Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
53 results
CTFs preview

CTFs

GitHubadamkadaban/ctfs

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

binary-exploitationcryptographyctf+9
85410 months ago
arya preview

arya

GitHubclaroty/arya

Generates pseudo-malicious files from YARA rules to trigger AV/EDR detection, enabling malware research, rule QA, and network sensor pressure testing…

educationlabs-practicemalware-analysis+2
2613 years ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubdoocop/cve-2022-30190

Reproduction of CVE-2022-30190 (Follina) remote code execution vulnerability in Microsoft Office Word via malicious docx/rtf files with ms-msdt…

educationexploitationlabs-practice+3
594 years ago
rust-reversing-workshop-recon-2024 preview

rust-reversing-workshop-recon-2024

GitHubcxiao/rust-reversing-workshop-recon-2024

Slides and files for the Reversing Rust Binaries: One step beyond strings workshop at REcon 2024, presented on June 28, 2024.

binary-analysiseducationlabs-practice+1
802 years ago
vulnerable-container-hub preview

vulnerable-container-hub

GitHubowasp/vulnerable-container-hub

VULCONHUB provides access to files to build your own hands-on vulnerable container image to learn and practice security

container-securityctfcurated-resources+4
303 years ago
DeepTrap preview

DeepTrap

GitHubzjuicsr/deeptrap

Security benchmark for evaluating OpenClaw agents against adversarial execution contexts including poisoned files, injected skills, misleading tool…

adversarial-attackai-securitycommand-and-control+8
104 months ago
vulnerable-PDF preview

vulnerable-PDF

GitHubnu11secur1ty/vulnerable-pdf

Educational PDF files demonstrating client-side exploitation techniques, including calculator execution and directory browsing, for security testing…

educationlabs-practicepayload-generation+3
112 years ago
CVE-2026-85706 preview

CVE-2026-85706

GitHubsolivaquaant/cve-2026-85706

Proof-of-concept and reproduction lab for CVE-2026-85706, an unauthenticated path-traversal file read in GitLab CE/EE repository commits and files…

data-exfiltrationexploitationinformation-gathering+7
10 days ago
AgentCyTE preview

AgentCyTE

GitHubanantaakotal/agentcyte

Generates reproducible CORE network topologies from XML scenario files for cybersecurity training and experimentation. Provides Web GUI and CLI for…

educationlabs-practicenetwork-security+3
39 months ago
CVE-2023-38545-sample preview

CVE-2023-38545-sample

GitHubvanigori/cve-2023-38545-sample

Dockerfile containing all the necessary setup files to demo the exploit

container-securityeducationexploitation+3
32 years ago
ludus_crushftp_cve-2025-31161_sim preview

ludus_crushftp_cve-2025-31161_sim

GitHubrufflabs/ludus_crushftp_cve-2025-31161_sim

Ansible role that simulates a realistic CrushFTP CVE-2025-31161 exploitation scenario with rotating sensitive data files and automated defender…

ctfeducationexploitation+5
2 months ago
CVE-2026-46300-Fragnesia---TryHackMe-Lab-Project preview

CVE-2026-46300-Fragnesia---TryHackMe-Lab-Project

GitHubbenedictejepu/cve-2026-46300-fragnesia---tryhackme-lab-project

The project documents the completion and analysis of the Fragnesia (CVE-2026-46300) TryHackME lab, which demonstrates a Linux kernel page -cache…

binary-exploitationeducationexploitation+3
3 months ago
CVE-2025-41656 preview

CVE-2025-41656

GitHubwallyschag/cve-2025-41656

This repository includes the code and files needed to test and execute a PoC for CVE-2025-41656

educationexploitationiot-security+3
210 months ago
Vulnerable-Docker--CVE-2023-30212- preview

Vulnerable-Docker--CVE-2023-30212-

GitHubvisdev23/vulnerable-docker--cve-2023-30212-

This contains the necessary files and Docker to replicate A vulnerability in OURPHP that has a XSS Vulnerability (CVE-2023-30212)

container-securityeducationexploitation+3
13 years ago
CVE-2025-25279-Mattermost-Path-Traversal preview

CVE-2025-25279-Mattermost-Path-Traversal

GitHubabokormahammadmousse/cve-2025-25279-mattermost-path-traversal

Proof-of-concept exploit for CVE-2025-25279, a Mattermost Focalboard path traversal enabling authenticated arbitrary file read and exfiltration of…

educationexploitationlabs-practice+3
5 months ago
n8n-RCE-CVE-2025-68613 preview

n8n-RCE-CVE-2025-68613

GitHubcanpilayda/n8n-rce-cve-2025-68613

Lab report analyzing CVE-2025-68613 expression injection in n8n, demonstrating sandbox escape via crafted payloads to access sensitive server files,…

educationexploitationlabs-practice+3
5 months ago
CVE-2023-38831-WinRAR-Vulnerability-Analysis preview

CVE-2023-38831-WinRAR-Vulnerability-Analysis

GitHubolowostandard1/cve-2023-38831-winrar-vulnerability-analysis

This project is a cybersecurity research and analysis project focused on CVE-2023-38831, a critical WinRAR vulnerability that allows attackers to…

educationexploitationlabs-practice+3
14 months ago
CVE-2026-3304 preview

CVE-2026-3304

GitHubmkway/cve-2026-3304

Reproduction lab for CVE-2026-3304, a Multer async fileFilter race condition causing disk exhaustion via orphaned temp files. Includes vulnerable and…

educationexploitationlabs-practice+2
6 months ago
Previous123Next