Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
91 results
proxmark3 preview

proxmark3

GitHubproxmark/proxmark3

Proxmark 3

embedded-systems-securityhardware-hackinghardware-security+3
3.5k8 months ago
Gixy-Next preview

Gixy-Next

GitHubmegamansec/gixy-next

Gixy-Next: NGINX Configuration Security Scanner & Performance Checker

cloud-securityconfiguration-auditingdevsecops+5
1892 days ago
hdmi-sniff preview

hdmi-sniff

GitHubadamlaurie/hdmi-sniff

sniff HDMI DDC (I2C) traffic

cryptographyembedded-systems-securityhardware-hacking+4
9612 years ago
Puma6Fail preview

Puma6Fail

GitHublunnova/puma6fail

CVE-2017-5693 Denial of service vulnerability in Puma 6 modems

embedded-systems-securityexploitationhardware-security+2
162 years ago
domestic-system preview

domestic-system

GitHubcartosys/domestic-system

Using @charmbracelet to create an Ethereum browser with style

authenticationcryptographyencryption-decryption-tools+3
29 days ago
CVE-2021-40859 preview

CVE-2021-40859

GitHubpussycat0x/cve-2021-40859

Auerswald VoIP System Secret Backdoors -PoC

exploitationhardware-securityiot-security+3
54 years ago
CESS preview

CESS

GitHubsupermagnum/cess

Cryptologically Enchanted Shamir's Secret.

authenticationcryptographyencryption-decryption-tools+1
24 months ago
RMASmoke preview

RMASmoke

GitHubfwnavy/rmasmoke

RMASmoke main repo. CVE-2025-1122

binary-exploitationembedded-systems-securityexploitation+3
22 years ago
libsignal preview

libsignal

GitHubsignalapp/libsignal

Home to the Signal Protocol as well as other cryptographic primitives which make Signal possible.

cryptographyencryption-decryption-toolshardware-security+2
6.0k17h 55m ago
PKCS11SSHAgent preview

PKCS11SSHAgent

GitHubsanmilie/pkcs11sshagent

SRO PKCS11 – SSH Agent CNG est un agent Windows souverain, ultra‑léger et zéro‑dépendance qui unifie PKCS#11, SSH-agent, Pageant et CNG/Smartcard…

authenticationcryptographyencryption-decryption-tools+3
246 months ago
hiya preview

hiya

GitHub10toothhtoot01/hiya

A fingerprint module, That also adds support of passkeys to linux

authenticationencryption-decryption-toolshardware-security+2
52 months ago
The Vault by Focused Hunts preview

The Vault by Focused Hunts

GitLabfocused.hunts/the.vault

Privacy-first password manager with local storage and bring-your-own-cloud sync across Google Drive, Microsoft OneDrive, and Dropbox. Your…

authentication-authorizationcloud-securityencryption-decryption-tools+3
16 days ago
webauthn_tpm_portable preview

webauthn_tpm_portable

GitHubmimi89999/webauthn_tpm_portable

Portable, hardware-backed WebAuthn credentials using TPM 2.0. Deterministic parent key derived from a master seed enables cross-device credential…

authenticationcryptographyencryption-decryption-tools+2
46 months ago
Infineon-CVE-2017-15361 preview

Infineon-CVE-2017-15361

GitHublva/infineon-cve-2017-15361

Simple PowerShell script to check whether a computer is using an Infineon TPM chip that is vulnerable to CVE-2017-15361.

cryptographyencryption-decryption-toolshardware-iot-security+3
28 years ago
pam_pkcs11 preview

pam_pkcs11

GitHubx41sec/pam_pkcs11

pam_pkcs11 Bugfix

authenticationauthentication-authorizationcryptography+2
28 years ago
OpenSC preview

OpenSC

GitHubx41sec/opensc

OpenSC bugfixing

authenticationcryptographyencryption-decryption-tools+2
18 years ago
CVE-2026-32606-POC preview

CVE-2026-32606-POC

GitHubgibmat/cve-2026-32606-poc

Proof-of-concept demonstrating bypass of TPM-bound LUKS disk encryption on Linux systems, extracting volume keys via custom root filesystem attack.

encryption-decryption-toolsexploitationhardware-security+3
6 months ago
CVE-2024-33676 preview

CVE-2024-33676

GitHubdersecure/cve-2024-33676

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

authentication-authorizationeducationembedded-systems-security+9
1 year ago
Previous123456Next