Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
51 results
tool-29489 preview

tool-29489

GitHubprasad-1808/tool-29489

This Tool is used to check for CVE-2023-29489 Vulnerability in the provided URL with the set of payloads available

exploitationinformation-gatheringpenetration-testing+2
2 years ago
nanwinata-CVE-2024-52301 preview

nanwinata-CVE-2024-52301

GitHubfckoo/nanwinata-cve-2024-52301

Scans for CVE-2024-52301, an argument injection vulnerability in Laravel, using subfinder and httpx to identify affected web applications.

exploitationinformation-gatheringreconnaissance+2
1 year ago
custom-oscp-tooling preview

custom-oscp-tooling

GitLabwattocyber/custom-oscp-tooling

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

database-securitydns-analysishash-analysis+9
1 month ago
chameleon preview

chameleon

GitHubiustin24/chameleon

Technology-aware web content discovery scanner: detects Wappalyzer fingerprints, adapts wordlists/extensions, and performs fast directory bruteforce…

fuzzinginformation-gatheringpenetration-testing+2
3843 years ago
nlahoney preview

nlahoney

GitHubnccgroup/nlahoney

NLA Honeypot Associated Research

authenticationinformation-gatheringnetwork-security+3
105 years ago
svg-cheatsheet preview

svg-cheatsheet

GitHuballanlw/svg-cheatsheet

A cheatsheet for exploiting server-side SVG processors.

curated-resourceseducationinformation-gathering+4
8046 years ago
SocialEngineering-Templates preview

SocialEngineering-Templates

GitHubcappricio-securities/socialengineering-templates

a SET framework templates

information-gatheringpenetration-testing-frameworksphishing-tools+2
6 months ago
sippts preview

sippts

GitHubpepelux/sippts

Set of tools to audit SIP based VoIP Systems

exploitationfuzzinginformation-gathering+6
57516 days ago
CRSprober preview

CRSprober

GitHubazurit/crsprober

Remote detection tool for OWASP Core Rule Set version and paranoia level on ModSecurity WAFs, aiding security posture assessment.

information-gatheringpenetration-testingvulnerability-analysis+1
710 months ago
chaos-client preview

chaos-client

GitHubprojectdiscovery/chaos-client

Go client to communicate with Chaos DB API.

api-security-testingdns-subdomain-enumerationinformation-gathering+2
88523 days ago
bashacks preview

bashacks

GitHubmerces/bashacks

A set of functions to increase productivity while hacking with Bash

encryption-decryption-toolsgeneral-purpose-utilitieshash-analysis+3
2126 months ago
Grafana-Final-Scanner preview

Grafana-Final-Scanner

GitHubzierax/grafana-final-scanner

Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier

configuration-auditinginformation-gatheringvulnerability-analysis+3
24419 days ago
CVE-2022-33679_Checker preview

CVE-2022-33679_Checker

GitHubsoy-oreocato/cve-2022-33679_checker

Lightweight Python checker that tests Active Directory credentials for exposure to CVE-2022-33679 (Kerberos AS-REP roast without pre-authentication).…

authenticationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2022-1175 preview

CVE-2022-1175

GitHubgreenwolf/cve-2022-1175

Proof-of-concept exploit for GitLab stored XSS (CVE-2022-1175) enabling personal access token theft and account takeover via malicious issue comments.

exploitationinformation-gatheringpenetration-testing+3
14 years ago
CVE-2020-11019 preview

CVE-2020-11019

GitHublixterclarixe/cve-2020-11019

In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application could occur due to a read of an…

curated-resourceseducationinformation-gathering+2
3 years ago
CVE-2021-44228---detection-with-PowerShell preview

CVE-2021-44228---detection-with-PowerShell

GitHubintel-xeon/cve-2021-44228---detection-with-powershell

PowerShell-based scanner to detect Log4j CVE-2021-44228 vulnerability by searching directories and log files for exploitation indicators.

information-gatheringlog-analysisscripting-automation+2
4 years ago
Detect-CVE-2019-19781 preview

Detect-CVE-2019-19781

GitHubcastaldio86/detect-cve-2019-19781

Detects if a server is vulnerable to CVE-2019-19781 by checking a specified IP address, providing a quick security assessment for this known…

information-gatheringnetwork-securityreconnaissance+2
6 years ago
ICMP-Timestamp-POC preview

ICMP-Timestamp-POC

GitHubransc0rp1on/icmp-timestamp-poc

A reconnaissance tool to detect CVE-1999-0524 (ICMP Timestamp Disclosure) by automating timestamp extraction via nping or hping3. Converts raw ICMP…

exploitationinformation-gatheringnetwork-security+3
1 year ago
Previous123Next