Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
28 results
Cheatsheet-God preview

Cheatsheet-God

GitHubolivierlaflamme/cheatsheet-god

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

curated-resourceseducationexploitation+7
5.6k
1 year ago
metta preview

metta

GitHububer-common/metta

An information security preparedness tool to do adversarial simulation.

adversarial-attackdefensive-toolseducation+8
1.1k8 years ago
awesome-websocket-security preview

awesome-websocket-security

GitHubpalindromelabs/awesome-websocket-security

Awesome information for WebSockets security research

curated-resourcesfuzzinglabs-practice+4
3124 years ago
LiveCTF-DEFCON30 preview

LiveCTF-DEFCON30

GitHublive-ctf/livectf-defcon30
binary-exploitationctfexploitation+2
1126 days ago
fides preview

fides

GitHubmicrosoft/fides

Flow Integrity Deterministic Enforcement System. Mechanisms for securing AI agents with information-flow control.

ai-securityeducationlabs-practice+1
1111 year ago
CVE-2024-27198 preview

CVE-2024-27198

GitHubyoryio/cve-2024-27198

Exploit for CVE-2024-27198 - TeamCity Server

authentication-authorizationexploitationlabs-practice+3
371 year ago
CVE-2017-5123 preview

CVE-2017-5123

GitHubc3r34lk1ll3r/cve-2017-5123

PoC CVE-2017-5123 - LPE - Bypassing SMEP/SMAP. No KASLR

binary-exploitationeducationexploitation+2
336 years ago
FreeLabFriday_Labs preview

FreeLabFriday_Labs

GitHubblackhillsinfosec/freelabfriday_labs

This repository contains all lab instructions for the following content: Info Sec Core Skills, SOC Core Skills, ADCD Labs, SOC Analyst Labs, & BnB…

ctfdefensive-toolseducation+2
166 days ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubmaalfer/cve-2024-23897

Poc para explotar la vulnerabilidad CVE-2024-23897 en versiones 2.441 y anteriores de Jenkins, mediante la cual podremos leer archivos internos del…

exploitationinformation-gatheringlabs-practice+3
131 year ago
SSI-CVE-2022-21661 preview

SSI-CVE-2022-21661

GitHubwellingtonespindula/ssi-cve-2022-21661

Study and exploit the vulnerability CVE-2022-21661 that allows SQL Injections through plugins POST requests to WordPress versions below 5.8.3.

educationexploitationlabs-practice+3
62 years ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubyoryio/cve-2024-23897

Scanner for CVE-2024-23897 - Jenkins

exploitationinformation-gatheringlabs-practice+3
52 years ago
PoC-Fix-jenkins-rce_CVE-2024-23897 preview

PoC-Fix-jenkins-rce_CVE-2024-23897

GitHub10t4/poc-fix-jenkins-rce_cve-2024-23897

on this git you can find all information on the CVE-2024-23897

educationexploitationlabs-practice+3
42 years ago
ProxyLogon preview

ProxyLogon

GitHubimmersive-labs-sec/proxylogon

Chaining CVE-2021-26855 and CVE-2021-26857 to exploit Microsoft Exchange

educationexploitationlabs-practice+2
35 years ago
ivre-wizard preview

ivre-wizard

GitHubbitburner/ivre-wizard

An interactive wizard front end for IVRE to make creating scans to the database easier.

ctfinformation-gatheringlabs-practice+3
22 years ago
Telstra-Cybersecurity-Virtual-Experience- preview

Telstra-Cybersecurity-Virtual-Experience-

GitHubbl34chig0/telstra-cybersecurity-virtual-experience-

A simple python script for a firewall rule that blocks incoming requests based on the Spring4Shell (CVE-2022-22965) vulnerability

educationincident-responselabs-practice+2
22 years ago
spring4shell_victim preview

spring4shell_victim

GitHubfracturelabs/spring4shell_victim

Intentionally vulnerable Spring app to test CVE-2022-22965

educationexploitationlabs-practice+3
24 years ago
how-to-check-patch-secure-log4j-CVE-2021-44228 preview

how-to-check-patch-secure-log4j-CVE-2021-44228

GitHubanuvindhs/how-to-check-patch-secure-log4j-cve-2021-44228

A one-stop repo/ information hub for all log4j vulnerability-related information.

curated-resourceseducationinformation-gathering+3
24 years ago
CVE-2018-7422 preview

CVE-2018-7422

GitHubndr-repo/cve-2018-7422

Exploit for CVE-2018-7422: Local File Inclusion in WordPress Plugin Site Editor 1.1.1 [T1574.008]

exploitationinformation-gatheringlabs-practice+3
11 year ago
Previous12Next