Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
203 results
scan4all preview

scan4all

GitHubghosttroops/scan4all

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port…

dns-subdomain-enumerationexploit-frameworksfuzzing+9
6.2k2 years ago
V3n0M-Scanner preview

V3n0M-Scanner

GitHubv3n0m-scanner/v3n0m-scanner

Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns

dns-subdomain-enumerationexploit-frameworksinformation-gathering+3
1.6k3 years ago
Samba-Exploit-CVE-2007-2447 preview

Samba-Exploit-CVE-2007-2447

GitHubnulltrace1336/samba-exploit-cve-2007-2447

Step-by-step guide to exploiting Samba 3.0.20 (CVE-2007-2447) using Metasploit, including Nmap scanning, payload setup, and reverse shell execution.

command-and-controlexploitationexploit-frameworks+3
9 months ago
metasploitable2-exploitation-metasploit preview

metasploitable2-exploitation-metasploit

GitHubethicalhackinglabs/metasploitable2-exploitation-metasploit

Full Metasploit exploitation walkthrough against Metasploitable2 — vsftpd backdoor, Samba CVE-2007-2447, UnrealIRCd backdoor, Netcat exfiltration,…

command-and-controldata-exfiltrationeducation+9
3 months ago
FTP-vsFTPD-CVE-2011-2523-VAPT-Report preview

FTP-vsFTPD-CVE-2011-2523-VAPT-Report

GitHubsonalisarkar-2003/ftp-vsftpd-cve-2011-2523-vapt-report

VAPT report for vsFTPd 2.3.4 backdoor CVE-2011-2523, covering Nmap vulnerability scanning, Metasploit exploitation, post-exploitation root access,…

educationexploitationexploit-frameworks+5
1 month ago
PAKURI preview

PAKURI

GitHub01rabbit/pakuri

Semi-automated penetration testing framework with TUI, integrating Nmap, OpenVAS, Metasploit, and Faraday for streamlined information gathering,…

educationexploit-frameworksinformation-gathering+3
1414 years ago
xpfarm preview

xpfarm

GitHubcanuk40/xpfarm

Automated bug bounty & recon framework — wraps Subfinder, Naabu, Httpx, Nuclei, Nmap, CVEMap, Gowitness, Katana & more behind a unified web UI

ai-securitybinary-analysisexploit-frameworks+7
1956 months ago
autoscan preview

autoscan

GitHubdarksh3llgr/autoscan

Automated Scanning, Pentesting , Exploiting and Reporting

exploit-frameworkspenetration-testingvulnerability-scanners
214 years ago
PowerUpSQL preview

PowerUpSQL

GitHubnetspi/powerupsql

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

configuration-auditingdatabase-securityexploitation+9
2.7k1 year ago
offensive-docker preview

offensive-docker

GitHubaaaguirrep/offensive-docker

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

container-securityexploit-frameworkspassword-cracking+5
7704 years ago
kali-linux-docker preview

kali-linux-docker

GitHubnu11secur1ty/kali-linux-docker

kali-linux-docker

cloud-securitycontainer-securitydevsecops+8
16 years ago
KLAIOS preview

KLAIOS

GitHublglznl/klaios

KLAIOS is a hybrid security environment that merges Kali Linux’s offensive toolkit with hardened, VPN-bunker-style isolation—enhanced by modern AI…

ai-securitycontainer-securityexploit-frameworks+7
18 months ago
discover preview

discover

GitHubleebaird/discover

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

api-security-testingcloud-securitycontainer-security+9
3.9k3 days ago
rekono preview

rekono

GitHubpablosnt/rekono

Offensive security platform that automates attack surface discovery and vulnerability management

exploit-frameworksosintpenetration-testing+4
6191 day ago
CVE-2021-44228-log4jVulnScanner-metasploit preview

CVE-2021-44228-log4jVulnScanner-metasploit

GitHubtaroballzchen/cve-2021-44228-log4jvulnscanner-metasploit

open detection and scanning tool for discovering and fuzzing for Log4J RCE CVE-2021-44228 vulnerability

exploit-frameworksfuzzingpenetration-testing+3
74 years ago
CVE-2026-53921-PoC-Exploit preview

CVE-2026-53921-PoC-Exploit

GitHubtc4dy/cve-2026-53921-poc-exploit

CVE-2026-53921 – odhcpd Stack Overflow (CVSS 9.8) 🛡️ Vuln detailed and comprehensive Write-Up and Verifier & Multi-exploit for OpenWrt DHCPv6 RCE.…

binary-exploitationembedded-systems-securityexploitation+8
62 months ago
CVE-2026-60206-PoC-Exploit preview

CVE-2026-60206-PoC-Exploit

GitHubtc4dy/cve-2026-60206-poc-exploit

👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

authentication-authorizationexploitationexploit-frameworks+8
42 months ago
OmniScan preview

OmniScan

GitHubd3ckx1/omniscan

Multi-engine vulnerability scanner with built-in Nuclei Lite, Afrog, and XRay engines. Features asset discovery via FOFA/Shodan, OOB interaction…

dynamic-analysis-sandboxingexploit-frameworksfuzzing+6
98 months ago
Previous12…12Next