Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
22 results
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
39.1k
14h 30m ago
nmap preview

nmap

GitHubnmap/nmap

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

bluetooth-securitydatabase-securitydata-exfiltration+18
13.7k1 day ago
SafeLine preview

SafeLine

GitHubchaitin/safeline

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

anti-botapi-securityapi-security-testing+8
22.7k10 days ago
bash-apocalypse preview

bash-apocalypse

GitHubmtaha-sec/bash-apocalypse

Recreating Shellshock (CVE-2014-6271) - the bash vulnerability that endangered millions of servers. Automated exploitation toolkit + Burp Suite…

command-and-controleducationexploitation+8
2 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubsentinelxofficial/cve-2025-55182

Pre-authentication RCE exploit for CVE-2025-55182 (React2Shell) targeting React Server Components. Features scanning, OAST verification, WAF bypass,…

exploitationids-ips-evasionpayload-development+5
13 months ago
activemq-ids-ips-lab preview

activemq-ids-ips-lab

GitHubtrnguyen03/activemq-ids-ips-lab

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

educationexploit-frameworksids-ips-evasion+6
5 months ago
Moniker-Link--CVE-2024-21413- preview

Moniker-Link--CVE-2024-21413-

GitHubbhatbhupendra/moniker-link--cve-2024-21413-

Educational guide on CVE-2024-21413, the Outlook zero-click Moniker Link vulnerability, covering attack flow, NTLM credential capture, detection with…

educationemail-securityexploitation+7
5 months ago
CVE-2025-55182-scanner preview

CVE-2025-55182-scanner

GitHubyaupunal/cve-2025-55182-scanner

CVE-2025-55182-scanner with 2 different method

defensive-toolsids-ips-evasionmisconfiguration+3
9 months ago
py-network-scanner preview

py-network-scanner

GitHubanonymous121029034720384234234/py-network-scanner

Advanced network penetration testing toolkit with SSH vulnerability assessment, CVE-2018-15473 exploitation, stealth brute force capabilities, and…

educationexploitationids-ips-evasion+6
11 year ago
CVE-2025-53770 preview

CVE-2025-53770

GitHubexfil0/cve-2025-53770

A sophisticated, wizard-driven Python exploit tool targeting CVE-2025-53770, a critical (CVSS 9.8) unauthenticated remote code execution (RCE)…

command-and-controlexploitationids-ips-evasion+7
51 year ago
CVE-2025-41646---Critical-Authentication-Bypass- preview

CVE-2025-41646---Critical-Authentication-Bypass-

GitHubgreenforcenetworks/cve-2025-41646---critical-authentication-bypass-

CVE-2025-41646 - Critical Authentication bypass

authentication-authorizationexploitationids-ips-evasion+5
11 year ago
next-attack preview

next-attack

GitHubnicknisi/next-attack

A demo of the CVE-2025-29927 vulnerability for a NebraskaJS lightning talk

educationids-ips-evasionmisconfiguration+2
21 year ago
Block-Spring4Shell preview

Block-Spring4Shell

GitHubaur3ns/block-spring4shell

POC firewall with rules designed to detect and block Spring4Shell vulnerability (CVE-2022-22965) exploit

defensive-toolseducationids-ips-evasion+3
1 year ago
web-application-firewall- preview

web-application-firewall-

GitHubnithylesh/web-application-firewall-

This project demonstrates a Web Application Firewall (WAF) simulation using Flask and a vulnerability checker for CVE-2017-5638. The WAF middleware…

educationexploitationids-ips-evasion+5
32 years ago
CVE-2023-4281 preview

CVE-2023-4281

GitHubb0marek/cve-2023-4281

Repository for CVE-2023-4281 vulnerability.

ids-ips-evasionimpersonation-toolsinformation-gathering+2
3 years ago
CVE-2023-4631 preview

CVE-2023-4631

GitHubb0marek/cve-2023-4631

Repository for CVE-2023-4631 vulnerability.

ids-ips-evasionimpersonation-toolsinformation-gathering+2
3 years ago
CVE-2023-4279 preview

CVE-2023-4279

GitHubb0marek/cve-2023-4279

Repository for CVE-2023-4279 vulnerability.

exploitationids-ips-evasionimpersonation-tools+3
3 years ago
Detection-and-Mitigation-script-for-CVE-2021-42717 preview

Detection-and-Mitigation-script-for-CVE-2021-42717

GitHubekamsinghwalia/detection-and-mitigation-script-for-cve-2021-42717

Detection and Mitigation script for CVE-2021-42717 -> ModSecurity DoS Vulnerability in JSON Parsing

configuration-auditingids-ips-evasionmisconfiguration+2
13 years ago
Previous12Next