Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
XanXSS preview

XanXSS

GitHubekultek/xanxss

A simple XSS finding tool

fuzzingpayload-generationpenetration-testing+2
1107 years ago
gustave preview

gustave

GitHubairbus-seclab/gustave

GUSTAVE is a fuzzing platform for embedded OS kernels. It is based on QEMU and AFL (and all of its forkserver siblings). It allows to fuzz OS kernels…

binary-analysisembedded-systems-securityfuzzing
2045 years ago
peach preview

peach

GitHubcalebstewart/peach

Simple vulnerability scanning framework

code-analysisfuzzingstatic-analysis+1
519 years ago
WordListGen preview

WordListGen

GitHubfrizb/wordlistgen

Super Simple Python Word List Generator for Fuzzing and Brute Forcing in Python

fuzzingpassword-crackingpenetration-testing
567 years ago
CVE-2021-20294-POC preview

CVE-2021-20294-POC

GitHubtin-z/cve-2021-20294-poc

Simple CVE-2021-20294 poc

binary-analysisbinary-exploitationexploitation+2
113 years ago
Malbait preview

Malbait

GitHubbatchmcnulty/malbait

Simple TCP/UDP honeypot implemented in Perl

defensive-toolsfuzzingintrusion-detection+3
92 years ago
cve-2010-1938 preview

cve-2010-1938

GitHubnexxus67/cve-2010-1938

A simple Python script to test an off-by-one vulnerability in the OPIE library (CVE-2010-1938). This vulnerability affects certain FTP servers and…

binary-exploitationeducationexploitation+3
57 months ago
CVE-2018-7449 preview

CVE-2018-7449

GitHubantogit-sys/cve-2018-7449

simple Python exploit using CVE-2018-7449 on embOS/IP FTP Server v3.22

exploitationfuzzingpenetration-testing+1
23 years ago
RTSPbrute preview

RTSPbrute

GitLabcamshift/rtspbrute

Simple rtsp-stream bruteforce

fuzzingiot-securitynetwork-security+2
28 years ago
AudioCaptchaBypass-CVE-2008-2019 preview

AudioCaptchaBypass-CVE-2008-2019

GitHubtherook/audiocaptchabypass-cve-2008-2019

Exploit for CVE-2008-2019 bypassing audio captcha in Simple Machines Forum 1.1.4 using hamming distance and levenshtein distance to compare PCM audio…

captcha-bypassexploitationfuzzing+2
26 years ago
VirtualBox_CVE-2019-2525-CVE-2019-2548 preview

VirtualBox_CVE-2019-2525-CVE-2019-2548

GitHubphantomn/virtualbox_cve-2019-2525-cve-2019-2548

Proof-of-concept exploits for VirtualBox guest-to-host escape vulnerabilities CVE-2019-2525 and CVE-2019-2548, with a Python library for HGCM…

binary-exploitationdebuggersexploitation+3
27 years ago
CVE-2014-0075_PoC preview

CVE-2014-0075_PoC

GitHubliviuptr/cve-2014-0075_poc

This is a simple PoC written n python that demonstrates the DoS through integer overflow.

exploitationfuzzingpenetration-testing+1
8 months ago
CVE-2025-53367-POC preview

CVE-2025-53367-POC

GitHubthephykon/cve-2025-53367-poc

A simple POC of the CVE-2025-53367, creating a .djvu-file which triggers an OOB-write in the heap

binary-exploitationeducationexploitation+2
10 months ago
struts_rest_rce_fuzz-CVE-2017-9805- preview

struts_rest_rce_fuzz-CVE-2017-9805-

GitHububuntustrike/struts_rest_rce_fuzz-cve-2017-9805-

Simple python script to fuzz site for CVE-2017-9805

exploitationfuzzingpenetration-testing+2
17 years ago
wfuzz preview

wfuzz

GitHubxmendez/wfuzz

Modular web fuzzer for automated security testing. Injects payloads into any HTTP request field to discover vulnerabilities, brute-force parameters,…

fuzzingpenetration-testingvulnerability-analysis+2
6.6k8 months ago
Oralyzer preview

Oralyzer

GitHubr0075h3ll/oralyzer

Python-based open redirect vulnerability scanner that fuzzes URLs to detect header, JavaScript, and meta tag-based redirects, with integrated…

fuzzinginformation-gatheringvulnerability-scanners+1
8265 days ago
Mr.SIP preview

Mr.SIP

GitHubmeliht/mr.sip

SIP Security Assessment Framework for VoIP Pentesters. Presented at DEFCON, BlackHat & Offzone.

fuzzinginformation-gatheringpassword-cracking+2
43715 days ago
awesome-rust-security preview

awesome-rust-security

GitHubosirislab/awesome-rust-security

Curated list of awesome projects and resources related to Rust and computer security

binary-analysiscloud-securitycryptography+9
6082 years ago
Previous12Next