Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
53 results
owasp-java-encoder preview

owasp-java-encoder

GitHubowasp/owasp-java-encoder

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will…

code-analysisdefensive-toolsencryption-decryption-tools+3
546
4 days ago
CVE-2017-7921-Research-Toolkit preview

CVE-2017-7921-Research-Toolkit

GitHubwyl-cmd/cve-2017-7921-research-toolkit

用于借助FOFA快速测试海康威视的CVE-2017-7921漏洞,并且给出登陆账号和密码,并输出json文件。

encryption-decryption-toolsexploitationinformation-gathering+3
52 months ago
Cve-2026-27944-Tools-Exploit preview

Cve-2026-27944-Tools-Exploit

GitHubbimabalance/cve-2026-27944-tools-exploit

Suka suka lah

encryption-decryption-toolsexploitationinformation-gathering+4
13 months ago
NebulaPulsar preview

NebulaPulsar

GitHubiss4cf0ng/nebulapulsar

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

dynamic-code-analysiseducationencryption-decryption-tools+7
463 months ago
nounours preview

nounours

GitHubsynacktiv/nounours

Nounours is a tool designed to test APP_KEYs at scale on Laravel applications.

cryptographyencryption-decryption-toolspassword-attacks+3
14 months ago
CVE-2021-43798 preview

CVE-2021-43798

GitHubokymi-x/cve-2021-43798

Python toolkit for authorized testing of CVE-2021-43798 Grafana path traversal, with arbitrary file read PoC, secret decryption, and user hash export…

encryption-decryption-toolsexploitationinformation-gathering+3
14 months ago
CVE-2026-29000 preview

CVE-2026-29000

GitHubzf-tm/cve-2026-29000

PoC of the CVE-2026-29000

authentication-authorizationencryption-decryption-toolsexploitation+3
5 months ago
SAMLRaider preview

SAMLRaider

GitHubcompasssecurity/samlraider

SAML2 Burp Extension

api-security-testingauthenticationcryptography+6
4527 months ago
laravel-crypto-killer preview

laravel-crypto-killer

GitHubsynacktiv/laravel-crypto-killer

A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.

encryption-decryption-toolsexploitationpayload-generation+2
1469 months ago
HikvisionExploiter preview

HikvisionExploiter

GitHubtamim1089/hikvisionexploiter

HikvisionExploiter is a Python-based utility designed to automate exploitation and directory accessibility checks on Hikvision network cameras…

command-and-controlencryption-decryption-toolsexploitation+8
3899 months ago
CVE-2025-55182-RCE-shell preview

CVE-2025-55182-RCE-shell

GitHubruoji6/cve-2025-55182-rce-shell

Burp Suite/antsword - Interactive shell (HTTP hijack + POST + AES-256-CBC/BASE64)

command-and-controlencryption-decryption-toolsexploitation+5
3110 months ago
grafanaExp preview

grafanaExp

GitHuba-d-team/grafanaexp

A exploit tool for Grafana Unauthorized arbitrary file reading vulnerability (CVE-2021-43798), it can burst plugins / extract secret_key / decrypt…

encryption-decryption-toolsexploitationinformation-gathering+3
26911 months ago
Hikvision-CVE-2017-7921-decryptor preview

Hikvision-CVE-2017-7921-decryptor

GitHublastvocher/hikvision-cve-2017-7921-decryptor

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, recovering user credentials from weakly encrypted…

encryption-decryption-toolsexploitationiot-security+3
1 year ago
ESAPI__esapi-java-legacy_CVE-2022-23457_2-2-3-1 preview

ESAPI__esapi-java-legacy_CVE-2022-23457_2-2-3-1

GitHubshoucheng3/esapi__esapi-java-legacy_cve-2022-23457_2-2-3-1

Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input validation,…

api-securityauthentication-authorizationcode-analysis+6
1 year ago
whitesource__curekit_CVE-2022-23082_1-1-3 preview

whitesource__curekit_CVE-2022-23082_1-1-3

GitHubshoucheng3/whitesource__curekit_cve-2022-23082_1-1-3

Java security library providing contextual encoders and sanitizers to automatically remediate vulnerabilities like XSS, path traversal, and command…

code-analysisdevsecopsencryption-decryption-tools+3
1 year ago
apache__rocketmq_CVE-2019-17572_4-6-0 preview

apache__rocketmq_CVE-2019-17572_4-6-0

GitHubshoucheng3/apache__rocketmq_cve-2019-17572_4-6-0

Exploit for Apache RocketMQ CVE-2019-17572 targeting distributed messaging platforms with authentication and encryption features.

authentication-authorizationcloud-securityencryption-decryption-tools+3
1 year ago
CVE-2024-55555 preview

CVE-2024-55555

GitHubyucaerin/cve-2024-55555

Laravel Crypto Killer Mass Scanner (CVE-2024-55555)

encryption-decryption-toolsexploitationpassword-cracking+3
21 year ago
BobTheSmuggler preview

BobTheSmuggler

GitHubthecyb3ralpha/bobthesmuggler

"Bob the Smuggler": A tool that leverages HTML Smuggling Attack and allows you to create HTML files with embedded 7z/zip archives. The tool would…

educationencryption-decryption-toolspayload-development+4
5981 year ago
Previous123Next