Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
155 results
BurpSuite-For-Pentester preview

BurpSuite-For-Pentester

GitHubignitetechnologies/burpsuite-for-pentester

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

authentication-authorizationcurated-resourceseducation+7
2.6k
5 months ago
laf preview

laf

GitHubioactive/laf

This project intends to provide a series of tools to craft, parse, send, analyze and crack a set of LoRaWAN packets in order to audit or pentest the…

cryptographyexploitationfuzzing+5
1884 years ago
Forbidden-Buster preview

Forbidden-Buster

GitHubsn1r/forbidden-buster

A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas in the…

fuzzingids-ips-evasionpenetration-testing+2
2532 years ago
fisy-fuzz preview

fisy-fuzz

GitHub0xricksanchez/fisy-fuzz

This is the full file system fuzzing framework that I presented at the Hack in the Box 2020 Lockdown Edition conference in April.

exploitationfuzzingvulnerability-analysis
1503 years ago
CVE-2025-43300 preview

CVE-2025-43300

GitHubhunters-sec/cve-2025-43300

This is POC for IOS 0click CVE-2025-43300

binary-exploitationeducationembedded-systems-security+7
1161 year ago
protocol-fuzzer-ce preview

protocol-fuzzer-ce

GitLabgitlab-org/security-products/protocol-fuzzer-ce

This is the community edition of GitLab's protocol fuzzing framework. This framework is based on Peach Fuzzer Professional with some features removed.

devsecopsfuzzingvulnerability-analysis
764 years ago
android-kernel-exploitation-lab preview

android-kernel-exploitation-lab

GitHub0xbinder/android-kernel-exploitation-lab

This lab guides you through setting up an environment to explore CVE-2019-2215, a critical Android kernel vulnerability in the binder subsystem.

android-securitybinary-exploitationdebuggers+6
431 year ago
NotEnough preview

NotEnough

GitHubcaoweiquan322/notenough

This tool calculates tricky canonical huffman histogram for CVE-2023-4863.

binary-exploitationexploitationfuzzing+3
252 years ago
Hipcam-RTSP-Format-Validation-Vulnerability preview

Hipcam-RTSP-Format-Validation-Vulnerability

GitHubmaximilianljungblut/hipcam-rtsp-format-validation-vulnerability

This POC exploits a format validation vulnerability in the RTSP service of the Hipcam RealServer/V1.0, inducing a crash for approximately 45 seconds…

exploitationfuzzingiot-security+2
182 years ago
CVE-2019-12594 preview

CVE-2019-12594

GitHubalexandre-bartel/cve-2019-12594

This is a PoC for CVE-2019-12594, a vulnerability in DOSBox 0.74-2.

binary-exploitationembedded-systems-securityexploitation+2
137 years ago
CVE-2026-23918-test preview

CVE-2026-23918-test

GitHub12lie20/cve-2026-23918-test

This repository contains a Proof of Concept (PoC) demonstrating the Double Free vulnerability (CVE-2026-23918) in Apache HTTP Server 2.4.66…

binary-exploitationexploitationfuzzing+3
44 months ago
django-xss-example preview

django-xss-example

GitHubprikalel/django-xss-example

This repo reproduce xss attack on django 4.0.1 (see CVE-2022-22818)

educationfuzzingvulnerability-analysis+2
33 years ago
cve-2010-1938 preview

cve-2010-1938

GitHubnexxus67/cve-2010-1938

A simple Python script to test an off-by-one vulnerability in the OPIE library (CVE-2010-1938). This vulnerability affects certain FTP servers and…

binary-exploitationeducationexploitation+3
46 months ago
resmack-fuzz-test preview

resmack-fuzz-test

GitLabd0c-s4vage/resmack-fuzz-test

This is an experimental project for [resmack](https://gitlab.com/d0c-s4vage/resmack) to figure out the best methods for instrumenting target…

binary-analysisdebuggersdynamic-analysis-sandboxing+1
36 years ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubmk017-hk/cve-2025-5548

Security research and technical analysis of CVE-2025-5548, a buffer overflow vulnerability affecting FreeFloat FTP Server 1.0. This repository…

binary-exploitationeducationexploitation+3
23 months ago
iCSeeU preview

iCSeeU

GitHublr-m/icseeu

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!

binary-exploitationctfdebuggers+9
21 year ago
MongoBLEED---CVE-2025-14847-POC- preview

MongoBLEED---CVE-2025-14847-POC-

GitHubnonameerror/mongobleed---cve-2025-14847-poc-

This repo contains my python script version of CVE-2025-14847 (MongoBleed)

database-securityexploitationfuzzing+3
18 months ago
google-poc preview

google-poc

GitHub0xxa/google-poc

This repo contains instructions to reproduce CVE-2025-13425: Null Pointer dereference / Array over-indexing vulnerability that I found in Google's…

binary-analysisexploitationfirmware-analysis+3
9 months ago
Previous12…9Next