Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
37 results
XenoScan preview

XenoScan

GitHubnickcano/xenoscan

Open source memory scanner written in C++

binary-analysisdebuggersexploitation+2
3695 years ago
mongobleed-scanner preview

mongobleed-scanner

GitHubblack1hp/mongobleed-scanner

MongoDB CVE-2025-14847 Heap Memory Leak Scanner | OP_COMPRESSED zlib Vulnerability | Bug Bounty & Red Team Tool

exploitationinformation-gatheringpenetration-testing+3
358 months ago
SharpSploit preview

SharpSploit

GitHubcobbr/sharpsploit

SharpSploit is a .NET post-exploitation library written in C#

command-and-controlexploitationinformation-gathering+9
1.9k5 years ago
Atlas preview

Atlas

GitHubportbuster1337/atlas

Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

exploitationlateral-movementnetwork-security+4
6220 days ago
ShellShock-CGI-Scan preview

ShellShock-CGI-Scan

GitHubp0cl4bs/shellshock-cgi-scan

A script, in C, to check if CGI scripts are vulnerable to CVE-2014-6271 (The Bash Bug).

exploitationpenetration-testingvulnerability-scanners+2
611 years ago
ShellShock-CGI-Scan preview

ShellShock-CGI-Scan

GitHubproclnas/shellshock-cgi-scan

A script, in C, to check if CGI scripts are vulnerable to CVE-2014-6271 (The Bash Bug)

exploitationpenetration-testingvulnerability-scanners+2
111 years ago
http-vuln-cve2019-14322.nse preview

http-vuln-cve2019-14322.nse

GitHubfaisalfs10x/http-vuln-cve2019-14322.nse

Nmap NSE script to detect CVE-2019-14322 of Pallets Werkzeug path traversal via SharedDataMiddleware mishandles drive names (such as C:) in Windows…

exploitationinformation-gatheringpenetration-testing+3
15 years ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubshellvik/cve-2023-23752

Joomla Information disclosure exploit code written in C++.

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2025-6860 preview
Archived

CVE-2025-6860

GitHubbytereaper77/cve-2025-6860

A proof‑of‑concept command‑line tool in C for detecting the SQL injection vulnerability .

exploitationpayload-generationpenetration-testing+2
21 year ago
OffensiveCpp preview

OffensiveCpp

GitHublsecqt/offensivecpp

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

adversarial-attackcurated-resourcesexploitation+6
7741 year ago
CVE-2025-5964- preview
Archived

CVE-2025-5964-

GitHubbytereaper77/cve-2025-5964-

C PoC language for emulating path traversal vulnerability (CVE-2025-5964) in M-Files25.6.14925.0

exploitationinformation-gatheringpenetration-testing+3
21 year ago
CVE-2021-42694 preview

CVE-2021-42694

GitHubsimplylu/cve-2021-42694

Generate malicious files using recently published homoglyphic-attack (CVE-2021-42694)

code-analysiseducationexploitation+3
184 months ago
openjpeg-2.3.0_CVE-2020-27824 preview

openjpeg-2.3.0_CVE-2020-27824

GitHubpazhanivel07/openjpeg-2.3.0_cve-2020-27824

CVE-2020-27824 exploit reproduction environment for OpenJPEG JPEG 2000 codec, enabling vulnerability analysis, fuzzing, and binary exploitation…

binary-analysiscode-analysisexploitation+3
4 years ago
CVE-2022-35899 preview

CVE-2022-35899

GitHubangelopioamirante/cve-2022-35899

Unquoted Service Path Asus GameSdk

exploitationmisconfigurationprivilege-escalation+1
4 years ago
needrestart-sudo-escalate-cve-2024-4890 preview

needrestart-sudo-escalate-cve-2024-4890

GitHubnekr0ff/needrestart-sudo-escalate-cve-2024-4890

PoC exploit for CVE-2024-4890: Sudo privilege escalation via neecdrestart (>=3.8). Ethical lab-only. Scripts in Python and C.

binary-exploitationeducationexploitation+3
10 months ago
CVE-2010-2387 preview

CVE-2010-2387

GitHublogsec/cve-2010-2387

Proof-of-concept exploit for CVE-2010-2387, a privilege escalation vulnerability in GNOME Display Manager (GDM). Includes C source code targeting the…

binary-analysiscode-analysisexploitation+2
4 years ago
processhacker-mcp preview

processhacker-mcp

GitHubillegal-instruction-co/processhacker-mcp

Runtime process analysis and memory hacking MCP server for AI agents. Supports dynamic extension loading, read-only mode, audit logging, and…

debuggersdynamic-analysis-sandboxingexploitation+7
517 months ago
zephyr-lwm2m-firmware-update-oob-read-cve-2026-10672-truncated-package-uri preview

zephyr-lwm2m-firmware-update-oob-read-cve-2026-10672-truncated-package-uri

GitHubhunt-benito/zephyr-lwm2m-firmware-update-oob-read-cve-2026-10672-truncated-package-uri

Proof-of-concept exploit for CVE-2026-10672, an out-of-bounds read in Zephyr RTOS LwM2M firmware-update pull client. Includes standalone C…

binary-exploitationeducationembedded-systems-security+5
2 months ago
Previous123Next