Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
23 results
fuzztruction preview

fuzztruction

GitHubfuzztruction/fuzztruction

Fault-injection-based fuzzer that mutates generator programs to produce almost-valid inputs for targets, enabling fuzzing of complex formats and…

binary-analysisdynamic-analysis-sandboxingfuzzing+1
136
2 years ago
vulns-2026-fatfs-chance preview

vulns-2026-fatfs-chance

GitHubrunzeroinc/vulns-2026-fatfs-chance

Documented security vulnerabilities in the FatFs embedded filesystem library with CVE details, fuzzing harness, exploit disk-image generator, and…

binary-analysiseducationembedded-systems-security+8
402 months ago
cve-2025-9951-ffmpeg-jp2-poc preview

cve-2025-9951-ffmpeg-jp2-poc

GitHubfm0ss/cve-2025-9951-ffmpeg-jp2-poc

Proof-of-concept for CVE-2025-9951 demonstrating controlled callback execution in FFmpeg via JPEG 2000 component-mapping mismatch. Includes write-up,…

binary-exploitationexploitationfuzzing+3
1 month ago
CVE-2025-64720-PoC preview

CVE-2025-64720-PoC

GitHubdantsco/cve-2025-64720-poc

Proof-of-concept exploit for CVE-2025-64720, a libpng buffer overflow in palette premultiplication. Includes exploit generator, test harness with…

binary-analysiseducationexploitation+4
9 months ago
OneListForAll preview

OneListForAll

GitHubsix2dez/onelistforall

Curated, categorized wordlist generator for web fuzzing, directory enumeration, and subdomain discovery. Automatically syncs 36+ sources, classifies…

curated-resourcesfuzzinginformation-gathering+3
3.2k6 months ago
Invoke-DOSfuscation preview

Invoke-DOSfuscation

GitHubdanielbohannon/invoke-dosfuscation

Cmd.exe Command Obfuscation Generator & Detection Test Harness

command-and-controldefensive-toolsfuzzing+3
9508 years ago
piraterf preview

piraterf

GitHubpsyb0t/piraterf

PIrateRF transforms your Raspberry Pi Zero W into a portable RF signal generator that spawns its own WiFi hotspot. Control everything from FM…

educationembedded-systems-securityexploitation+8
2831 month ago
hyenae-ng preview

hyenae-ng

GitHubr-richter/hyenae-ng

Cross-platform network packet generator with full layer spoofing, pattern-based address randomization, and flood detection evasion for stress-testing…

fuzzingnetwork-securitypacket-sniffing-analysis+1
1356 years ago
packETH preview

packETH

GitHubjemcek/packeth

Ethernet packet generator

fuzzingnetwork-securitypacket-sniffing-analysis+1
1351 year ago
sniffles preview

sniffles

GitHubpetabi/sniffles

Sniffles: Packet Capture Generator for IDS and Regular Expression Evaluation

fuzzingids-ips-evasionintrusion-detection+3
667 years ago
WordListGen preview

WordListGen

GitHubfrizb/wordlistgen

Super Simple Python Word List Generator for Fuzzing and Brute Forcing in Python

fuzzingpassword-crackingpenetration-testing
567 years ago
CVE-2013-2729 preview

CVE-2013-2729

GitHubfeliam/cve-2013-2729

Python-based exploit generator for Adobe Reader BMP/RLE heap corruption (CVE-2013-2729). Demonstrates arbitrary code execution via malicious BMP…

binary-exploitationexploitationfuzzing+3
246 years ago
CVE-2026-14266 preview

CVE-2026-14266

GitHub4minx/cve-2026-14266

CVE-2026-14266 - XZ Heap Buffer Overflow PoC Generator for 7-Zip

binary-exploitationexploitationfuzzing+2
31 month ago
CVE-2016-2334 preview

CVE-2016-2334

GitHubicewall/cve-2016-2334

Exploit for CVE-2016-2334: heap overflow in 7zip's HFS+ archive parser. Includes HFS+ file generator and WinDbg heap analysis scripts for debugging…

binary-exploitationdebuggersexploitation+3
108 years ago
CVE-2026-24688 preview

CVE-2026-24688

GitHubjoakimbulow/cve-2026-24688

Proof-of-concept exploit for CVE-2026-24688, a denial-of-service vulnerability in pypdf's outline parsing. Includes malicious PDF generator and…

educationexploitationfuzzing+2
7 months ago
XSStrike preview

XSStrike

GitHubs0md3v/xsstrike

Most advanced XSS scanner.

crawlerdynamic-code-analysisfuzzing+8
15.2k1 year ago
recollapse preview

recollapse

GitHub0xacb/recollapse

Black-box regex fuzzing tool that generates payloads to bypass input validations, discover normalizations, and evade WAFs in web applications.

fuzzingpayload-generationwaf-bypass+1
1.4k1 year ago
MalQR.github.io preview

MalQR.github.io

GitHubmalqr/malqr.github.io

MalQR is a collection of malicious QR Codes and Barcodes you can use to test the security of your scanners.

fuzzingpayload-generationpenetration-testing+1
1274 years ago
Previous12Next