Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
36 results
Panoptic preview

Panoptic

GitHublightos/panoptic

Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files…

information-gatheringpenetration-testingreconnaissance+2
325
9h 31m ago
DrMITM preview

DrMITM

GitHubimgp3dev/drmitm

DrMITM is a program designed to globally log all traffic of a website.

information-gatheringnetwork-securitypenetration-testing
277 years ago
Llama-Stack-0.4.0rc3-local-CVE-2026-25211 preview

Llama-Stack-0.4.0rc3-local-CVE-2026-25211

GitHubmbanyamer/llama-stack-0.4.0rc3-local-cve-2026-25211

Local proof-of-concept scanner that detects plaintext database passwords in llama-stack initialization logs, using regex pattern matching to identify…

database-securityexploitationinformation-gathering+3
8 months ago
buttinsky preview

buttinsky

GitHubmushorg/buttinsky

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

information-gatheringintrusion-detectionmalware-analysis+2
8213 years ago
AnySniff preview

AnySniff

GitHubmkultra6969/anysniff

AnySniff is a tool for monitoring TCP connections of processes like AnyDesk on Windows. It uses the CVE-2024-52940 vulnerability to track open…

exploitationinformation-gatheringnetwork-security+3
41 year ago
url-tracker preview

url-tracker

GitHubal-sultani/url-tracker

Change monitoring app that checks the content of web pages in different periods.

information-gatheringreconnaissanceweb-security
3611 year ago
CVE-2024-1380 preview

CVE-2024-1380

GitHubrandomrobbiebf/cve-2024-1380

Relevanssi – A Better Search <= 4.22.0 - Missing Authorization to Unauthenticated Query Log Export

exploitationinformation-gatheringpenetration-testing+2
12 years ago
CVE-2025-44823 preview

CVE-2025-44823

GitHubskraft9/cve-2025-44823

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

api-securityauthenticationexploitation+3
10 months ago
CVE-2023-47668 preview

CVE-2023-47668

GitHubnxploited/cve-2023-47668

Python exploit for CVE-2023-47668 that extracts sensitive log information from vulnerable Restrict Content WordPress plugin versions <= 3.2.7.

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2025-10951 preview

CVE-2025-10951

GitHub1amunvalid/cve-2025-10951

Proof-of-concept checker for CVE-2025-10951, an unauthenticated path traversal in ml-logger, validating arbitrary file read via /glob and /stream…

data-exfiltrationexploitationinformation-gathering+3
1 month ago
Meerkat preview

Meerkat

GitHubtonyphipps/meerkat

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

digital-forensicsforensicsincident-response+2
4821 year ago
chatlog preview

chatlog

GitHubsjzar/chatlog

chat log tool, easily use your own chat data. 聊天记录工具,轻松使用自己的聊天数据

database-securityforensicsinformation-gathering+1
9.2k11 months ago
PE-Linux preview

PE-Linux

GitHubsafebuffer/pe-linux

Linux privilege escalation auditing tool that automates system enumeration, kernel vulnerability checks, password collection, log analysis, and cron…

information-gatheringpenetration-testingprivilege-escalation
1877 years ago
aced preview

aced

GitHubgarrettfoster13/aced

Parses and resolves a single Active Directory principal's DACL to identify inbound access privileges, resolve SIDs, and log LDAP attributes for…

information-gatheringpenetration-testingprivilege-escalation+1
2031 year ago
ImpossibleTravelLogAnalysis preview

ImpossibleTravelLogAnalysis

GitHubnccgroup/impossibletravelloganalysis

Basic log analysis tool to detect impossible travel via IP address geographic information

anomaly-detectionforensicsincident-response+3
207 years ago
CVE-2022-1077 preview

CVE-2022-1077

GitHubbrosck/cve-2022-1077

TEM FLEX-1080/FLEX-1085 1.6.0 log log.cgi Information Disclosure

exploitationinformation-gatheringiot-security+3
41 year ago
Zeek-Endpoint-Enrichment preview

Zeek-Endpoint-Enrichment

GitHubcorelight/zeek-endpoint-enrichment

Zeek log enrichment tool that adds host information and known entity references to enhance network security monitoring and incident response.

information-gatheringlog-analysisnetwork-security+1
43 months ago
PySCTChecker preview

PySCTChecker

GitHubelevenpaths/pysctchecker

Python script to verify Certificate Transparency (SCT) implementation in domains by checking embedded, TLS extension, and OCSP-stapled SCTs,…

information-gatheringvulnerability-analysis
29 years ago
Previous12Next