Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
Exploiting-a-vulnerability-using-reverse-shell preview

Exploiting-a-vulnerability-using-reverse-shell

GitHubdampedcoast/exploiting-a-vulnerability-using-reverse-shell

This project simulates a real-world attack-and-defend scenario across two virtual machines. You will exploit a critical pre-authentication RCE…

ctfeducationexploitation+5
2 months ago
CVE-2026-55579 preview

CVE-2026-55579

GitHubch4120n/cve-2026-55579

CVE-2026-55579 – Unauthenticated RCE in Pheditor via hardcoded default password "admin". Full Python exploit with file upload & terminal execution.…

educationexploitationlabs-practice+6
11 month ago
Zero-Day-Legacy preview

Zero-Day-Legacy

GitHubayham-megdadi/zero-day-legacy

A vulnerable Boot-to-Root CTF lab machine simulating a hospital environment. Features a realistic 17-step attack chain including SQL Injection, XSS,…

ctfeducationlabs-practice+6
11 month ago
gpp-encrypt preview

gpp-encrypt

GitHubmauricelambert/gpp-encrypt

This little script encrypts password to gpp cpassword. It useful to create vulnerable lab AD (CVE-2014-1812).

encryption-decryption-toolsexploitationlabs-practice+2
3 years ago
CVE_2020_35848 preview

CVE_2020_35848

GitHubsabbu143s/cve_2020_35848

CVE-2020-35848 impacts Cockpit-CMS v1.7 due to unsafe handling of user inputs in authentication mechanisms, leading to remote code execution. This…

ctfeducationexploitation+6
1 year ago
WebGoat.NET preview

WebGoat.NET

GitHubowasp/webgoat.net

OWASP WebGoat.NET

code-analysiseducationlabs-practice+3
7311 years ago
exploit-CVE-2016-6515 preview

exploit-CVE-2016-6515

GitHubopsxcq/exploit-cve-2016-6515

OpenSSH remote DOS exploit and vulnerable container

container-securityeducationexploitation+3
538 years ago
LabS4U2Self preview

LabS4U2Self

GitHubotterhacker/labs4u2self
authentication-authorizationdatabase-securityeducation+5
313 years ago
CVE-2019-15107 preview

CVE-2019-15107

GitHubjini135wii/cve-2019-15107
educationexploitationlabs-practice+3
1 month ago
CVE-2026-40083 preview

CVE-2026-40083

GitHubhakaioffsec/cve-2026-40083

SQL Injection at Cacti

database-securityeducationexploitation+4
31 month ago
CVE-2026-24061-lab preview

CVE-2026-24061-lab

GitHubakpmarcelin/cve-2026-24061-lab
authenticationeducationexploitation+3
2 months ago
CyberSec2026 preview

CyberSec2026

GitHubsanderschepers1993/cybersec2026

Educational lab environment for exploiting CVE-2022-22947 in Spring Cloud Gateway, with automated victim VM setup and attacker configuration scripts.

educationexploitationlabs-practice+3
3 months ago
CVE-2026-49060-Lab preview

CVE-2026-49060-Lab

GitHubrootdirective-sec/cve-2026-49060-lab
educationlabs-practicepenetration-testing+3
2 months ago
CVE-2024-21413-Vulnerabilidad-Outlook-LAB preview

CVE-2024-21413-Vulnerabilidad-Outlook-LAB

GitHubd1se0/cve-2024-21413-vulnerabilidad-outlook-lab
educationemail-securityexploitation+4
41 year ago
CVE-2025-2304-exploit preview

CVE-2025-2304-exploit

GitHubjeanback1/cve-2025-2304-exploit
educationexploitationlabs-practice+5
3 months ago