Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
67 results
vuln-chain-lab preview

vuln-chain-lab

GitHubechosecure/vuln-chain-lab

PoC Docker lab: chaining file upload bypass + stored XSS to create admin accounts. Educational resource for pen testers.

ctfeducationlabs-practice+5
1
5 months ago
Mobile-Drop-Device-SOC-Detection preview

Mobile-Drop-Device-SOC-Detection

GitHubv3ng4mxv1p3r/mobile-drop-device-soc-detection

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

educationexploitationincident-response+6
14 months ago
activemq-ids-ips-lab preview

activemq-ids-ips-lab

GitHubtrnguyen03/activemq-ids-ips-lab

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

educationexploit-frameworksids-ips-evasion+6
4 months ago
zenml-CVE-2024-2083-POC preview

zenml-CVE-2024-2083-POC

GitHubsaptaktdk/zenml-cve-2024-2083-poc

Dockerized vulnerable lab demonstrating CVE-2024-2083 in ZenML, a path traversal vulnerability in the step logs API allowing arbitrary file read.

educationexploitationlabs-practice+3
6 months ago
homelab-CVE-2025-68613 preview

homelab-CVE-2025-68613

GitHubdlanang/homelab-cve-2025-68613

Docker Compose-based homelab environment for testing and exploiting CVE-2025-68613, with n8n workflow automation for security experimentation.

educationexploitationlabs-practice+2
8 months ago
CVE-2025-55182-Lab preview

CVE-2025-55182-Lab

GitHubmacaroniwdcheese/cve-2025-55182-lab

Local lab for understanding CVE-2025-55182 RCE in React Server Components/Next.js. Includes a deliberately vulnerable app and optional scanner helper…

ctfeducationlabs-practice+3
9 months ago
cve-2017-0143 preview

cve-2017-0143

GitHubbenguelmas/cve-2017-0143

Educational demonstration of exploiting CVE-2017-0143 (EternalBlue) on Windows 7 using Metasploit in a controlled lab environment for penetration…

educationexploitationexploit-frameworks+3
1 year ago
log4shell-minecraft-demo preview

log4shell-minecraft-demo

GitHubfelixslama/log4shell-minecraft-demo

Log4Shell (CVE-2021-44228) minecraft demo. Used for education fairs

educationexploitationlabs-practice+3
2 years ago
Tenda-Router-VR-and-Exploit preview

Tenda-Router-VR-and-Exploit

GitHubjaden-bowers/tenda-router-vr-and-exploit

Writeup for Tenda AC15 router firmware rehosting and remote command execution (CVE-2020-10987) exploit replication.

binary-exploitationeducationembedded-systems-security+8
9 months ago
gitlab-ssrf preview

gitlab-ssrf

GitHubcs4239-u6/gitlab-ssrf

Demonstration of CVE-2018-19571: GitLab SSRF CVE

command-and-controleducationexploitation+3
4 years ago
CVE-2022-42889 preview

CVE-2022-42889

GitHubnecroteddy/cve-2022-42889

docker for CVE-2022-42889

educationexploitationlabs-practice+2
3 years ago
cve-2025-29927 preview

cve-2025-29927

GitHubgokul-krishnan-v-r/cve-2025-29927

Next.js and the corrupt middleware...TRY TO HACK IT..!

ctfeducationlabs-practice+3
1 year ago
IT19115276 preview

IT19115276

GitHubkiruthikan99/it19115276

SNP Assignment 1 Report - Linux box exploitation ( Vulnerability CVE-2014-0038)

educationexploitationlabs-practice+2
6 years ago
Previous1234Next