Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
19 results
GooFuzz preview

GooFuzz

GitHubm3n0sd0n4ld/goofuzz

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

dns-subdomain-enumerationfuzzinginformation-gathering+3
1.6k
9 months ago
abhinavagarwal07.github.io preview

abhinavagarwal07.github.io

GitHubabhinavagarwal07/abhinavagarwal07.github.io

RingWraith: CVE-2026-33150 and CVE-2026-33179 — Use-After-Free and NULL Dereference in libfuse io_uring

binary-exploitationeducationexploitation+3
2 days ago
peach preview

peach

GitHubcalebstewart/peach

Simple vulnerability scanning framework

code-analysisfuzzingstatic-analysis+1
519 years ago
cve-2024-25423 preview

cve-2024-25423

GitHubdriverunload/cve-2024-25423

Cinema 4D out-of-bounds write vulnerability when parsing c4d files

binary-exploitationexploitationfuzzing+2
2 years ago
CVE-2020-9273 preview

CVE-2020-9273

GitHubdukptkey/cve-2020-9273

Analysis and exploitation of an use-after-free in ProFTPd

binary-exploitationexploitationfuzzing+2
143 years ago
isip preview
Archived

isip

GitHubhalit/isip

Interactive sip toolkit for packet manipulations, sniffing, man in the middle attacks, fuzzing, simulating of dos attacks.

fuzzingnetwork-securitypacket-sniffing-analysis+3
7910 years ago
hyenae-ng preview

hyenae-ng

GitHubr-richter/hyenae-ng

Cross-platform network packet generator with full layer spoofing, pattern-based address randomization, and flood detection evasion for stress-testing…

fuzzingnetwork-securitypacket-sniffing-analysis+1
1356 years ago
nemesis preview

nemesis

GitHublibnet/nemesis

A command-line network packet crafting and injection utility

exploitationfuzzingnetwork-security+2
5282 years ago
packETH preview

packETH

GitHubjemcek/packeth

Ethernet packet generator

fuzzingnetwork-securitypacket-sniffing-analysis+1
1351 year ago
cve-2025-54874-poc preview

cve-2025-54874-poc

GitHubcyhe50/cve-2025-54874-poc

Proof-of-concept demonstrating a memory leak in OpenJPEG 2.5.1 via crafted JP2 files, triggering opj_read_header failure and heap leak, with valgrind…

binary-analysisexploitationfuzzing+2
11 months ago
pngcheck-vulns preview

pngcheck-vulns

GitHub13m0n4de/pngcheck-vulns

A repository of proof-of-concept files demonstrating disclosed and patched vulnerabilities in pngcheck (2.4.0 - 3.0.1), including CVE-2020-27818,…

binary-analysiseducationexploitation+4
1 year ago
CVE-2024-22641 preview

CVE-2024-22641

GitHubzunak/cve-2024-22641

Proof-of-concept for CVE-2024-22641: ReDoS vulnerability in TCPDF <=6.7.4 triggered by crafted SVG files, demonstrating regex backtrack limit…

educationexploitationfuzzing+3
12 years ago
CVE-2013-3664_BMP preview

CVE-2013-3664_BMP

GitHubdefrancescojp/cve-2013-3664_bmp

Proof-of-concept exploit for CVE-2013-3664: heap overflow in SketchUp BMP RLE4 texture parsing enabling arbitrary code execution via malicious .skp…

binary-exploitationexploitationfuzzing+2
5 years ago
fastfuz-chrome-ext preview

fastfuz-chrome-ext

GitHubtismayil/fastfuz-chrome-ext

Chrome extension for fast web fuzzing to discover hidden files and directories during penetration testing and vulnerability analysis.

fuzzingpenetration-testingvulnerability-analysis+1
244 years ago
ffuf preview

ffuf

GitHubffuf/ffuf

Fast web fuzzer written in Go

api-securityapi-security-testingcrawler+12
16.7k1 day ago
CaA preview

CaA

GitHuboverspace-labs/caa

BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency,…

fuzzinginformation-gatheringpayload-generation+2
1.5k4 months ago
TriforceOpenBSDFuzzer preview

TriforceOpenBSDFuzzer

GitHubnccgroup/triforceopenbsdfuzzer

System call fuzzing of OpenBSD amd64 using TriforceAFL (i.e. AFL and QEMU)

dynamic-analysis-sandboxingfuzzingvulnerability-analysis
478 years ago
ImageMagick-CVE-2017-15277 preview

ImageMagick-CVE-2017-15277

GitHubhexrom/imagemagick-cve-2017-15277

Proof-of-concept exploit for ImageMagick CVE-2017-15277 memory leak vulnerability, designed for use with the gifoeb fuzzing framework.

binary-analysisexploitationfuzzing+2
56 years ago
Previous12Next