Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
37 results
TriforceOpenBSDFuzzer preview

TriforceOpenBSDFuzzer

GitHubnccgroup/triforceopenbsdfuzzer

System call fuzzing of OpenBSD amd64 using TriforceAFL (i.e. AFL and QEMU)

dynamic-analysis-sandboxingfuzzingvulnerability-analysis
478 years ago
payloads preview

payloads

GitHubfoospidy/payloads

Git All the Payloads! A collection of web attack payloads.

ctfcurated-resourceseducation+6
4.0k5 years ago
PoC preview

PoC

GitHubpedrib/poc

Advisories, proof of concept files and exploits that have been made public by @pedrib.

exploitationexploit-frameworksfuzzing+4
8611 year ago
GooFuzz preview

GooFuzz

GitHubm3n0sd0n4ld/goofuzz

Bash-based fuzzing tool that leverages Google Dorking for stealthy enumeration of directories, files, subdomains, and parameters without direct…

dns-subdomain-enumerationfuzzinginformation-gathering+3
1.6k9 months ago
pngcheck-vulns preview

pngcheck-vulns

GitHub13m0n4de/pngcheck-vulns

A repository of proof-of-concept files demonstrating disclosed and patched vulnerabilities in pngcheck (2.4.0 - 3.0.1), including CVE-2020-27818,…

binary-analysiseducationexploitation+4
1 year ago
cook preview

cook

GitHubglitchedgitz/cook

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

fuzzingpassword-crackingpenetration-testing+1
1.4k7 months ago
zipbrk preview

zipbrk

GitHubkvesel/zipbrk

Zip file format fuzzer and multi-tool.

binary-analysiscryptographyencryption-decryption-tools+4
124 months ago
CVE-2020-9273 preview

CVE-2020-9273

GitHubdukptkey/cve-2020-9273

Analysis and exploitation of an use-after-free in ProFTPd

binary-exploitationexploitationfuzzing+2
143 years ago
exploits preview

exploits

GitHubhackerhouse-opensource/exploits

exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House

binary-exploitationcurated-resourcesembedded-systems-security+7
4707 months ago
CVE-2024-22641 preview

CVE-2024-22641

GitHubzunak/cve-2024-22641

Proof-of-concept for CVE-2024-22641: ReDoS vulnerability in TCPDF <=6.7.4 triggered by crafted SVG files, demonstrating regex backtrack limit…

educationexploitationfuzzing+3
12 years ago
abhinavagarwal07.github.io preview

abhinavagarwal07.github.io

GitHubabhinavagarwal07/abhinavagarwal07.github.io

RingWraith: CVE-2026-33150 and CVE-2026-33179 — Use-After-Free and NULL Dereference in libfuse io_uring

binary-exploitationeducationexploitation+3
12 days ago
fuzz.txt preview

fuzz.txt

GitHubbo0om/fuzz.txt

Potentially dangerous files

fuzzinginformation-gatheringpenetration-testing+3
3.4k2 months ago
filebuster preview

filebuster

GitHubhenshin/filebuster

An extremely fast and flexible web fuzzer

fuzzinginformation-gatheringpenetration-testing+1
2233 years ago
CaA preview

CaA

GitHuboverspace-labs/caa

BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency,…

fuzzinginformation-gatheringpayload-generation+2
1.5k4 months ago
fuzzuli preview

fuzzuli

GitHubmusana/fuzzuli

Domain-aware URL fuzzer that dynamically generates wordlists to discover exposed backup and sensitive files on web servers.

fuzzinginformation-gatheringvulnerability-scanners+1
9403 years ago
Afuzz preview

Afuzz

GitHubrapiddns/afuzz

Automated web path fuzzing tool that detects hidden directories, files, and endpoints using intelligent language detection, blacklist/whitelist…

fuzzinginformation-gatheringreconnaissance+2
3093 years ago
urlbuster preview

urlbuster

GitHubcytopia/urlbuster

Powerful mutable web directory fuzzer to bruteforce existing and/or hidden files or directories.

fuzzinginformation-gatheringvulnerability-scanners+1
1685 years ago
insect preview

insect

GitHubnu11secur1ty/insect

High-performance web path discovery and directory brute-forcing tool. Discovers hidden files, directories, and endpoints using customizable…

fuzzinginformation-gatheringpenetration-testing+3
3 years ago
Previous123Next