Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
405 results
CVE-2017-9554-Exploit-Tool preview

CVE-2017-9554-Exploit-Tool

GitHubez0-yf/cve-2017-9554-exploit-tool

CVE-2017-9554 Exploit Tool

exploitationinformation-gatheringpenetration-testing+2
5 years ago
CVE-2020-3452_auto preview

CVE-2020-3452_auto

GitHubveids/cve-2020-3452_auto

Automated enumeration and file download tool exploiting CVE-2020-3452 in Cisco ASA devices, with Lua bytecode decompilation support.

exploitationinformation-gatheringpenetration-testing+2
4 years ago
CVE-2021-44228 preview

CVE-2021-44228

GitHubvnyui/cve-2021-44228

Mass recognition tool for CVE-2021-44228

exploitationnetwork-mappingreconnaissance+2
4 years ago
InvestigacionAplicacionCVE-1999-0517 preview

InvestigacionAplicacionCVE-1999-0517

GitHubialejandrozalles/investigacionaplicacioncve-1999-0517

Research and exploitation tool targeting CVE-1999-0517, enabling vulnerability analysis and penetration testing for web-based security assessments.

exploitationinformation-gatheringpenetration-testing+3
1 year ago
log4j_CVE-2021-44228 preview

log4j_CVE-2021-44228

GitHubkkyehit/log4j_cve-2021-44228

Exploit tool for CVE-2021-44228 (Log4Shell) targeting vulnerable Log4j instances for remote code execution and security testing.

exploitationinformation-gatheringpenetration-testing+2
4 years ago
CVE-2024-47176 preview

CVE-2024-47176

GitHubnma-io/cve-2024-47176

A simple CVE-2024-47176 (cups_browsed) check tool written in go.

exploitationinformation-gatheringnetwork-security+2
2 years ago
CVE-2024-24398 preview

CVE-2024-24398

GitHubtrustcves/cve-2024-24398

Proof-of-concept or analysis tool for CVE-2024-24398, demonstrating exploitation of a specific vulnerability.

exploitationinformation-gatheringvulnerability-analysis
2 years ago
ultrasploiter preview

ultrasploiter

GitLabvqkro/ultrasploiter

A single binary that folds a port scanner, the full Exploit-DB index (47k entries) and runnable exploit modules into one tool. Written in Rust, runs…

command-and-controlexploitationexploit-frameworks+9
6 days ago
SECMON preview
Archived

SECMON

GitHubalb-uss/secmon

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

email-securityexploitationinformation-gathering+4
2684 years ago
gato preview
Archived

gato

GitHubpraetorian-inc/gato

GitHub Actions Pipeline Enumeration and Attack Tool

devsecopsexploitationinformation-gathering+7
95 months ago
hackingtool preview

hackingtool

GitHubz4nzu/hackingtool

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

cloud-securityexploitationforensics+9
80.8k1 month ago
ssh-mitm preview

ssh-mitm

GitHubssh-mitm/ssh-mitm

SSH-MITM - ssh audits made simple

authenticationexploitationinformation-gathering+5
1.5k28 days ago
toxssin preview

toxssin

GitHubt3l3machus/toxssin

An XSS exploitation command-line interface and payload generator.

exploitationinformation-gatheringpayload-generation+4
1.5k1 year ago
SharpADWS preview

SharpADWS

GitHubwh0amitz/sharpadws

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

authenticationexploitationlateral-movement+6
6062 years ago
SCCMSecrets preview

SCCMSecrets

GitHubsynacktiv/sccmsecrets

SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.

authentication-authorizationexploitationinformation-gathering+5
2831 month ago
Exchange2domain preview

Exchange2domain

GitHubridter/exchange2domain

CVE-2018-8581

exploitationlateral-movementpenetration-testing+4
3673 years ago
PloitKit preview

PloitKit

GitHubrajeshmajumdar/ploitkit

The Hacker's ToolBox

exploitationinformation-gatheringpenetration-testing+1
1929 years ago
AD-PathFinder preview

AD-PathFinder

GitHubnetspi/ad-pathfinder

Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

exploitationinformation-gatheringlateral-movement+7
2452 months ago
Previous1…181920…23Next