Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
12 results
CVE-2020-27368 preview
Archived

CVE-2020-27368

GitHubswzhouu/cve-2020-27368

TOTOLINK-A702R-V1.0.0-B20161227.1023 Directory Indexing Vulnerability

embedded-systems-securityinformation-gatheringiot-security+3
1
3 years ago
wolfCOSE preview

wolfCOSE

GitHubwolfssl/wolfcose

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.

code-analysiscryptographyembedded-systems-security+7
7610 days ago
CVE-2025-55182-scanner preview

CVE-2025-55182-scanner

GitHubyaupunal/cve-2025-55182-scanner

CVE-2025-55182-scanner with 2 different method

defensive-toolsids-ips-evasionmisconfiguration+3
9 months ago
kubeeye preview

kubeeye

GitHubkubesphere/kubeeye

Cloud-native Kubernetes cluster inspection tool that detects application misconfigurations, unhealthy components, and node problems using custom OPA,…

cloud-infrastructure-securitycloud-securityconfiguration-auditing+3
8501 year ago
CVE-2020-23590 preview

CVE-2020-23590

GitHubhuzaifahussain98/cve-2020-23590

CSRF leads to change the password for "WLAN SSID"

embedded-systems-securityexploitationiot-security+3
3 years ago
cnappgoat preview

cnappgoat

GitHubtenable/cnappgoat

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

cloud-infrastructure-securitycloud-securityctf+5
2962 years ago
nextjs-cve-2026-23870-checker preview

nextjs-cve-2026-23870-checker

GitHubemresandikci/nextjs-cve-2026-23870-checker

Checker and fixer for all 13 vulnerabilities in the Next.js May 2026 security release (CVE-2026-23870)

code-analysisdevsecopsmisconfiguration+3
14 months ago
dllspy preview

dllspy

GitHubn7on/dllspy

Discover input surfaces and security issues in compiled .NET assemblies — without running them.

api-securityauthenticationcode-analysis+5
396 months ago
CVE-2020-14965 preview

CVE-2020-14965

GitHubg-rubert/cve-2020-14965

TP-LINK Multiple HTML Injection Vulnerabilities

embedded-systems-securityhardware-securityiot-security+3
6 years ago
hitron-cfg-decrypter preview

hitron-cfg-decrypter

GitHubaimoda/hitron-cfg-decrypter

CVE-2014-10069

embedded-systems-securityencryption-decryption-toolsexploitation+3
118 years ago
CVE-2021-42562 preview

CVE-2021-42562

GitHubmbadanoiu/cve-2021-42562

CVE-2021-42562: Improper Access Control in MITRE Caldera

exploitationmisconfigurationpenetration-testing+3
2 years ago
DSL-2750U-Full-chain preview

DSL-2750U-Full-chain

GitHubhadimed/dsl-2750u-full-chain

CVE-2021-3707 , CVE-2021-3708

command-and-controlembedded-systems-securityexploitation+3
214 years ago