Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
Mandiant-Azure-AD-Investigator preview
Archived

Mandiant-Azure-AD-Investigator

GitHubmandiant/mandiant-azure-ad-investigator

Read-only PowerShell module for detecting UNC2452 and other threat actor artifacts in Azure AD, auditing federated domains, service principals,…

cloud-securitydigital-forensicsidentity-access-management+4
648
3 years ago
Log4jPatcher preview

Log4jPatcher

GitHubcreeperhost/log4jpatcher

A mitigation for CVE-2021-44228 (log4shell) that works by patching the vulnerability at runtime. (Works with any vulnerable java software, tested…

defensive-toolsexploitationincident-response+2
493 years ago
blmvuln preview

blmvuln

GitHubmathiasreker/blmvuln

Major Security Vulnerability on PrestaShop Websites - CVE-2022-31101

code-analysisincident-responsemalware-analysis+3
424 years ago
Follina-Remediation preview
Archived

Follina-Remediation

GitHubcosmo121/follina-remediation

Removes the ability for MSDT to run, in response to CVE-2022-30190 (Follina)

defensive-toolsexploitationincident-response+2
43 years ago
CVE-NetScalerFileSystemCheck preview

CVE-NetScalerFileSystemCheck

GitHubdanielwep/cve-netscalerfilesystemcheck

This script checks the Citrix Netscaler if it has been compromised by CVE-2019-19781 attacks and collects all file system information

digital-forensicsforensicsincident-response+3
25 years ago
mitigate-folina preview

mitigate-folina

GitHubderco0n/mitigate-folina

Mitigates the "Folina"-ZeroDay (CVE-2022-30190)

defensive-toolsincident-responsemisconfiguration+1
14 years ago
cloudpanel-2.4.2-CVE-2024-44765-recovery preview

cloudpanel-2.4.2-CVE-2024-44765-recovery

GitHubjosephgodwinkimani/cloudpanel-2.4.2-cve-2024-44765-recovery

How to "recover" a CloudPanel server affected by the CVE-2024-44765 vulnerability

cloud-securityincident-responsemisconfiguration+3
11 year ago
CVE-2023-34362-Defense-Package preview

CVE-2023-34362-Defense-Package

GitHubnaveenbana5250/cve-2023-34362-defense-package

Threat-Informed Detection & Mitigation Package for MOVEit Transfer Vulnerability

defensive-toolsincident-responsemisconfiguration+3
1 year ago
Firewall-Rules preview

Firewall-Rules

GitHubessafar/firewall-rules

Firewall rules to mitigate a zero-day vulnerability malware attack (CVE-2022-22965), known as Spring4Shell

defensive-toolsincident-responsemisconfiguration+2
2 years ago
log4jjndilookupremove preview

log4jjndilookupremove

GitHublukepasek/log4jjndilookupremove

A simple script to remove Log4J JndiLookup.class from jars in a given directory, to temporarily protect from CVE-2021-45046 and CVE-2021-44228.

incident-responsemisconfigurationscripting-automation+2
4 years ago
LogJackFix preview

LogJackFix

GitHubponeyclairdelune/logjackfix

A spigot plugin to fix CVE-2021-44228 Log4j remote code execution vulnerability, to protect Minecraft clients.

defensive-toolsexploitationincident-response+3
4 years ago
log4j-CVE-2021-44228-workaround preview

log4j-CVE-2021-44228-workaround

GitHubgrimch/log4j-cve-2021-44228-workaround

general purpose workaround for the log4j CVE-2021-44228 vulnerability

exploitationincident-responsemisconfiguration+2
4 years ago
Log4j-CVE-2021-44228-Remediation preview

Log4j-CVE-2021-44228-Remediation

GitHubdigital-dev/log4j-cve-2021-44228-remediation

This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

cloud-securitydefensive-toolsincident-response+3
2 years ago