Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
37 results
PoC_CVE-2025-11579 preview

PoC_CVE-2025-11579

GitHubshinigami-777/poc_cve-2025-11579

Proof-of-concept exploit for CVE-2025-11579, a denial-of-service vulnerability in rardecode that triggers an out-of-memory crash via a crafted RAR…

binary-analysisexploitationfuzzing+1
11 months ago
CVE-2026-29628 preview

CVE-2026-29628

GitHubkiyochii/cve-2026-29628

Proof-of-concept for CVE-2026-29628, a stack-based buffer overflow in tinyobjloader's experimental parser, with ASan/UBSan reproduction and fix…

binary-analysiscode-analysisexploitation+2
5 months ago
Damn_Vulnerable_C_Program preview

Damn_Vulnerable_C_Program

GitHubhardik05/damn_vulnerable_c_program

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

educationfuzzinglabs-practice+1
7301 year ago
ffufPostprocessing preview

ffufPostprocessing

GitHubdsecuredcom/ffufpostprocessing

Golang tool which helps dropping the irrelevant entries from your ffuf result file.

fuzzinginformation-gatheringpenetration-testing+3
1442 years ago
blackbox-fuzzing preview

blackbox-fuzzing

GitHubotsmr/blackbox-fuzzing

Fuzzing IoT Devices Using the Router TL-WR902AC as Example

binary-analysiseducationexploitation+6
13210 months ago
TriforceAFL preview

TriforceAFL

GitHubnccgroup/triforceafl

AFL/QEMU fuzzing with full-system emulation.

binary-analysisdynamic-analysis-sandboxingfuzzing+2
6448 years ago
TriforceLinuxSyscallFuzzer preview

TriforceLinuxSyscallFuzzer

GitHubnccgroup/triforcelinuxsyscallfuzzer

A linux system call fuzzer using TriforceAFL

dynamic-analysis-sandboxingfuzzingvulnerability-analysis
1792 years ago
mime-is-broken preview

mime-is-broken

GitHubnoxxi/mime-is-broken

Test cases for broken MIME and tools to generate and process these

email-securityfuzzingids-ips-evasion+2
64 years ago
Mutator preview

Mutator

Bitbucketalone/mutator

Generate mutations over a wordlist

fuzzinggeneral-purpose-utilitiespassword-cracking
12 years ago
CVE-2022-26269 preview

CVE-2022-26269

GitHubnsbogam/cve-2022-26269

Suzuki connect app is used to get the car information like Fuel, Ignition status, Current location, Seat buckle status etc. In Ignis, Zeta variant…

embedded-systems-securityexploitationfuzzing+2
24 years ago
xpdf-docker preview

xpdf-docker

GitHubrishvic/xpdf-docker

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524

binary-analysiscontainer-securityeducation+3
13 years ago
CVE-2022-36234 preview

CVE-2022-36234

GitHubhalcy0nic/cve-2022-36234

Proof of concept for CVE-2022-36234

binary-exploitationeducationexploitation+3
23 years ago
CVE-2019-19012 preview

CVE-2019-19012

GitHubmanhndd/cve-2019-19012

Integer overflow in Oniguruma

binary-analysisexploitationfuzzing+3
46 years ago
CVE-2019-19012 preview

CVE-2019-19012

GitHubtarantula-team/cve-2019-19012

An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bounds read

binary-analysisexploitationfuzzing+3
6 years ago
CVE-2010-1205 preview

CVE-2010-1205

GitHubmk219533/cve-2010-1205

sample exploit of buffer overflow in libpng

binary-exploitationeducationexploitation+2
415 years ago
bettercap preview

bettercap

GitHubbettercap/bettercap

The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.

bluetooth-securitydata-exfiltrationfingerprint-spoofing+16
20.0k1 month ago
killasa preview

killasa

GitHubjgajek/killasa

Exploit tool for CVE-2016-1287 that tests Cisco ASA devices by sending crafted IKEv2 fragments with invalid lengths to trigger denial of service.

exploitationfuzzingnetwork-security+2
1610 years ago
NotEnough preview

NotEnough

GitHubcaoweiquan322/notenough

This tool calculates tricky canonical huffman histogram for CVE-2023-4863.

binary-exploitationexploitationfuzzing+3
252 years ago
Previous123Next