Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
502 results
CVE-2026-90781-alsa-lib-oob preview

CVE-2026-90781-alsa-lib-oob

GitHubharshrajsinghania/cve-2026-90781-alsa-lib-oob

Standalone reproducer for CVE-2026-90781: 1-byte OOB write in alsa-lib __snd_ctl_ascii_elem_id_parse() name= parsing (quoted and unquoted)

educationexploitationfuzzing+4
1 day ago
gori preview

gori

GitHubhahwul/gori

A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.

api-security-testingfuzzinginformation-gathering+8
954 days ago
silica preview

silica

GitHubnathan-luevano/silica

Exhaustive differential validation of all 4.3B AArch64 instruction encodings.

binary-analysisdynamic-analysis-sandboxingfuzzing+5
25 days ago
CVE-2026-42533 preview

CVE-2026-42533

GitHubivanesk315/cve-2026-42533

Docker lab reproducing CVE-2026-42533, a pre-auth nginx heap overflow and info leak via two-pass capture clobbering, with PoC scripts and patched…

educationexploitationfuzzing+6
5 days ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubvsvalinx/cve-2025-5548

Educational repository documenting the full exploitation lifecycle of a stack buffer overflow in FreeFloat FTP Server 1.0, including fuzzing, EIP…

binary-exploitationdebuggersexploitation+5
8 days ago
EXPLOIT-CVE-2026-22778 preview

EXPLOIT-CVE-2026-22778

GitHubjoaovicdev/exploit-cve-2026-22778

Proof-of-concept exploit for CVE-2026-22778, an unauthenticated RCE in vLLM's video processing, demonstrating heap address disclosure and a heap…

binary-exploitationeducationexploitation+5
10 days ago
CVE-2026-85769 preview

CVE-2026-85769

GitHubisukasanuj/cve-2026-85769

Proof-of-concept exploit for CVE-2026-85769, a heap out-of-bounds read in libtpms TPM 2.0 state deserialization, demonstrating denial of service via…

binary-analysisembedded-systems-securityexploitation+3
10 days ago
pwnproxy preview

pwnproxy

GitHubericmtzmtz/pwnproxy

An open, local-first security testing platform for pentesters, AI agents, CI/CD pipelines, and teams.

ai-securityapi-security-testingcrawler+6
72 days ago
linux-kernel-codex-harness preview

linux-kernel-codex-harness

GitHubfoxirain/linux-kernel-codex-harness

Evidence-driven Linux kernel vulnerability research harness used in the investigation of CVE-2026-31720

ai-securityfuzzingstatic-analysis+1
1 month ago
CVE-2026-27280 preview

CVE-2026-27280

GitHubr3n3r0/cve-2026-27280

In-depth analysis and proof-of-concept for CVE-2026-27280, an out-of-bounds write in Adobe DNG SDK's dng_render_task::ProcessArea, reachable via…

android-securitybinary-exploitationexploitation+5
118 days ago
binviz preview

binviz

GitHubkarankantaria/binviz

Binary visualiser and triage tool — entropy, byte-class and Hilbert surfaces, dot plots and control-flow graphs over one shared address-space model.

binary-analysiseducationforensics+4
719 days ago
CVE-2026-23918-test preview

CVE-2026-23918-test

GitHub12lie20/cve-2026-23918-test

This repository contains a Proof of Concept (PoC) demonstrating the Double Free vulnerability (CVE-2026-23918) in Apache HTTP Server 2.4.66…

binary-exploitationexploitationfuzzing+3
44 months ago
PoC_CVE-2025-11579 preview

PoC_CVE-2025-11579

GitHubshinigami-777/poc_cve-2025-11579

Proof-of-concept exploit for CVE-2025-11579, a denial-of-service vulnerability in rardecode that triggers an out-of-memory crash via a crafted RAR…

binary-analysisexploitationfuzzing+1
11 months ago
log4j-fuzzer preview

log4j-fuzzer

GitHubmr-vill4in/log4j-fuzzer

Automated scanner for CVE-2021-44228 (Log4Shell) that tests single or multiple web targets for the vulnerability using remote callback servers.

exploitationfuzzingpenetration-testing+2
34 years ago
log4j-scanner preview

log4j-scanner

GitHubmanishkanyal/log4j-scanner

A Log4j vulnerability scanner is used to identify the CVE-2021-44228 and CVE_2021_45046

exploitationfuzzingpenetration-testing+3
14 years ago
CVE-2026-29628 preview

CVE-2026-29628

GitHubkiyochii/cve-2026-29628

Proof-of-concept for CVE-2026-29628, a stack-based buffer overflow in tinyobjloader's experimental parser, with ASan/UBSan reproduction and fix…

binary-analysiscode-analysisexploitation+2
5 months ago
jfrog-CVE-2023-43786-libX11_DoS preview

jfrog-CVE-2023-43786-libX11_DoS

GitHubjfrog/jfrog-cve-2023-43786-libx11_dos

Proof-of-concept for CVE-2023-43786, a libX11 integer overflow causing infinite loop DoS. Demonstrates triggering the vulnerability via sxpm with a…

binary-analysisexploitationfuzzing+1
2 years ago
CVE-2026-3909 preview

CVE-2026-3909

GitHubjaf0rk/cve-2026-3909

Proof-of-concept exploit for CVE-2026-3909, a Chromium Skia out-of-bounds vulnerability, with patches and crash analysis for reliable triggering in…

binary-analysisexploitationfuzzing+2
25 months ago
Previous12…28Next