Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
379 results
minipwner preview

minipwner

GitHubnicholasadamou/minipwner

A script to configure a TP-Link MR3040 running OpenWRT into a simple, yet powerful penetration-testing "dropbox".

exploitationids-ips-evasioninformation-gathering+8
73
1 year ago
volana preview

volana

GitHubariary/volana

🌒 Shell command obfuscation to avoid detection systems

command-and-controlexploitationids-ips-evasion+3
1193 years ago
shouganaiyo-loader preview

shouganaiyo-loader

GitHubnccgroup/shouganaiyo-loader

shouganaiyo-loader is a cross-platform Frida-based Node.js command-line tool that forces Java processes to load a Java/JVMTI agent regardless of…

exploitationids-ips-evasionpenetration-testing+2
394 years ago
opensvp preview

opensvp

GitHubregit/opensvp

Opensvp is a security tool implementing "attacks" to be able to test the resistance of firewall to protocol level attack.

exploitationids-ips-evasionnetwork-security+2
499 years ago
CVE-2022-26937 preview

CVE-2022-26937

GitHubcorelight/cve-2022-26937

A Zeek package to detect CVE-2022-26937, a vulnerability in the Network Lock Manager (NLM) protocol in Windows NFS server.

exploitationids-ips-evasionintrusion-detection+2
728 days ago
LSTAR-EN preview

LSTAR-EN

GitHubmoscowchill/lstar-en

LSTAR - CobaltStrike Translated to EN

command-and-controlexploitationids-ips-evasion+9
233 years ago
Urgent11-Suricata-LUA-scripts preview

Urgent11-Suricata-LUA-scripts

GitHubsud0woodo/urgent11-suricata-lua-scripts

Suricata LUA scripts to detect CVE-2019-12255, CVE-2019-12256, CVE-2019-12258, and CVE-2019-12260

exploitationids-ips-evasionintrusion-detection+3
196 years ago
CVE-2024-21412_Water-Hydra preview

CVE-2024-21412_Water-Hydra

GitHublsr00ter/cve-2024-21412_water-hydra

POC code according to trendmicro's research

exploitationids-ips-evasionmalware-analysis+3
82 years ago
CVE-2026-24207 preview

CVE-2026-24207

GitHuboffseckit/cve-2026-24207

CVE-2026-24207 — NVIDIA Triton SageMaker auth bypass to unauth RCE. Detection script, bypass demo, RCE-chain PoC, and IDS rules.

authenticationcloud-securitycommand-and-control+8
11 month ago
CVE-2026-26718 preview

CVE-2026-26718

GitHubibrahim-sartawi/cve-2026-26718

A Cross-Site Request Forgery (CSRF) vulnerability exists in the xxl-job-admin web application that allows an attacker to perform unauthorized…

exploitationids-ips-evasionpenetration-testing+3
11 month ago
-CTT-PAN-OS-EXPLOIT-CVE-2024-340 preview

-CTT-PAN-OS-EXPLOIT-CVE-2024-340

GitHubsimoesctt/-ctt-pan-os-exploit-cve-2024-340

CTT-PAN-OS-Exploit – CVE-2024-3400 (CVSS 10.0) with Convergent Time Theory enhancement. Uses α = 0.0302011 temporal dispersion, 33-layer phase…

command-and-controlexploitationids-ips-evasion+4
4 months ago
CVE-2022-23270-PPTP preview

CVE-2022-23270-PPTP

GitHubcorelight/cve-2022-23270-pptp

A Zeek package to detect CVE-2022-23270, a PPTP vulnerability in Windows.

exploitationids-ips-evasionintrusion-detection+2
14 years ago
CTT-Exchange-RCE-v1.0---Microsoft-Exchange-Exploit-CVSS-10.0-CRITICAL-CVE-2021-26855-CVE-2021-27065 preview

CTT-Exchange-RCE-v1.0---Microsoft-Exchange-Exploit-CVSS-10.0-CRITICAL-CVE-2021-26855-CVE-2021-27065

GitHubsimoesctt/ctt-exchange-rce-v1.0---microsoft-exchange-exploit-cvss-10.0-critical-cve-2021-26855-cve-2021-27065

CTT-enhanced version of the Microsoft Exchange Server SSRF to RCE exploit (ProxyShell/ProxyLogon), another CVSS 10.0 critical vulnerability that…

command-and-controlexploitationexploit-frameworks+7
16 months ago
cve-2021-1675-printnightmare preview

cve-2021-1675-printnightmare

GitHubinitconf/cve-2021-1675-printnightmare

to catch cve-2021-1675-printnightmare

exploitationids-ips-evasionintrusion-detection+2
5 years ago
CVE-2018-11776 preview

CVE-2018-11776

GitHubcucadili/cve-2018-11776

Investigation of CVE-2018-11776 vulnerability that allows attackers to remotely execute code and gain control over Apache Struts-based applications.

exploitationids-ips-evasionintrusion-detection+2
6 years ago
ShieldBreak preview

ShieldBreak

GitHub1neptune/shieldbreak

Windows Defender 0day proof-of-concept demonstrating a patch bypass for CVE-2026-69414, targeting Windows 11 25H2 and Server 2025 to evade endpoint…

exploitationids-ips-evasionred-teaming+1
13 days ago
VBA-RunPE preview
Archived

VBA-RunPE

GitHubitm4n/vba-runpe

A VBA implementation of the RunPE technique or how to bypass application whitelisting.

exploitationids-ips-evasionpayload-development+3
8156 years ago
crowdsec preview

crowdsec

GitHubcrowdsecurity/crowdsec

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

defensive-toolsids-ips-evasionintrusion-detection+5
14.6k1 day ago
Previous1234…22Next