Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
77 results
CVE-2020-11019 preview

CVE-2020-11019

GitHublixterclarixe/cve-2020-11019

In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application could occur due to a read of an…

curated-resourceseducationinformation-gathering+2
3 years ago
setup-cve-2015-8562 preview

setup-cve-2015-8562

GitHublorenzodegiorgi/setup-cve-2015-8562

Docker-compose to set up a test environment for exploiting CVE-2015-8562

educationexploitationlabs-practice+3
5 years ago
PowerShell-PrintNightmare preview

PowerShell-PrintNightmare

GitHubsyntaxbearror/powershell-printnightmare

A collection of scripts to help set the appropriate registry keys for CVE-2021-34527

configuration-auditingeducationexploitation+3
5 years ago
prompt-injection-email-samples preview

prompt-injection-email-samples

GitHubcyb3rmik3/prompt-injection-email-samples

Open .eml test set for evaluating how email security controls and AI mailbox assistants handle indirect prompt injection across disclosure,…

ai-securitycurated-resourcesdefensive-tools+6
64 days ago
radare2 preview

radare2

GitHubradareorg/radare2

UNIX-like reverse engineering framework and command-line toolset

ai-assisted-reversingandroid-securitybinary-analysis+16
24.9k2h 14m ago
gef preview

gef

GitHubhugsy/gef

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux

ai-assisted-reversingbinary-analysisbinary-exploitation+10
8.4k1 month ago
DanderSpritz_lab preview

DanderSpritz_lab

GitHubfrancisck/danderspritz_lab

A fully functional DanderSpritz lab in 2 commands

educationexploit-frameworkslabs-practice+5
4507 years ago
Win32_Offensive_Cheatsheet preview

Win32_Offensive_Cheatsheet

GitHubmatthieu-hackwitharts/win32_offensive_cheatsheet

Win32 and Kernel abusing techniques for pentesters

binary-analysiscurated-resourceseducation+8
9813 years ago
PwnAdventure3 preview

PwnAdventure3

GitHubliveoverflow/pwnadventure3

PwnAdventure3 Server

binary-exploitationctfeducation+5
6888 years ago
ironcurtain preview

ironcurtain

GitHubprovos/ironcurtain

A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)

ai-securitycontainer-securitydynamic-analysis-sandboxing+3
6138h 48m ago
sandsifter preview

sandsifter

GitHubbattelle/sandsifter

The x86 processor fuzzer

binary-analysiseducationfuzzing+4
5339 years ago
svg-cheatsheet preview

svg-cheatsheet

GitHuballanlw/svg-cheatsheet

A cheatsheet for exploiting server-side SVG processors.

curated-resourceseducationinformation-gathering+4
8046 years ago
WiFi-password-stealer preview

WiFi-password-stealer

GitHubaleksamcode/wifi-password-stealer

Simple Windows and Linux keystroke injection tool that exfiltrates stored WiFi data (SSID and password).

data-exfiltrationeducationhardware-hacking+6
6061 year ago
CVE-2023-4863 preview

CVE-2023-4863

GitHubmistymntncop/cve-2023-4863

Proof-of-concept for CVE-2023-4863, a heap buffer overflow in WebP image decoding. Demonstrates the code_lengths trigger mechanism discovered by…

binary-analysiscode-analysiseducation+2
3182 years ago
not-going-anywhere preview

not-going-anywhere

GitHubtrailofbits/not-going-anywhere

Intentionally vulnerable Golang programs exposing web, gRPC, and database/sql flaws for security training, vulnerability discovery, and remediation…

api-securitydatabase-securityeducation+3
1783 years ago
SiMBA preview

SiMBA

GitHubdenuvosoftwaresolutions/simba

Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions

binary-analysiscryptographyeducation+3
1953 years ago
BlueTeam.Lab preview

BlueTeam.Lab

GitHubop7ic/blueteam.lab

Blue Team detection lab created with Terraform and Ansible in Azure.

cloud-securityconfiguration-auditingdefensive-tools+7
1911 year ago
concealed_code_execution preview

concealed_code_execution

GitHubhuntandhackett/concealed_code_execution

Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows

defensive-toolseducationmalware-analysis+1
2234 years ago
Previous12345Next