Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
194 results
Log4Shell preview

Log4Shell

GitHubcert-hr/log4shell

This repo contains IoCs which are associated with exploitation of CVE-2021-4428.

exploitationincident-responseioc-management+3
4 years ago
check-your-pulse preview
Archived

check-your-pulse

GitHubcisagov/check-your-pulse

This utility can help determine if indicators of compromise (IOCs) exist in the log files of a Pulse Secure VPN Appliance for CVE-2019-11510.

forensicsincident-responseioc-management+3
286 years ago
SOC335-CVE-2024-49138-Investigation preview

SOC335-CVE-2024-49138-Investigation

GitHubnadineelliottcyber/soc335-cve-2024-49138-investigation

SOC investigation of a CVE-2024-49138 exploitation alert using log analysis, threat intelligence, and endpoint containment.

curated-resourcesdigital-forensicseducation+3
4 days ago
airborn-IOS-CVE-2025-24252 preview

airborn-IOS-CVE-2025-24252

GitHubcakescats/airborn-ios-cve-2025-24252

iOS Airborne vulnerabilities log artifact extractor from LogArchive CVE-2025-24252

digital-forensicseducationforensics+5
31 year ago
Zeek-CVE-Enrichment preview

Zeek-CVE-Enrichment

GitHubcorelight/zeek-cve-enrichment

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…

incident-responseioc-managementlog-analysis+3
11 year ago
CitrixNetscalerAnalysis preview

CitrixNetscalerAnalysis

GitHubl4r1k/citrixnetscaleranalysis

🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

curated-resourcesdigital-forensicseducation+5
6 years ago
panrapidcheck preview

panrapidcheck

GitHubhackinglz/panrapidcheck

Extract useful information from PANOS support file for CVE-2024-3400

forensicsincident-responseioc-management+3
21 year ago
CVE-2022-29072 preview

CVE-2022-29072

GitHubsentinelblue/cve-2022-29072

** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the…

exploitationincident-responselog-analysis+3
84 years ago
Log4Shell-vulnerability-CVE-2021-44228- preview

Log4Shell-vulnerability-CVE-2021-44228-

GitHubyadavmukesh/log4shell-vulnerability-cve-2021-44228-

This repository provides an in-depth analysis of the Log4Shell vulnerability (CVE-2021-44228) and implements a machine learning-based approach to…

anomaly-detectioncurated-resourceseducation+5
1 year ago
sharepoint-toolshell-micro-postmortem preview

sharepoint-toolshell-micro-postmortem

GitHubcameloo1/sharepoint-toolshell-micro-postmortem

Reproducible incident micro-postmortem for on-prem Microsoft SharePoint “ToolShell” (CVE-2025-53770): ATT&CK snapshot, “logs that matter” table,…

curated-resourceseducationforensics+7
18 months ago
My-Sigma-Rule-Collection preview

My-Sigma-Rule-Collection

GitHub17patmaks/my-sigma-rule-collection

Sigma Rule for CVE-2025-49666

curated-resourceseducationintrusion-detection+3
5 months ago
cve-2022-22954 preview

cve-2022-22954

GitHubcorelight/cve-2022-22954

Zeek package that detects CVE-2022-22954 exploit attempts, logs exploit URIs and attacker response data to aid in incident response and network…

exploitationincident-responseintrusion-detection+3
11 year ago
sysmon-config preview

sysmon-config

GitHubion-storm/sysmon-config

Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic…

anomaly-detectiondefensive-toolsdigital-forensics+5
8282 years ago
PAN-OS-CVE-2024-3400-Command-Injection-Investigation preview

PAN-OS-CVE-2024-3400-Command-Injection-Investigation

GitHubzedocun/pan-os-cve-2024-3400-command-injection-investigation

Investigation of a PAN-OS CVE-2024-3400 command injection attempt, analyzing payload delivery, internal processing, and execution validation based on…

digital-forensicsincident-responselog-analysis+3
14 months ago
JndiLookup preview

JndiLookup

GitHubmadcdan/jndilookup

Some tools to help mitigating Apache Log4j 2 CVE-2021-44228

command-and-controldynamic-analysis-sandboxingexploitation+3
34 years ago
Ox4Shell preview

Ox4Shell

GitHubox-eye/ox4shell

Deobfuscate Log4Shell payloads with ease.

log-analysisvulnerability-analysis
1674 years ago
CVE-2025-55182-Researching-process preview

CVE-2025-55182-Researching-process

GitHuborgito1015/cve-2025-55182-researching-process

Defensive research repository for CVE-2025-55182 (Pre-Auth RCE in React Server Components/Next.js). Includes vulnerability analysis, detection rules…

educationexploitationincident-response+6
14 months ago
ZeroLogon-Exploitation-Check preview

ZeroLogon-Exploitation-Check

GitHubyossisassi/zerologon-exploitation-check

quick'n'dirty automated checks for potential exploitation of CVE-2020-1472 (aka ZeroLogon), using leading artifects in determining an actual…

exploitationincident-responseinformation-gathering+3
75 years ago
Previous12…11Next