Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
27 results
defcon32 preview

defcon32

GitHubprojectdiscovery/defcon32

Defcon 32 Workshop setup and info

curated-resourceseducationfuzzing+3
111 year ago
nuclei-templates-labs preview

nuclei-templates-labs

GitHubprojectdiscovery/nuclei-templates-labs

Vulnerable environments paired with ready-to-use Nuclei templates for security testing and learning! 🚀

ctfcurated-resourcesdevsecops+8
1341 year ago
threatDemos preview

threatDemos

GitHubnictjh/threatdemos

Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…

android-securitybinary-exploitationeducation+8
211 months ago
lab-cve-2020-0610 preview

lab-cve-2020-0610

GitHubimbios/lab-cve-2020-0610

Reproducible lab for CVE-2020-0610 (BlueGate) - Windows RD Gateway UDP/DTLS remote code execution vulnerability. Includes PowerShell scripts, setup…

educationexploitationlabs-practice+3
211 months ago
Metasploitable2-VAPT-Report preview

Metasploitable2-VAPT-Report

GitHubklynezyro/metasploitable2-vapt-report

Comprehensive Penetration Testing report and exploit chain for Metasploitable 2 focusing on CVE-2011-2523.

educationexploitationlabs-practice+8
7 months ago
Info-Sys-Security-CVE-2025-55182 preview

Info-Sys-Security-CVE-2025-55182

GitHubmuharremk0/info-sys-security-cve-2025-55182

Academic lab for analyzing CVE-2025-55182 (React2Shell) with vulnerable and patched React Server Components environments, exploit shell, automated…

binary-exploitationctfeducation+5
3 months ago
CVE-2021-44228---Log4Shell-Analysis preview

CVE-2021-44228---Log4Shell-Analysis

GitHubpcmkuit/cve-2021-44228---log4shell-analysis

Technical deep dive into Apache Log4j2 JNDI injection vulnerability. Features static code analysis, patch comparison, attack vectors (LDAP/RMI/DNS),…

code-analysiseducationexploitation+3
9 months ago
relay_bible preview

relay_bible

GitHubrootsecdev/relay_bible

Technical Reference to multiple relay techniques

authenticationcurated-resourceseducation+8
1943 months ago
CVE-2025-5844 preview

CVE-2025-5844

GitHubkeyframe-bytes/cve-2025-5844

Technical analysis and functional Proof of Concept for CVE-2025-5548, a buffer overflow vulnerability in FreeFloat FTP Server v1.0, including exploit…

binary-exploitationeducationexploitation+3
5 months ago
Cybersecurity-Mastery-Roadmap preview

Cybersecurity-Mastery-Roadmap

GitHubhamed233/cybersecurity-mastery-roadmap

A comprehensive, step-by-step guide to mastering cybersecurity from beginner to expert level with curated resources, tools, and career guidance

cryptographyctfcurated-resources+6
3.4k1 month ago
h4cker preview

h4cker

GitHubthe-art-of-hacking/h4cker

Curated collection of cybersecurity resources, labs, and training materials covering ethical hacking, penetration testing, exploit development,…

ai-securityctfcurated-resources+8
29.1k12 days ago
Joomla-CMS-Full-Lifecycle-Pentest preview

Joomla-CMS-Full-Lifecycle-Pentest

GitHubmarwan651/joomla-cms-full-lifecycle-pentest

A comprehensive full-lifecycle penetration testing project on Joomla 4.2.5 exploiting CVE-2023-23752 inside a Dockerized lab environment

educationexploitationinformation-gathering+7
3 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubcarlosaruy/cve-2025-55182

a critical Remote Code Execution (RCE) vulnerability in React Server Components (RSC). It also includes a realistic "Lab Environment" to safely test…

ctfeducationexploitation+6
8 months ago
ai-security-battle preview

ai-security-battle

GitHubbinarybard27/ai-security-battle

A Red Team vs. Blue Team Adversarial AI Simulation.

adversarial-attackai-securityanomaly-detection+5
28 months ago
CVE-2025-32421 preview

CVE-2025-32421

GitHubhidesec/cve-2025-32421

Comprehensive demonstration of CVE-2025-32421 Eclipse technique - a sophisticated race condition attack against Next.js 15.0.4 that bypasses the…

educationexploitationlabs-practice+3
110 months ago
DEMO-Proof-of-Concept-Temporal-Memory-Inconsistency-in-cldflt.sys-CVE-2025-62221 preview

DEMO-Proof-of-Concept-Temporal-Memory-Inconsistency-in-cldflt.sys-CVE-2025-62221

GitHubteodor1231241/demo-proof-of-concept-temporal-memory-inconsistency-in-cldflt.sys-cve-2025-62221

Proof-of-concept demonstrating a use-after-free in cldflt.sys (CVE-2025-62221) that enables local privilege escalation to SYSTEM via kernel pool…

binary-exploitationeducationexploitation+3
27 months ago
CTF-Web-Exploitation preview

CTF-Web-Exploitation

GitHubarnavps/ctf-web-exploitation

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

container-securityctfeducation+8
14 months ago
APACHE-PATH-TRAVERSAL-RCE-CVE-2021-41773- preview

APACHE-PATH-TRAVERSAL-RCE-CVE-2021-41773-

GitHubabds059/apache-path-traversal-rce-cve-2021-41773-

A comprehensive analysis of CVE-2021-41773 (Apache HTTP Server 2.4.49), featuring vulnerability research, controlled lab-based exploitation,…

educationexploitationlabs-practice+3
5 months ago
Previous12Next