Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
ioctlance preview

ioctlance

GitHubzeze-zeze/ioctlance

A tool that is used to hunt vulnerabilities in x64 WDM drivers

binary-analysisdynamic-analysis-sandboxingexploit-frameworks+4
472
2 months ago
httpfuzz-robomiller preview

httpfuzz-robomiller

GitHubmavproxyuser/httpfuzz-robomiller

Dumb Fuzzer used to find CVE-2010-1411

exploitationfuzzingpenetration-testing+2
6 years ago
Damn_Vulnerable_C_Program preview

Damn_Vulnerable_C_Program

GitHubhardik05/damn_vulnerable_c_program

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

educationfuzzinglabs-practice+1
7271 year ago
ESP-RFID-Tool preview

ESP-RFID-Tool

GitHubrfidtool/esp-rfid-tool

A tool for logging data/testing devices with a Wiegand Interface. Can be used to create a portable RFID reader or installed directly into an existing…

embedded-systems-securityfuzzinghardware-hacking+5
5803 years ago
lorsrf preview

lorsrf

GitHubmindpatch/lorsrf

Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load :artificial_satellite: :crab:

fuzzingpenetration-testingvulnerability-scanners+1
2971 year ago
CVE-2022-26269 preview

CVE-2022-26269

GitHubnsbogam/cve-2022-26269

Suzuki connect app is used to get the car information like Fuel, Ignition status, Current location, Seat buckle status etc. In Ignis, Zeta variant…

embedded-systems-securityexploitationfuzzing+2
24 years ago
PHP-Fuzzer preview

PHP-Fuzzer

GitHubnikic/php-fuzzer

Edge-coverage-guided fuzzer for PHP libraries that detects bugs via crashes, timeouts, and warnings. Supports corpus management, crash minimization,…

code-analysisdynamic-analysis-sandboxingfuzzing+1
4417 months ago
frelatage preview

frelatage

GitHubrog3rsm1th/frelatage

Coverage-based fuzzer for python applications

code-analysisdynamic-analysis-sandboxingfuzzing+1
2373 years ago
TriforceOpenBSDFuzzer preview

TriforceOpenBSDFuzzer

GitHubnccgroup/triforceopenbsdfuzzer

System call fuzzing of OpenBSD amd64 using TriforceAFL (i.e. AFL and QEMU)

dynamic-analysis-sandboxingfuzzingvulnerability-analysis
478 years ago
platform_external_libvpx_v1.8.0_CVE-2023-5217 preview

platform_external_libvpx_v1.8.0_CVE-2023-5217

GitHubtrinadh465/platform_external_libvpx_v1.8.0_cve-2023-5217
binary-analysiscode-analysisdynamic-analysis-sandboxing+3
2 years ago
FDsploit preview
Archived

FDsploit

GitHubchrispetrou/fdsploit

File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.

exploitationfuzzinginformation-gathering+3
2735 years ago
exploitation-course preview

exploitation-course

GitHubashemery/exploitation-course

Offensive Software Exploitation Course

binary-exploitationeducationexploitation+7
2.5k3 years ago
TinyInst preview

TinyInst

GitHubgoogleprojectzero/tinyinst

A lightweight dynamic instrumentation library

binary-analysiscode-analysisdebuggers+3
1.4k5 months ago
erebus preview

erebus

GitHubethicalhackingplayground/erebus

Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.

fuzzingpenetration-testingvulnerability-scanners+4
1345 years ago
CVE-2016-2334 preview

CVE-2016-2334

GitHubicewall/cve-2016-2334

Exploiting CVE-2016-2334 7zip HFS+ vulnerability

binary-exploitationdebuggersexploitation+3
108 years ago
endsfuzzer preview

endsfuzzer

GitHubameenalkerdy/endsfuzzer

Fuzz a list of domains for specific endpoints

fuzzinginformation-gatheringweb-security
3 years ago
frida-fuzzer preview
Archived

frida-fuzzer

GitHubandreafioraldi/frida-fuzzer

This experimetal fuzzer is meant to be used for API in-memory fuzzing.

api-security-testingbinary-analysisdynamic-analysis-sandboxing+3
5776 years ago
CVE-2021-21017 preview

CVE-2021-21017

GitHubzeusbox/cve-2021-21017
binary-exploitationexploitationfuzzing+3
445 years ago
Previous12Next