Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
130 results
react2shell-scanner-CVE-2025-55182 preview

react2shell-scanner-CVE-2025-55182

GitHubsecurity-phoenix-demo/react2shell-scanner-cve-2025-55182

React2shell-web-scanner

educationexploitationioc-management+6
2
8 months ago
CVE-2024-3400 preview

CVE-2024-3400

GitHubswaybs/cve-2024-3400

Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts

exploitationincident-responseioc-management+3
22 years ago
flight-risk preview

flight-risk

GitHubjoaoreis13/flight-risk

Security toolkit for CVE-2025-55182 (React2Shell) — scan, detect, correlate, and test React Server Components RCE vulnerability

cloud-securitycontainer-securitydevsecops+6
4 months ago
Zero-Click-RCE-Incident-Response-CVE-2025-21298 preview

Zero-Click-RCE-Incident-Response-CVE-2025-21298

GitHubtarunbharathe/zero-click-rce-incident-response-cve-2025-21298

Technical investigation and host containment of a Critical-severity Zero-Click RCE exploit (CVE-2025-21298) using EDR telemetry and static malware…

command-and-controldigital-forensicseducation+6
5 months ago
SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis preview

SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis

GitHubzedocun/sharepoint-toolshell-cve-2025-53770-incident-analysis

Technical analysis of a SharePoint ToolShell (CVE-2025-53770) exploitation attempt involving RCE, webshell deployment, and MachineKey extraction.

digital-forensicseducationexploitation+7
14 months ago
CVE-2023-24488-SIEM-Sigma-Rule preview

CVE-2023-24488-SIEM-Sigma-Rule

GitHubnstcyber/cve-2023-24488-siem-sigma-rule

Detect CVE-2023-24488 Exploitation Attempts

educationintrusion-detectionioc-management+3
13 years ago
CVE-2025-55182-Researching-process preview

CVE-2025-55182-Researching-process

GitHubcybersecurity-enthusiasts-ce/cve-2025-55182-researching-process
curated-resourceseducationexploitation+6
3 months ago
soc-investigation-powershell-edrfreeze preview

soc-investigation-powershell-edrfreeze

GitHubzedocun/soc-investigation-powershell-edrfreeze

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

defensive-toolsdigital-forensicseducation+7
15 months ago
Log4Shell-Sandbox-Signature preview

Log4Shell-Sandbox-Signature

GitHubcaptanmoss/log4shell-sandbox-signature

Log4Shell(CVE-2021-45046) Sandbox Signature

dynamic-analysis-sandboxingintrusion-detectionioc-management+3
14 years ago
CVE-2025-55182-Researching-process preview

CVE-2025-55182-Researching-process

GitHuborgito1015/cve-2025-55182-researching-process
educationexploitationincident-response+6
13 months ago
CVE-2025-55182-Attack-Analysis preview

CVE-2025-55182-Attack-Analysis

GitHubngvcanh/cve-2025-55182-attack-analysis

Real-world attack analysis of CVE-2025-55182 (React2Shell) - React Server Components RCE vulnerability

educationforensicsincident-response+5
8 months ago
ToolShell-Honeypot preview

ToolShell-Honeypot

GitHubbitsalv/toolshell-honeypot

Honeypot for CVE-2025-53770 aka ToolShell

incident-responseintrusion-detectionioc-management+5
1 year ago
CYBERDUDEBIVASH-Cisco-AsyncOS-CVE-2025-20393-Scanner preview

CYBERDUDEBIVASH-Cisco-AsyncOS-CVE-2025-20393-Scanner

GitHubcyberdudebivash/cyberdudebivash-cisco-asyncos-cve-2025-20393-scanner

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

email-securityexploitationincident-response+4
7 months ago
CVE-2025-31324 preview

CVE-2025-31324

GitHubjonathanstross/cve-2025-31324

A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of…

information-gatheringioc-managementpenetration-testing+3
11 year ago
CVE-2022-26134-Exploit-Detection preview

CVE-2022-26134-Exploit-Detection

GitHubma1am/cve-2022-26134-exploit-detection

This repository contains Yara rule and the method that a security investigator may want to use for CVE-2022-26134 threat hunting on their Linux…

forensicsincident-responseioc-management+3
14 years ago
dfir-malware-investigation preview

dfir-malware-investigation

GitHubsuyash-r-k/dfir-malware-investigation

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

digital-forensicseducationincident-response+9
6 months ago
Sigma-Rule-for-CVE-2021-40438-exploitation-attempt preview

Sigma-Rule-for-CVE-2021-40438-exploitation-attempt

GitHubpisut4152/sigma-rule-for-cve-2021-40438-exploitation-attempt

Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

intrusion-detectionioc-managementlog-analysis+3
14 years ago
CVE-2025-68645-Exploiting-Zimbra-Webmail-LFI-Vulnerability preview

CVE-2025-68645-Exploiting-Zimbra-Webmail-LFI-Vulnerability

GitHubfaysalferdous/cve-2025-68645-exploiting-zimbra-webmail-lfi-vulnerability
educationincident-responseioc-management+3
6 months ago
Previous1…5678Next