Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2385 results
CVE-2023-4911-PoC preview

CVE-2023-4911-PoC

GitHubnishanthanand21/cve-2023-4911-poc

Repository containing a Proof of Concept (PoC) demonstrating the impact of CVE-2023-4911, a vulnerability in glibc's ld.so dynamic loader, exposing…

binary-exploitationeducationexploitation+4
7
1 year ago
Linux_hardening_and_security preview

Linux_hardening_and_security

GitHubnu11secur1ty/linux_hardening_and_security

Collection of Linux hardening scripts and security configurations for system auditing, access control, and defensive posture improvement. Includes…

configuration-auditingcurated-resourcesdefensive-tools+3
103 years ago
LabAutomationCVE-2021-43798 preview

LabAutomationCVE-2021-43798

GitHubmauricelambert/labautomationcve-2021-43798

This script implements a lab automation where I exploit CVE-2021-43798 to steal user secrets and then gain privileges on a Linux system.

educationexploitationlabs-practice+4
3 years ago
vaas-cve-2014-6271 preview

vaas-cve-2014-6271

GitHubhmlio/vaas-cve-2014-6271

Vulnerability as a service: showcasing CVS-2014-6271, a.k.a. Shellshock

container-securityeducationexploitation+3
226 years ago
vaas-cve-2014-0160 preview

vaas-cve-2014-0160

GitHubhmlio/vaas-cve-2014-0160

Vulnerability as a service: showcasing CVS-2014-0160, a.k.a. Heartbleed

container-securityeducationexploitation+3
156 years ago
AutomatedLab preview

AutomatedLab

GitHubautomatedlab/automatedlab

PowerShell-based provisioning framework for deploying complex lab environments on Hyper-V and Azure. Supports Windows, Linux, and products like AD,…

cloud-infrastructure-securityeducationlabs-practice+1
2.2k2 months ago
Y2S1-Project-Linux-Exploitaion-using-CVE-2016-5195-Vulnerability preview

Y2S1-Project-Linux-Exploitaion-using-CVE-2016-5195-Vulnerability

GitHubkasunpriyashan/y2s1-project-linux-exploitaion-using-cve-2016-5195-vulnerability

Educational Linux privilege escalation exploit targeting CVE-2016-5195 (Dirty COW) to demonstrate kernel vulnerability exploitation and root access…

binary-exploitationeducationexploitation+4
4 years ago
AndroidKernelVulnerability preview

AndroidKernelVulnerability

GitHubsharif-dev/androidkernelvulnerability

Triggering and Analyzing Android Kernel Vulnerability CVE-2019-2215

android-securitybinary-exploitationdynamic-analysis-sandboxing+5
724 years ago
CVE-2025-27591-PoC preview

CVE-2025-27591-PoC

GitHubmotechstore/cve-2025-27591-poc

# CVE-2025-27591 PoC — Below Local Privilege Escalation This repository contains a Proof of Concept (PoC) demonstrating the local privilege…

ctfexploitationlabs-practice+3
1 month ago
BlueDoor preview

BlueDoor

GitHubsethwhy/bluedoor

Can you exploit the EternalBlue vulnerability (CVE-2017-0144) on a Windows 7 system and retrieve the hidden flag? Your goal is to gain administrative…

ctfeducationexploitation+7
21 year ago
vaas-cve-2015-5477 preview

vaas-cve-2015-5477

GitHubhmlio/vaas-cve-2015-5477

Vulnerability as a service: showcasing CVS-2015-5447, a DDoS condition in the bind9 software

container-securitydns-analysiseducation+3
111 years ago
CVE-2026-23111-nftables-lab preview

CVE-2026-23111-nftables-lab

GitHubishankaru/cve-2026-23111-nftables-lab

Exposure checker and safe disposable-VM lab for CVE-2026-23111 (Linux nf_tables use-after-free local privilege escalation). Defensive: detection,…

configuration-auditingcontainer-escapecurated-resources+4
22 months ago
DetectionLab preview

DetectionLab

GitHubclong/detectionlab

Automate the creation of a lab environment complete with security tooling and logging best practices

configuration-auditingdefensive-toolsdigital-forensics+5
5.0k3 years ago
CVE2026-42926 preview

CVE2026-42926

GitHubikarolaborda/cve2026-42926

Controlled NGINX HTTP/2 frame injection lab for CVE-2026-42926 patch validation and defensive research

configuration-auditingdefensive-toolseducation+3
3 months ago
SecureOps-Lab preview

SecureOps-Lab

GitHubjdormannn/secureops-lab

Performed a live cybersecurity assessment on a university Linux server. During analysis, active attack activity was identified, including brute-force…

configuration-auditingeducationincident-response+5
4 months ago
CVE-2026-42945 preview

CVE-2026-42945

GitHubyusufdalbudak/cve-2026-42945

Dockerized lab for training on NGINX rewrite vulnerability (CVE-2026-42945) with vulnerable and patched instances, benign test scripts, and…

configuration-auditingctfeducation+3
3 months ago
web-threat-mitigation preview

web-threat-mitigation

GitHubbrunoh6/web-threat-mitigation

Hands-on lab on detecting and mitigating web app threats using OWASP ZAP, Burp Suite, and ModSecurity WAF (with OWASP CRS). Case study: Spring4Shell…

configuration-auditingdevsecopseducation+8
1 year ago
Vulnerability-Management preview

Vulnerability-Management

GitHubcybervixy/vulnerability-management

NGINX Security Hardening & Vulnerability Remediation Analysis of critical CVEs (CVE-2021-23017, HTTP/2 DoS flaws) in outdated NGINX versions, with…

configuration-auditingdevsecopseducation+3
1 year ago
Previous12…100Next