Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
60 results
CVE-2026-32945 preview

CVE-2026-32945

GitHubjohanneslks/cve-2026-32945

PJSIP DNS Compression Pointer Heap OOB Read (Remote DoS)

binary-analysisdynamic-analysis-sandboxingexploitation+2
5 months ago
manticore preview
Archived

manticore

GitHubtrailofbits/manticore

Symbolic execution tool

binary-analysisdynamic-analysis-sandboxingeducation+3
3.9k3 months ago
openssl-fuzz preview

openssl-fuzz

GitHubwhatthefuzz/openssl-fuzz

Finding CVE-2022-3786 (openssl) with Mayhem

binary-analysiscryptographyeducation+3
53 years ago
Reconator preview

Reconator

GitHubgokulapap/reconator

Automated reconnaissance framework with 17+ modules for subdomain enumeration, directory brute-forcing, JS/link mining, WAF fingerprinting, and…

dns-subdomain-enumerationfuzzinginformation-gathering+6
4401 month ago
fuzztruction preview

fuzztruction

GitHubfuzztruction/fuzztruction

Fault-injection-based fuzzer that mutates generator programs to produce almost-valid inputs for targets, enabling fuzzing of complex formats and…

binary-analysisdynamic-analysis-sandboxingfuzzing+1
1362 years ago
CVE-2025-49844 preview

CVE-2025-49844

GitHubopen-flaw/cve-2025-49844

Proof-of-concept exploit for CVE-2025-49844 targeting a Redis heap vulnerability, with GDB-assisted crash analysis and fuzzing attempts to achieve…

binary-exploitationdebuggersexploitation+3
5 months ago
ros2_CVE-2024-28231 preview

ros2_CVE-2024-28231

GitHubgrimmmbo/ros2_cve-2024-28231

Demonstrating the usage of Fastrtps-DDS vulnerability CVE-2024-28231 within Ros2

binary-exploitationeducationexploitation+3
10 months ago
CVE-2025-60876 preview
Archived

CVE-2025-60876

GitHubsirredbeard/cve-2025-60876

Behavior-preserving fix for CVE-2025-60876 HTTP header injection in BusyBox wget, with proof-of-concept, percent-encoding patch, and upstream…

exploitationfuzzingpenetration-testing+3
3 months ago
snapchange preview

snapchange

GitHubawslabs/snapchange

Lightweight fuzzing of a memory snapshot using KVM

debuggersdynamic-analysis-sandboxingdynamic-code-analysis+3
4712 years ago
like-dbg preview

like-dbg

GitHub0xricksanchez/like-dbg

Fully dockerized Linux kernel debugging environment

binary-exploitationctfdebuggers+2
76919 days ago
hyperpom preview

hyperpom

GitHubimpalabs/hyperpom

AArch64 fuzzer based on the Apple Silicon hypervisor

binary-analysisdynamic-analysis-sandboxingfuzzing+2
2042 years ago
android-kernel-exploitation-lab preview

android-kernel-exploitation-lab

GitHub0xbinder/android-kernel-exploitation-lab

This lab guides you through setting up an environment to explore CVE-2019-2215, a critical Android kernel vulnerability in the binder subsystem.

android-securitybinary-exploitationdebuggers+6
441 year ago
CVE-2026-42533 preview

CVE-2026-42533

GitHubivanesk315/cve-2026-42533

Docker lab reproducing CVE-2026-42533, a pre-auth nginx heap overflow and info leak via two-pass capture clobbering, with PoC scripts and patched…

educationexploitationfuzzing+6
18 days ago
ENV-CVE-2020-8036 preview

ENV-CVE-2020-8036

GitHubyan5ui/env-cve-2020-8036

Aritifacts of docker env of CVE-2020-8036

binary-analysiseducationexploitation+3
3 months ago
SSRFmap preview

SSRFmap

GitHubswisskyrepo/ssrfmap

Automatic SSRF fuzzer and exploitation tool

ctfexploitationfuzzing+4
3.6k1 month ago
exploitgym preview

exploitgym

GitHubsunblaze-ucb/exploitgym

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

ai-securitybinary-exploitationctf+9
1.1k1 month ago
pwnedit preview

pwnedit

GitHubliveoverflow/pwnedit

CVE-2021-3156 - Sudo Baron Samedit

binary-exploitationctfdebuggers+5
2264 years ago
CVE-2026-442_ preview

CVE-2026-442_

GitHubhorkimhab/cve-2026-442_

CVE-2026-44289, CVE-2026-44290, CVE-2026-44291, CVE-2026-44292, CVE-2026-44294, CVE-2026-44295 - protobuf.js

code-analysiseducationexploitation+3
3 months ago
Previous1234Next