Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
76 results
wordlistctl preview

wordlistctl

GitHubblackarch/wordlistctl

Fetch, install and search wordlist archives from websites and torrent peers.

fuzzinginformation-gatheringpassword-cracking+1
537
3 years ago
fuzzuf preview

fuzzuf

GitHubfuzzuf/fuzzuf

Modular fuzzing framework with a DSL (HierarFlow) to compose fuzzing loops from reusable primitives. Supports AFL, libFuzzer, VUzzer, and more for…

binary-analysiseducationfuzzing+2
3852 years ago
ffufPostprocessing preview

ffufPostprocessing

GitHubdsecuredcom/ffufpostprocessing

Golang tool which helps dropping the irrelevant entries from your ffuf result file.

fuzzinginformation-gatheringpenetration-testing+3
1441 year ago
IDA2Obj preview

IDA2Obj

GitHubjhftss/ida2obj

Static binary instrumentation tool that dumps COFF object files from executables, enabling code/data insertion at any location for black-box fuzzing…

binary-analysisdebuggersfuzzing+2
1224 years ago
Hx0-HawkEye preview

Hx0-HawkEye

GitHubasaotomo/hx0-hawkeye

一个轻量级浏览器抓包与安全分析扩展,在浏览器侧边栏中即可完成抓包、拦截、修改、重放、规则检测与AI辅助分析的完整工作流。(A lightweight browser extension for traffic capture and security analysis, enabling…

ai-securityapi-security-testingctf+7
602 months ago
sgxray preview

sgxray

GitHubbaiduxlab/sgxray

Automated reasoning tool based on the SMACK verifier that detects SGX enclave bugs from trusted boundary violations, including invalid pointer…

binary-analysisfuzzinghardware-security+2
435 years ago
Payload-and-Polyglot-Lists preview

Payload-and-Polyglot-Lists

GitHubgromhacks/payload-and-polyglot-lists

GromHacks Labs -- The payload lists they don't want you to have. 1,324 injection probes beamed down from the mothership to detect what's injectable…

educationfuzzingosint+4
364 months ago
cve-2023-5217-poc preview

cve-2023-5217-poc

GitHubut-security/cve-2023-5217-poc

A PoC to trigger CVE-2023-5217 from the Browser WebCodecs or MediaRecorder interface.

binary-exploitationeducationexploitation+3
162 years ago
ABL_ROP preview

ABL_ROP

GitHubboredpentester/abl_rop

Experimenting with CVE-2022-20120 (Pixel Bootloader / ABL) using Unicorn, derived from eShard's emulator at…

android-securitybinary-exploitationembedded-systems-security+4
71 year ago
syntribos preview
Archived

syntribos

GitHubopenstack-archive/syntribos

Python API security testing tool from OpenStack Security Group

api-security-testingfuzzingpenetration-testing+2
2716 years ago
cook preview

cook

GitHubglitchedgitz/cook

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

fuzzingpassword-crackingpenetration-testing+1
1.4k6 months ago
dirsearch preview

dirsearch

GitHubmaurosoria/dirsearch

Web path scanner

fuzzinginformation-gatheringpenetration-testing+3
14.6k5 days ago
BlackWidow preview

BlackWidow

GitHub1n3/blackwidow

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

fuzzinginformation-gatheringosint+3
1.8k4 months ago
mdk4 preview

mdk4

GitHubaircrack-ng/mdk4

IEEE 802.11 Wi-Fi testing tool for protocol weakness exploitation, including beacon flooding, deauthentication, packet fuzzing, and IDS evasion.…

exploitationfuzzingids-ips-evasion+5
8012 months ago
Damn_Vulnerable_C_Program preview

Damn_Vulnerable_C_Program

GitHubhardik05/damn_vulnerable_c_program

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

educationfuzzinglabs-practice+1
7271 year ago
esp32_esp8266_attacks preview

esp32_esp8266_attacks

GitHubmatheus-garbelini/esp32_esp8266_attacks

Proof of Concept of ESP32/8266 Wi-Fi vulnerabilties (CVE-2019-12586, CVE-2019-12587, CVE-2019-12588)

embedded-systems-securityexploitationfuzzing+5
8216 years ago
monsoon preview

monsoon

GitHubredteampentesting/monsoon

Fast HTTP enumerator

fuzzinginformation-gatheringpenetration-testing+1
5001 month ago
FormatFuzzer preview

FormatFuzzer

GitHubuds-se/formatfuzzer

Template-driven binary format fuzzer that generates and parses valid test inputs at high speed, with AFL++ integration for coverage-guided fuzzing.

binary-analysisfuzzing
4475 months ago
Previous12345Next