH_MSG_NEWKEYS…

educationexploitationnetwork-security+2
10 years ago
CVE-2025-27480 preview

CVE-2025-27480

GitHubmrk336/cve-2025-27480

CVE-2025-27480 exposes a buffer overflow in OpenSSH 8.9p1 via a malformed SSH_USERAUTH packet. Attackers can inject shellcode and gain SYSTEM-level…

binary-exploitationeducationexploitation+5
1 year ago
FuxiOS preview

FuxiOS

GitHubl3onkers/fuxios

Modernized Python 3 exploit PoC for CVE-2016-4631 targeting iOS devices. Features network scanning, malformed IP/TCP payload generation, and packet…

educationexploitationios-security+3
11 year ago
CVE-2015-1578-PoC preview

CVE-2015-1578-PoC

GitHubyaldobaoth/cve-2015-1578-poc

This is a proof-of-concept exploit for CVE-2015-1578, a buffer overflow vulnerability in Achat 0.150 beta7 on Windows. Exploitation leads to remote…

binary-exploitationeducationexploitation+5
1 year ago
nhi-zero-trust-bypass preview

nhi-zero-trust-bypass

GitHubalexsvobo/nhi-zero-trust-bypass

Demonstrates a real-world zero-trust bypass by exploiting BIND CVE-2025-40775 to disrupt DNS, break secret rotation, and expose static credentials in…

cloud-securitydns-analysiseducation+5
51 year ago
Previous12Next