Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
TJ-OPT preview

TJ-OPT

GitHubtjnull/tj-opt

This repo contains my pentesting template that I have used in PWK and for current assessments. The template has been formatted to be used in Obsidian

curated-resourceseducationexploitation+2
252
1 year ago
CVE-2022-30190-Analysis-With-LetsDefends-Lab preview

CVE-2022-30190-Analysis-With-LetsDefends-Lab

GitHubabdibimantara/cve-2022-30190-analysis-with-letsdefends-lab

this is my simple article about CVE 2022-30190 (Follina) analysis. I use the lab from Letsdefend.

ctfeducationexploitation+3
4 years ago
windows-smb-vulnerability-framework-cve-2025-33073 preview

windows-smb-vulnerability-framework-cve-2025-33073

GitHubsfrdevelopment/windows-smb-vulnerability-framework-cve-2025-33073

Research framework for CVE-2025-33073, a Windows SMB Client privilege escalation vulnerability. Provides malicious SMB server and client exploit…

exploitationexploit-frameworkspenetration-testing+2
610 months ago
KerberosRun preview

KerberosRun

GitHubdev-2null/kerberosrun

A little tool to play with Kerberos.

authenticationexploitationpassword-attacks+5
663 years ago
CVE-2020-8597 preview

CVE-2020-8597

GitHubwinmin/cve-2020-8597

CVE-2020-8597 pppd buffer overflow poc

binary-exploitationexploitationfuzzing+3
486 years ago
WordPressMassExploiter preview

WordPressMassExploiter

GitHubparalelo14/wordpressmassexploiter

[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

crawlerexploitationinformation-gathering+3
308 years ago
shellshock_crawler preview

shellshock_crawler

GitHub352926/shellshock_crawler

Using google to scan sites for "ShellShock" (CVE-2014-6271)

exploitationinformation-gatheringosint+3
11 years ago
CVE-2024-22120-RCE-with-gopher preview

CVE-2024-22120-RCE-with-gopher

GitHubg4nkd/cve-2024-22120-rce-with-gopher

This exploit was created to exploit an XXE (XML External Entity). Through it, I read the backend code of the web service and found an endpoint where…

exploitationpenetration-testingreconnaissance+3
32 years ago
v0lt preview
Archived

v0lt

GitHubp1kachu/v0lt

Security CTF Toolkit (Not maintained anymore)

binary-exploitationcryptographyctf+6
3708 years ago
Bulk_CVE-1999-0532_Scanner preview

Bulk_CVE-1999-0532_Scanner

GitHubwebsecnl/bulk_cve-1999-0532_scanner

A tool i made for use in combination with hackerone.com for Bounty Hacking purposes.

exploitationinformation-gatheringpenetration-testing+3
48 years ago
CVE-2017-0213 preview

CVE-2017-0213

GitHubjbooz1/cve-2017-0213

A version of CVE-2017-0213 that I plan to use with an Empire stager

command-and-controlexploitationpayload-generation+3
18 years ago
DoSTool preview

DoSTool

GitHubparallelvisions/dostool

DDoS Tool which exploits vulnerability CVE-2004-2449 from vendor GameSpy (now known as OpenSpy). User is prompted for input IP address, and port.…

exploitationpenetration-testingred-teaming+1
23 years ago
CVE-2020-0688-Python3 preview

CVE-2020-0688-Python3

GitHub1337-llama/cve-2020-0688-python3

Exploit updated to use Python 3.

exploitationpayload-generationpenetration-testing+2
22 years ago
JailedCement preview

JailedCement

GitHubiswaxan/jailedcement

Simple iOS bootlooper using CVE-2022-46689. Desguised as onlyfans

exploitationios-securitymobile-security+2
3 years ago
CVE-2017-5638 preview

CVE-2017-5638

GitHubjongmartinez/cve-2017-5638

PoC for CVE: 2017-5638 - Apache Struts2 S2-045

exploitationpayload-generationpenetration-testing+2
15 years ago
CVE-2020-3187-Scanlist preview

CVE-2020-3187-Scanlist

GitHubsunyyer/cve-2020-3187-scanlist

Batch scanning site.

exploitationnetwork-securitypenetration-testing+2
3 years ago
CVE-2017-1000486 preview

CVE-2017-1000486

GitHubpimps/cve-2017-1000486

Primefaces <= 5.2.21, 5.3.8 or 6.0 - Remote Code Execution Exploit

exploitationpayload-generationpenetration-testing+3
952 years ago
CVE-2019-9053 preview

CVE-2019-9053

GitHubbjarneverschorre/cve-2019-9053

Python script that exploits CVE-2019-9053, a SQL injection vulnerability in CMS Made Simple, to extract data from the database.

exploitationinformation-gatheringpenetration-testing+2
2 years ago
Previous12Next