Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2385 results
network-security-lab preview

network-security-lab

GitHubamirmuhammadmarvi/network-security-lab

Controlled virtual attack & defense lab — CVE-2011-2523 exploitation, Nmap recon, Nikto scanning, UFW hardening on Metasploitable 2

configuration-auditingeducationexploitation+7
3 months ago
network-security-snort preview

network-security-snort

GitHubtaisa456/network-security-snort

Snort 3 IDS → IPS lab on Kali. Custom detection rules + iptables enforcement against ICMP recon, Nmap SYN scans, Hydra FTP brute force, and vsftpd…

defensive-toolseducationexploitation+6
3 months ago
CVE-2023-4911 preview
Archived

CVE-2023-4911

GitHubkernelkrise/cve-2023-4911

Looney Tunables Local privilege escalation (CVE-2023-4911) workshop

binary-exploitationeducationexploitation+3
181 year ago
testenv preview

testenv

GitHubsqlmapproject/testenv

A collection of web pages vulnerable to SQL injection flaws

database-securityeducationlabs-practice+3
3544 years ago
Make-and-Break preview

Make-and-Break

GitHubrayferrufino/make-and-break

Built a custom Virtual Machine, running Ubuntu 18.04.1 and Webmin 1.810. Using CVE-2019-15107 to exploit a backdoor in the Linux machine

educationexploitationexploit-frameworks+6
16 years ago
HTB-Snapped-Writeup preview

HTB-Snapped-Writeup

GitHubkarimelsheikh1/htb-snapped-writeup

HTB Snapped — Hard Linux machine writeup. CVE-2026-27944 (Nginx UI unauthenticated backup disclosure) chained with CVE-2026-3888 (snapd race…

ctfeducationexploitation+5
14 months ago
CVE-2022-0492-Docker-Breakout-Checker-and-PoC preview

CVE-2022-0492-Docker-Breakout-Checker-and-PoC

GitHubt1erno/cve-2022-0492-docker-breakout-checker-and-poc

Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)

cloud-securitycontainer-escapecontainer-security+6
83 years ago
CVE-2025-70149-SQL-Injection preview

CVE-2025-70149-SQL-Injection

GitHubanusha-khan29/cve-2025-70149-sql-injection

Security research project — SQL Injection vulnerability exploitation and mitigation

database-securityeducationlabs-practice+3
1 month ago
CVE-2025-48384 preview

CVE-2025-48384

GitHubs41r4j/cve-2025-48384

GIT vulnerability | Carriage Return and RCE on cloning

educationexploitationlabs-practice+3
11 months ago
CVE-2007-2447 preview

CVE-2007-2447

GitHubfoudadev/cve-2007-2447

Educational exploit implementation for CVE-2007-2447 Samba 3.0.20-3.0.25rc username map script command execution vulnerability with Python SMB client…

binary-exploitationcommand-and-controleducation+6
2 years ago
SUDO_KILLER preview

SUDO_KILLER

GitHubth3xace/sudo_killer

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific…

ctfeducationexploitation+5
2.5k6 months ago
HiddenSteps preview

HiddenSteps

GitHubjgalego/hiddensteps

HiddenSteps — a local-first personal workflow intelligence platform

ctfcurated-resourcesdata-exfiltration+8
51 month ago
CVE_2018_16763_Proof_of_Concept preview

CVE_2018_16763_Proof_of_Concept

GitHubsaccles/cve_2018_16763_proof_of_concept

A Proof-of-Concept (PoC) exploit for CVE-2018-16763 (Fuel CMS - Preauthenticated Remote Code Execution).

educationexploitationlabs-practice+3
1 year ago
THM-MagnusBilling-CVE-2023-30258-Exploit preview

THM-MagnusBilling-CVE-2023-30258-Exploit

GitHubcyb3rk0ala/thm-magnusbilling-cve-2023-30258-exploit

Step-by-step walkthrough exploiting CVE-2023-30258 (MagnusBilling RCE) and escalating privileges via fail2ban misconfiguration on a TryHackMe lab.…

command-and-controlctfeducation+7
28 days ago
gp_netSecDSS preview

gp_netSecDSS

GitLabahmad.zaid/netsecdss

Decision Support System for Risk Assessing Network and System Security in Small and Medium Enterprises (SMEs), A graduation project.

educationlabs-practicenetwork-security
2 months ago
CVE-2021-4773 preview

CVE-2021-4773

GitHubalexs18/cve-2021-4773

Step-by-step tutorial demonstrating how to set up a vulnerable Apache 2.4.49 environment and exploit CVE-2021-41773 path traversal using Kali Linux…

educationexploitationlabs-practice+3
10 months ago
Honeypot_Smart_Infrastructure preview

Honeypot_Smart_Infrastructure

GitHubadarkst/honeypot_smart_infrastructure

This Repository Includes Kubernetes manifest files for configuration of Honeypot system and Falco IDS in K8s environment. There are also Demo…

cloud-securitycontainer-securityeducation+4
12 years ago
CVE-2025-6554 preview

CVE-2025-6554

GitHubgmh5225/cve-2025-6554

Reproduction steps and proof-of-concept for CVE-2025-6554, a V8 engine vulnerability, with setup guides for macOS and Linux using ASAN builds.

binary-exploitationeducationexploitation+2
1 year ago
Previous123…100Next