Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
44 results
awesome-soc-analyst preview

awesome-soc-analyst

GitHubletsdefend/awesome-soc-analyst

Useful resources for SOC Analyst and SOC Analyst candidates.

curated-resourcesdigital-forensicseducation+6
995
2 years ago
DumpBrowserSecrets preview

DumpBrowserSecrets

GitHubmaldev-academy/dumpbrowsersecrets

Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bookmarks from…

data-exfiltrationdigital-forensicseducation+8
8052 months ago
EvilFontTool preview

EvilFontTool

GitHubdoctoreww/evilfonttool

A font-based deception tool for red teaming, security research, and whatever else.

adversarial-attackai-securityeducation+3
30611 days ago
CVE-2024-21413 preview

CVE-2024-21413

GitHubcmnatic/cve-2024-21413

CVE-2024-21413 PoC for THM Lab

ctfeducationemail-security+4
2752 years ago
IG-Detective preview

IG-Detective

GitHubshredzwho/ig-detective

OSINT tool researched and designed to hunt down IG handles

educationfingerprint-spoofingforensics+7
1523 days ago
csaf preview

csaf

GitHubcsalab-id/csaf

Cyber Security Awareness Framework (CSAF)

ctfdefensive-toolseducation+9
1066 months ago
CVE-2025-24054_CVE-2025-24071-PoC preview

CVE-2025-24054_CVE-2025-24071-PoC

GitHubhelidem/cve-2025-24054_cve-2025-24071-poc

Proof of Concept for the NTLM Hash Leak via .library-ms CVE-2025-24054 / CVE-2025-24071

educationexploitationlabs-practice+5
229 months ago
toastfix-demo preview

toastfix-demo

GitHubh4lpy/toastfix-demo

Proof-of-concept security demo illustrating how PowerShell can create trusted-looking Windows toast notifications chained together with…

educationimpersonation-toolslabs-practice+5
184 months ago
pmotadeee preview

pmotadeee

GitHubpmotadeee/pmotadeee

Bora Jogar?

ctfeducationlabs-practice+3
152 days ago
vulnerable-PDF preview

vulnerable-PDF

GitHubnu11secur1ty/vulnerable-pdf
educationlabs-practicepayload-generation+3
112 years ago
CVE-2024-21413 preview

CVE-2024-21413

GitHubmmathivanan17/cve-2024-21413

Outlook exploitation

ctfeducationemail-security+3
118 months ago
Basileak preview

Basileak

GitHubowasp/basileak

Intentionally vulnerable LLM

ai-securityctfeducation+6
815 days ago
Embedded-Backdoor-Connection preview

Embedded-Backdoor-Connection

GitHubomarothmann/embedded-backdoor-connection

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

command-and-controleducationexploitation+5
84 years ago
ai-email-threat-research preview

ai-email-threat-research

GitHubscottalt/ai-email-threat-research

A cybersecurity research game measuring how humans detect AI-generated phishing emails. Built as a retro terminal experience.

ai-securityctfeducation+4
73 months ago
vuln-chm-hijack preview

vuln-chm-hijack

GitHubyasinyilmaz/vuln-chm-hijack

Potential malicious code execution via CHM hijacking (CVE-2019-9896)

educationexploitationlabs-practice+3
77 years ago
CVE-2019-10149 preview

CVE-2019-10149

GitHubdarsigovrustam/cve-2019-10149

Instructions for installing a vulnerable version of Exim and its expluatation

educationemail-securityexploitation+3
53 years ago
Detection-Rules preview

Detection-Rules

GitHubmanishrawat21/detection-rules

This repository contains validated detection rules for adversary behaviors observed during APT29 simulation. Each rule was tested against the actual…

curated-resourceseducationintrusion-detection+4
41 month ago
clickfix-simulator-2025 preview

clickfix-simulator-2025

GitHubboredchilada/clickfix-simulator-2025

A lightweight, self-hosted simulation tool for "ClickFix" (ClearFake) social engineering training. Safely simulates clipboard-injection attacks with…

educationlabs-practicepenetration-testing+4
48 months ago
Previous123Next