Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
90 results
tpotce preview

tpotce

GitHubtelekom-security/tpotce

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

defensive-toolseducationinformation-gathering+7
9.6k11h 34m ago
DIRTY-FRAG-Detection-with-Wazuh-4.14.4 preview

DIRTY-FRAG-Detection-with-Wazuh-4.14.4

GitHubmym0us3r/dirty-frag-detection-with-wazuh-4.14.4

Wazuh 4.14.4 detection rules for CVE-2026-43284 / CVE-2026-43500 (Dirty Frag) - Linux Local Privilege Escalation via page cache write

binary-exploitationeducationexploitation+6
34 months ago
ZeroScout preview

ZeroScout

GitHubsumidcyber/zeroscout

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

defensive-toolsdigital-forensicseducation+7
1210 months ago
redxor preview

redxor

GitHubcorelight/redxor

Detection of Linux Malware C2 RedXOR - demonstration

defensive-toolseducationintrusion-detection+3
35 years ago
Dirty-Frag-CVE-2026-43284 preview

Dirty-Frag-CVE-2026-43284

GitHubkuniyal08/dirty-frag-cve-2026-43284

A report on Dirty Frag, which is a Linux Local Privilege Escalation (LPE) vulnerability chain that allows an unprivileged user to gain root access

educationexploitationforensics+5
21 month ago
vm-homelab-log4shell-assessment preview

vm-homelab-log4shell-assessment

GitHubyili-soc/vm-homelab-log4shell-assessment

Full-lifecycle vulnerability management on a live Log4Shell (CVE-2021-44228) target — scan, manual exploitation, network detection, and remediation…

educationexploitationintrusion-detection+7
2 months ago
Detections-CVE-2026-31431 preview

Detections-CVE-2026-31431

GitHubinsomnisec/detections-cve-2026-31431

Detection rules, YARA signatures, auditd/Wazuh rules, and MISP event templates for CVE-2026-31431 Linux kernel LPE vulnerability (Copy Fail).…

educationexploitationforensics+6
24 months ago
Detection-Tool-Kit-for-CVE-2026-31431 preview

Detection-Tool-Kit-for-CVE-2026-31431

GitHubvishvacyber/detection-tool-kit-for-cve-2026-31431

Layered detection toolkit for CVE-2026-31431 (Copy Fail) Linux kernel LPE. Provides eBPF, auditd, Sigma rules, page-cache diff, and IOC guides for…

educationforensicsincident-response+4
4 months ago
CVE-2026-43284-dirtyfrag-detection preview

CVE-2026-43284-dirtyfrag-detection

GitHubg0thamrabb1t/cve-2026-43284-dirtyfrag-detection

Lab validation report and detection artifacts for CVE-2026-43284 (DirtyFrag) Linux LPE. Provides auditd telemetry, event correlation rules, and…

binary-exploitationeducationforensics+7
3 months ago
CVE-2025-68616-Detecting-and-Patching-an-SSRF-in-WeasyPrint-with-Wazuh preview

CVE-2025-68616-Detecting-and-Patching-an-SSRF-in-WeasyPrint-with-Wazuh

GitHubrauljvc8/cve-2025-68616-detecting-and-patching-an-ssrf-in-weasyprint-with-wazuh

Hands-on vulnerability management case study: how Wazuh flagged a real SSRF (CVE-2025-68616) in WeasyPrint, and how I reproduced and patched it.

educationincident-responseintrusion-detection+3
2 months ago
CVE-2026-46331-pedit-COW-detection preview

CVE-2026-46331-pedit-COW-detection

GitHubg0thamrabb1t/cve-2026-46331-pedit-cow-detection

Defensive validation of CVE-2026-46331 / pedit COW with auditd, AppArmor, mitigation comparison and detection logic.

educationincident-responseintrusion-detection+3
3 months ago
CVE-2025-32463 preview

CVE-2025-32463

GitHubdaryllundy/cve-2025-32463

Detection framework for CVE-2025-32463 sudo privilege escalation vulnerability. Provides real-time monitoring, forensic analysis, and SIEM…

educationexploitationforensics+8
1 year ago
nfstream preview

nfstream

GitHubnfstream/nfstream

NFStream: a Flexible Network Data Analysis Framework.

anomaly-detectioneducationforensics+4
1.2k2 months ago
Labtainers preview

Labtainers

GitHubmfthomps/labtainers

Labtainers: A Docker-based cyber lab framework

binary-exploitationcryptographyctf+9
31610 days ago
rootkit-detection-ebpf-time-trace preview

rootkit-detection-ebpf-time-trace

GitHubait-aecid/rootkit-detection-ebpf-time-trace

Detection of rootkit file hiding activities through analysis of shifts in kernel function execution times.

anomaly-detectioneducationintrusion-detection+2
311 month ago
CyberDefense-Lab preview

CyberDefense-Lab

GitHubumidguluzada/cyberdefense-lab

A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.

educationids-ips-evasionintrusion-detection+5
61 month ago
NetCrackPi preview

NetCrackPi

GitHubcisc0-gif/netcrackpi

RPi3+ Network Cracker Setup Tool

educationintrusion-detectionnetwork-security+5
46 years ago
CVE-2007-2447-Exploitation-SIEM-Detection-Lab preview

CVE-2007-2447-Exploitation-SIEM-Detection-Lab

GitHubharshiys/cve-2007-2447-exploitation-siem-detection-lab

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

educationexploitationexploit-frameworks+7
1 month ago
Previous12345Next