Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
72 results
CVE-2025-5548 preview

CVE-2025-5548

GitHubpopclom/cve-2025-5548

Step-by-step guide to exploit a buffer overflow in FreeFloat FTP Server using Python fuzzing, Immunity Debugger with mona.py, and IDA Free for binary…

binary-exploitationdebuggerseducation+8
5 months ago
haptyc preview

haptyc

GitHubdefparam/haptyc

Python library for Turbo Intruder that adds payload position support and Sniper/Clusterbomb/Pitchfork attack types with tag-based test generation for…

fuzzingpayload-generationpenetration-testing+1
934 years ago
XSSFuzzer preview

XSSFuzzer

GitHubnytrorst/xssfuzzer

XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.

fuzzingpayload-generationwaf-bypass+1
1387 years ago
Arjun preview

Arjun

GitHubs0md3v/arjun

HTTP parameter discovery tool that finds valid query parameters for URL endpoints using a large dictionary, supporting GET/POST/JSON/XML requests,…

api-securityapi-security-testingfuzzing+3
6.4k1 year ago
VMProtect-devirtualization preview

VMProtect-devirtualization

GitHubjonathansalwan/vmprotect-devirtualization

Playing with the VMProtect software protection. Automatic deobfuscation of pure functions using symbolic execution and LLVM.

binary-analysisdynamic-analysis-sandboxingfuzzing+2
1.5k4 years ago
DeepZero preview

DeepZero

GitHub416rehman/deepzero

Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands of Windows…

ai-assisted-reversingbinary-analysisfuzzing+3
70525 days ago
DHCPig preview

DHCPig

GitHubkamorin/dhcpig

DHCP exhaustion script written in python using scapy network library

exploitationfuzzingnetwork-security+3
35418 days ago
BinAbsInspector preview

BinAbsInspector

GitHubkeensecuritylab/binabsinspector

Static binary vulnerability scanner using abstract interpretation on Ghidra Pcode. Detects CWE classes like buffer overflows, use-after-free, and…

binary-analysisfuzzingreverse-engineering+2
1.7k2 years ago
Kam1n0-Community preview

Kam1n0-Community

GitHubmcgill-dmas/kam1n0-community

Scalable assembly analysis platform for indexing, clone search, and executable classification using static, dynamic, and machine-learning techniques…

binary-analysiscode-analysisfuzzing+3
6273 years ago
VMDragonSlayer preview

VMDragonSlayer

GitHubpoppopjmp/vmdragonslayer

Multi-engine framework for unpacking and analyzing VM-protected binaries using dynamic taint tracking, symbolic execution, pattern classification,…

binary-analysisdebuggersdynamic-analysis-sandboxing+8
43111 months ago
pysap preview

pysap

GitHubowasp/pysap

pysap is an open source Python library that provides modules for crafting and sending packets using SAP's NI, Diag, Enqueue, Router, MS, SNC, IGS,…

educationexploitationfuzzing+5
2566 days ago
RESim preview

RESim

GitHubmfthomps/resim

Reverse engineering software using a full system simulator

binary-analysisdebuggersdynamic-analysis-sandboxing+3
19421 days ago
ESP-RFID-Tool preview

ESP-RFID-Tool

GitHubrfidtool/esp-rfid-tool

A tool for logging data/testing devices with a Wiegand Interface. Can be used to create a portable RFID reader or installed directly into an existing…

embedded-systems-securityfuzzinghardware-hacking+5
5823 years ago
snapchange preview

snapchange

GitHubawslabs/snapchange

Lightweight fuzzing of a memory snapshot using KVM

debuggersdynamic-analysis-sandboxingdynamic-code-analysis+3
4702 years ago
extended-ssrf-search preview

extended-ssrf-search

GitHubdamian89/extended-ssrf-search

Smart ssrf scanner using different methods like parameter brute forcing in post and get...

fuzzingpenetration-testingvulnerability-scanners+1
2775 years ago
ghidralligator preview

ghidralligator

GitHubairbus-cyber/ghidralligator

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

binary-analysisdynamic-analysis-sandboxingembedded-systems-security+3
3312 years ago
cotopaxi preview

cotopaxi

GitHubsamsung/cotopaxi

Set of tools for security testing of Internet of Things devices using specific network IoT protocols

fuzzingiot-securitynetwork-security+2
3625 years ago
TriforceLinuxSyscallFuzzer preview

TriforceLinuxSyscallFuzzer

GitHubnccgroup/triforcelinuxsyscallfuzzer

A linux system call fuzzer using TriforceAFL

dynamic-analysis-sandboxingfuzzingvulnerability-analysis
1792 years ago
Previous1234Next