Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
94 results
cve-2026-23398-poc preview

cve-2026-23398-poc

GitHubzpol/cve-2026-23398-poc

Reproducible lab for CVE-2026-23398, a Linux kernel NULL dereference in icmp_tag_validation() triggered by ICMP Fragmentation Needed packets, causing…

educationexploitationfuzzing+3
1
4 months ago
CVE-2026-442_ preview

CVE-2026-442_

GitHubhorkimhab/cve-2026-442_

CVE-2026-44289, CVE-2026-44290, CVE-2026-44291, CVE-2026-44292, CVE-2026-44294, CVE-2026-44295 - protobuf.js

code-analysiseducationexploitation+3
2 months ago
ctf-tools preview

ctf-tools

GitHubzardus/ctf-tools

Some setup scripts for security research tools.

binary-analysiscryptographyctf+9
9.5k23 days ago
wfuzz preview

wfuzz

GitHubxmendez/wfuzz

Modular web fuzzer for automated security testing. Injects payloads into any HTTP request field to discover vulnerabilities, brute-force parameters,…

fuzzingpenetration-testingvulnerability-analysis+2
6.6k7 months ago
ParamPamPam preview

ParamPamPam

GitHubbo0om/parampampam

Brute-force tool for discovering hidden GET and POST parameters in web applications, supporting custom wordlists and concurrent requests.

fuzzinginformation-gatheringweb-security
2764 years ago
insect preview

insect

GitHubnu11secur1ty/insect

High-performance web path discovery and directory brute-forcing tool. Discovers hidden files, directories, and endpoints using customizable…

fuzzinginformation-gatheringpenetration-testing+3
3 years ago
CVE-2024-1441 preview

CVE-2024-1441

GitHubalmkuznetsov/cve-2024-1441

Reproduces fuzzing and crash analysis for CVE-2024-1441 using AFL++ and CASR, with detailed setup and commands for libvirt.

binary-analysisdynamic-analysis-sandboxingexploitation+2
2 years ago
difuze preview

difuze

GitHubucsb-seclab/difuze

Fuzzer for Linux Kernel Drivers

android-securitybinary-analysisfuzzing+1
3854 years ago
CVE-2026-23918 preview

CVE-2026-23918

GitHubalt3kx/cve-2026-23918

CVE-2026-23918 Apache mod_http2 Double-Free Detector

educationexploitationfuzzing+2
14 months ago
CVE-2023-20052 preview

CVE-2023-20052

GitHubmohitsinghpapola/cve-2023-20052

Fixed Docker build for CVE-2023-20052 ClamAV XXE exploit. Resolves OpenSSL 3.0 compilation errors using Ubuntu 18.04 with OpenSSL 1.0 for…

binary-analysisexploitationfuzzing+3
6 months ago
CVE-2021-3156 preview

CVE-2021-3156

GitHubchenaotian/cve-2021-3156

CVE-2021-3156 POC and Docker and Analysis write up

binary-exploitationcode-analysisdebuggers+8
114 years ago
cve-2026-69243-poc-aiohttp-smuggling preview

cve-2026-69243-poc-aiohttp-smuggling

GitHubjvbotelho/cve-2026-69243-poc-aiohttp-smuggling

Reproduces aiohttp CWE-444 request smuggling via rejected WebSocket upgrades, with Python/Rust payloads and Docker lab demonstrating proxy…

exploitationfuzzingpayload-generation+3
11 month ago
ENV-CVE-2020-8036 preview

ENV-CVE-2020-8036

GitHubyan5ui/env-cve-2020-8036

Aritifacts of docker env of CVE-2020-8036

binary-analysiseducationexploitation+3
2 months ago
fuzzer-testing preview

fuzzer-testing

GitLabrode0day/fuzzer-testing

Docker images for testing fuzzers on the Rode0day corpora

educationfuzzinglabs-practice
32 years ago
xpdf-docker preview

xpdf-docker

GitHubrishvic/xpdf-docker

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524

binary-analysiscontainer-securityeducation+3
13 years ago
Kaspersky_CVE-2024-3094 preview

Kaspersky_CVE-2024-3094

GitHubvesjolyjd/kaspersky_cve-2024-3094

Security review of CVE-2024-3094 (XZ Utils backdoor) including threat modeling, static/dynamic code analysis, fuzzing with AFL++, and a…

code-analysisdynamic-analysis-sandboxingeducation+7
4 months ago
cve-2019-13132-lab preview

cve-2019-13132-lab

GitHubdinosn/cve-2019-13132-lab

CVE-2019-13132 — libzmq CURVE INITIATE stack overflow → RCE. Working exploit + Docker lab.

binary-exploitationeducationexploitation+5
4 months ago
CVE-2026-42945-nginx-rift-poc preview

CVE-2026-42945-nginx-rift-poc

GitHubf2u0a0d3/cve-2026-42945-nginx-rift-poc

PoC for CVE-2026-42945 (nginx Rift) — heap buffer overflow in ngx_http_rewrite_module. Includes detect/probe/exploit modes, dual-fixture Docker lab,…

binary-exploitationdynamic-analysis-sandboxingeducation+6
13 months ago
Previous123456Next