Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
272 results
CVE-2025-56499 preview

CVE-2025-56499

GitHubcherrling/cve-2025-56499

Proof-of-concept exploit for CVE-2025-56499, demonstrating arbitrary file read via missing path validation in mihomo's rule-provider configuration,…

exploitationinformation-gatheringlog-analysis+3
9 months ago
reditrap preview

reditrap

GitHubsrozb/reditrap

Minimal Redis honeypot detecting RediShell (CVE-2025-49844) exploits.

intrusion-detectionlog-analysisnetwork-security+2
11 months ago
Sigma-Rule-for-CVE-2021-40438-exploitation-attempt preview

Sigma-Rule-for-CVE-2021-40438-exploitation-attempt

GitHubpisut4152/sigma-rule-for-cve-2021-40438-exploitation-attempt

Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

intrusion-detectionioc-managementlog-analysis+3
14 years ago
CVE-2021-1675_CarbonBlack_HuntingQuery preview

CVE-2021-1675_CarbonBlack_HuntingQuery

GitHubmrezqi/cve-2021-1675_carbonblack_huntingquery

CarbonBlack hunting queries to detect PrintNightmare (CVE-2021-1675) exploitation via file, module load, and process events, based on Sigma rules.

defensive-toolsincident-responseioc-management+3
5 years ago
Sigma-Rule-for-CVE-2021-41773-and-CVE-2021-42013-exploitation-attempt preview

Sigma-Rule-for-CVE-2021-41773-and-CVE-2021-42013-exploitation-attempt

GitHubpisut4152/sigma-rule-for-cve-2021-41773-and-cve-2021-42013-exploitation-attempt
exploitationintrusion-detectionlog-analysis+3
4 years ago
cve-2019-6340-bits preview

cve-2019-6340-bits

GitHubjosehelps/cve-2019-6340-bits

Bits generated while analyzing CVE-2019-6340 Drupal RESTful RCE

exploitationinformation-gatheringlog-analysis+3
7 years ago
Exchange_IOC_Hunter preview

Exchange_IOC_Hunter

GitHubdcscoder/exchange_ioc_hunter

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

forensicsincident-responseioc-management+3
5 years ago
CVE-2023-47668 preview

CVE-2023-47668

GitHubrandomrobbiebf/cve-2023-47668

Restrict Content <= 3.2.7 - Information Exposure via legacy log file

information-gatheringlog-analysismisconfiguration+2
2 years ago
CVE-2021-44228-kusto preview

CVE-2021-44228-kusto

GitHubwheezysec/cve-2021-44228-kusto

Kusto query-based detection and analysis tool for CVE-2021-44228 (Log4Shell) vulnerability, enabling rapid log hunting and exploitation…

exploitationincident-responselog-analysis+2
4 years ago
KQL_sentinel_CVE-2025-21333 preview

KQL_sentinel_CVE-2025-21333

GitHubaleongx/kql_sentinel_cve-2025-21333

KQL para deteccion de CVE-2025-21333 en Sentinel

cloud-securityincident-responselog-analysis+2
1 year ago
Siem-queries-for-CVE-2021-44228 preview

Siem-queries-for-CVE-2021-44228

GitHubtica506/siem-queries-for-cve-2021-44228

SIEM query collection for detecting Log4Shell (CVE-2021-44228) exploitation attempts. Provides ready-to-use detection rules for security monitoring…

incident-responseintrusion-detectionioc-management+3
4 years ago
zimbra-cve-2026-73570-ir preview

zimbra-cve-2026-73570-ir

GitHubdahnutz/zimbra-cve-2026-73570-ir

Detection-first incident-response toolkit for Zimbra administrators investigating CVE-2026-73570. Searches logs for exploit indicators, examines…

defensive-toolsdigital-forensicsincident-response+4
2 days ago
cve-2026-22557-unifi-detection preview

cve-2026-22557-unifi-detection

GitHubgarethmsheldon/cve-2026-22557-unifi-detection

Detection content for CVE-2026-22557 — UniFi Network Application unauthenticated path traversal (CVSS 10.0). Includes YARA, Sigma, KQL, Splunk SPL,…

intrusion-detectionlog-analysisthreat-intelligence+1
5 months ago
detectree preview

detectree

GitHubwithsecurelabs/detectree

Interactive data visualization tool for blue teams to analyze detection data, understand relationships, reduce alert fatigue, and improve incident…

defensive-toolsincident-responselog-analysis+1
1273 years ago
thethe preview
Archived

thethe

GitHubelevenpaths/thethe

thethe

incident-responseinformation-gatheringlog-analysis+4
1155 years ago
honssh preview
Archived

honssh

GitHubtnich/honssh

HonSSH is designed to log all SSH communications between a client and server.

information-gatheringlog-analysisnetwork-security+1
3724 years ago
securitybot preview
Archived

securitybot

GitHubdropbox/securitybot

Distributed alerting for the masses!

authenticationincident-responselog-analysis+2
9897 years ago
Leaktopus preview
Archived

Leaktopus

GitHubplaytikaoss/leaktopus

Automated secret and leak detection scanner for GitHub and paste sites, with heuristic filtering, IOL enrichment via Shhgit/TruffleHog, and ELK-based…

code-analysisdevsecopsincident-response+6
305 months ago
Previous1…141516Next