Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
43 results
CVE-2023-36723 preview

CVE-2023-36723

GitHubwh04m1001/cve-2023-36723

Proof-of-concept exploit for CVE-2023-36723, an arbitrary directory creation vulnerability in Windows Container Manager, enabling privilege…

container-securityexploitationlateral-movement+2
67
2 years ago
CDK preview

CDK

GitHubcdk-team/cdk

📦 Make security testing of K8s, Docker, and Containerd easier.

cloud-securitycontainer-escapecontainer-security+7
4.7k4 months ago
docker_lightman_exploit preview

docker_lightman_exploit

GitHubthekevinday/docker_lightman_exploit

Docker CVE-2022-37708

container-escapecontainer-securityexploitation+3
33 years ago
SpoolSploit preview

SpoolSploit

GitHubbeetlechunks/spoolsploit

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

container-securityexploitationexploit-frameworks+4
5525 years ago
Dejavu preview

Dejavu

GitHubbhdresh/dejavu

DejaVU - Open Source Deception Framework

cloud-securitydefensive-toolsids-ips-evasion+7
4331 year ago
docker-lab-cve-2017-5638-cve-2021-41773 preview

docker-lab-cve-2017-5638-cve-2021-41773

GitHubkouf320/docker-lab-cve-2017-5638-cve-2021-41773

Docker-based multi-stage attack emulation lab demonstrating CVE-2017-5638 and CVE-2021-41773 exploitation, lateral movement, and Suricata IDS…

educationexploitationids-ips-evasion+6
23 months ago
CVE-2025-9074 preview

CVE-2025-9074

GitHubc0gnit00/cve-2025-9074

PHP poc, exploit for CVE-2025-9074

cloud-securitycommand-and-controlcontainer-escape+8
3 months ago
impacket preview

impacket

GitHubfortra/impacket

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

authenticationcommand-and-controldatabase-security+17
16.1k14h 56m ago
Decepticon preview

Decepticon

GitHubpurpleailab/decepticon

Autonomous Hacking Agent for Red Team

ai-securitycommand-and-controlctf+9
5.4k9 days ago
Empire preview

Empire

GitHubbc-security/empire

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

adversarial-attackcommand-and-controldata-exfiltration+16
5.3k1 month ago
redamon preview

redamon

GitHubsamugit83/redamon

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

ai-securityexploit-frameworkslateral-movement+8
2.4k2 days ago
Winpayloads preview

Winpayloads

GitHubnccgroup/winpayloads

Undetectable Windows Payload Generation

command-and-controlexploit-frameworkslateral-movement+9
1.6k7 years ago
BloodHound.py preview

BloodHound.py

GitHubdirkjanm/bloodhound.py

A Python based ingestor for BloodHound

information-gatheringlateral-movementpenetration-testing+3
2.4k10 months ago
PoshC2 preview

PoshC2

GitHubnettitude/poshc2

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

command-and-controllateral-movementpayload-generation+3
2.1k9 months ago
AD_Miner preview

AD_Miner

GitHubad-security/ad_miner

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

configuration-auditingeducationinformation-gathering+6
1.6k5 months ago
CrucibleC2 preview

CrucibleC2

GitHubdragoqcc/cruciblec2

A C# Command & Control framework

command-and-controlexploit-frameworkslateral-movement+5
1.0k2 years ago
smbeagle preview

smbeagle

GitHubpunk-security/smbeagle

SMBeagle - Fileshare auditing tool.

information-gatheringlateral-movementnetwork-security+4
74510 months ago
Medusa preview

Medusa

GitHubmythicagents/medusa

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

command-and-controlexploit-frameworkslateral-movement+8
2101 month ago
Previous123Next