Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
60 results
red-teaming-auto-mode preview

red-teaming-auto-mode

GitHubsafety-research/red-teaming-auto-mode

Research code for red-teaming AI auto-mode monitors, including simulation evals, fuzzing, and monitor implementations for Claude Code and Codex…

ai-securityeducationfuzzing+3
1
4 days ago
CVE-2026-42533 preview

CVE-2026-42533

GitHubivanesk315/cve-2026-42533

Docker lab reproducing CVE-2026-42533, a pre-auth nginx heap overflow and info leak via two-pass capture clobbering, with PoC scripts and patched…

educationexploitationfuzzing+6
18 days ago
CVE-2026-32945 preview

CVE-2026-32945

GitHubjohanneslks/cve-2026-32945

PJSIP DNS Compression Pointer Heap OOB Read (Remote DoS)

binary-analysisdynamic-analysis-sandboxingexploitation+2
5 months ago
cve-2026-23398-poc preview

cve-2026-23398-poc

GitHubzpol/cve-2026-23398-poc

Reproducible lab for CVE-2026-23398, a Linux kernel NULL dereference in icmp_tag_validation() triggered by ICMP Fragmentation Needed packets, causing…

educationexploitationfuzzing+3
15 months ago
polytracker preview

polytracker

GitHubtrailofbits/polytracker

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

binary-analysisdynamic-code-analysiseducation+4
5993 months ago
like-dbg preview

like-dbg

GitHub0xricksanchez/like-dbg

Fully dockerized Linux kernel debugging environment

binary-exploitationctfdebuggers+2
76919 days ago
hyperpom preview

hyperpom

GitHubimpalabs/hyperpom

AArch64 fuzzer based on the Apple Silicon hypervisor

binary-analysisdynamic-analysis-sandboxingfuzzing+2
2042 years ago
Hypervisor-101-in-Rust preview

Hypervisor-101-in-Rust

GitHubtandasat/hypervisor-101-in-rust

The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application…

educationfuzzinglabs-practice+2
1.2k1 year ago
efcf-framework preview

efcf-framework

GitHubuni-due-syssec/efcf-framework

EF/CF - Extremely Fast smart Contract Fuzzing

binary-analysisexploitationfuzzing+1
703 years ago
kAFL preview

kAFL

GitHubintellabs/kafl

A fuzzer for full VM kernel/driver targets

dynamic-analysis-sandboxingembedded-systems-securityfirmware-analysis+4
8158 months ago
snapchange preview

snapchange

GitHubawslabs/snapchange

Lightweight fuzzing of a memory snapshot using KVM

debuggersdynamic-analysis-sandboxingdynamic-code-analysis+3
4712 years ago
http-garden preview

http-garden

GitHubnarfindustries/http-garden

Differential testing framework for HTTP implementations

dynamic-code-analysisfuzzingvulnerability-analysis+1
9434 months ago
vmware-exploitation preview

vmware-exploitation

GitHubxairy/vmware-exploitation

A collection of links related to VMware escape exploits

binary-exploitationctfcurated-resources+5
1.5k2 years ago
cuFuzz preview

cuFuzz

GitHubnvlabs/cufuzz

A GPU-oriented coverage-guided fuzzer for userland CUDA applications

binary-analysisfuzzingvulnerability-analysis
4014 days ago
CVE-2026-23918 preview

CVE-2026-23918

GitHubalt3kx/cve-2026-23918

CVE-2026-23918 Apache mod_http2 Double-Free Detector

educationexploitationfuzzing+2
14 months ago
CVE-2026-0006-openapv-poc preview

CVE-2026-0006-openapv-poc

GitHubmobilehackinglab/cve-2026-0006-openapv-poc

CVE-2026-0006: Heap buffer overflow PoC for libopenapv (Android APV codec) - CVSS 9.8

android-securitybinary-exploitationcode-analysis+6
145 months ago
exploitgym preview

exploitgym

GitHubsunblaze-ucb/exploitgym

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

ai-securitybinary-exploitationctf+9
1.1k1 month ago
Exploits preview

Exploits

GitHubkmkz/exploits

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

command-and-controlcontainer-escapeeducation+6
2254 days ago
Previous1234Next