Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
53 results
WindowsProtocolTestSuites preview

WindowsProtocolTestSuites

GitHubmicrosoft/windowsprotocoltestsuites

⭐⭐ Join us at SNIA SDC for the SMB3 IO Lab (September 28 - October 1, 2026), see upcoming Interoperability Events

authenticationcloud-securityconfiguration-auditing+6
566
11 days ago
honggfuzz preview

honggfuzz

GitHubgoogle/honggfuzz

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

dns-fuzzingdynamic-code-analysisfuzzing+1
3.4k2 months ago
oss-fuzz-gen preview

oss-fuzz-gen

GitHubgoogle/oss-fuzz-gen

LLM powered fuzzing via OSS-Fuzz.

ai-securitydevsecopsdynamic-code-analysis+3
1.4k6 months ago
XSStrike preview

XSStrike

GitHubs0md3v/xsstrike

Most advanced XSS scanner.

crawlerdynamic-code-analysisfuzzing+8
15.2k1 year ago
SSTImap preview

SSTImap

GitHubvladko312/sstimap

Automatic SSTI detection tool with interactive interface

code-analysiscommand-and-controldynamic-code-analysis+6
1.6k19 days ago
polytracker preview

polytracker

GitHubtrailofbits/polytracker

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

binary-analysisdynamic-code-analysiseducation+4
5993 months ago
DIBF preview

DIBF

GitHubnccgroup/dibf

Windows NT ioctl bruteforcer and modular fuzzer

binary-exploitationdynamic-code-analysisfuzzing+3
1277 years ago
Pishi preview

Pishi

GitHubr00tkitsmm/pishi

Pishi is a code coverage tool like kcov for macOS.

binary-analysiscode-analysisdynamic-code-analysis+3
7627 days ago
Cooper-ndss-2022 preview

Cooper-ndss-2022

GitHubtca-iscas/cooper-ndss-2022

A tool for effective testing the binding layer of scripting languages

binary-analysisdynamic-code-analysisfuzzing+2
814 years ago
apatchy preview

apatchy

GitHub0xbigshaq/apatchy

Fuzzing Framework for Modules in Apache HTTPD Server

code-analysisdynamic-code-analysisfuzzing+2
223 months ago
peafl64 preview
Archived

peafl64

GitHubsentinel-one/peafl64

Static Binary Instrumentation tool for Windows x64 executables

binary-analysisdynamic-code-analysisfuzzing+2
20711 months ago
path-auditor preview
Archived

path-auditor

GitHubgoogle/path-auditor

Runtime libc function auditor that detects file access race conditions and symlink vulnerabilities by hooking filesystem syscalls via LD_PRELOAD,…

binary-analysisdynamic-code-analysisexploitation+3
2505 years ago
Hypervisor-101-in-Rust preview

Hypervisor-101-in-Rust

GitHubtandasat/hypervisor-101-in-rust

The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application…

educationfuzzinglabs-practice+2
1.2k11 months ago
TLS-Attacker preview

TLS-Attacker

GitHubtls-attacker/tls-attacker

Java-based framework for systematic fuzzing and analysis of TLS libraries. Enables arbitrary protocol message crafting, modification, and testing of…

cryptographyfuzzingnetwork-security+2
8811 month ago
CVE-2026-31024 preview

CVE-2026-31024

GitHuberikdervishi03/cve-2026-31024

Proof of Concept (PoC) for a stack-based buffer overflow in Steghide 0.5.1. Demonstrates how long file paths trigger a crash (DoS) and leak sensitive…

binary-exploitationeducationexploitation+5
24 months ago
CVE-2017-9430 preview

CVE-2017-9430

GitHubhomjxi0e/cve-2017-9430

Proof-of-concept exploit for CVE-2017-9430, a stack-based buffer overflow in dnstracer 1.9, triggered via a long command-line argument causing denial…

binary-exploitationdns-analysisexploitation+2
9 years ago
BugId preview

BugId

GitHubskylined/bugid

Detect, analyze and uniquely identify crashes in Windows applications

binary-analysisdebuggersdynamic-code-analysis+2
5251 year ago
Previous123Next