Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
httpx preview

httpx

GitHubprojectdiscovery/httpx

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

api-securityapi-security-testingcrawler+18
10.3k
1 day ago
mcpsnoop preview

mcpsnoop

GitHubkerlenton/mcpsnoop

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

api-security-testingdebuggersdynamic-analysis-sandboxing+5
3432 days ago
firefox-devtools-mcp preview

firefox-devtools-mcp

GitHubmozilla/firefox-devtools-mcp

Model Context Protocol server for Firefox DevTools - enables AI assistants to inspect and control Firefox browser through the Remote Debugging…

android-securityapi-security-testingdebuggers+7
3714 days ago
UltraViolet preview

UltraViolet

GitHubyakushstanislav/ultraviolet

Self-hosted network discovery and search engine with continuous port scanning, deep protocol probing across ~100 services, local CVE matching, and…

dns-analysisincident-responseiot-security+6
444 days ago
CVE-2026-61511-PoC-Exploit preview

CVE-2026-61511-PoC-Exploit

GitHubtc4dy/cve-2026-61511-poc-exploit

Exploit toolkit for CVE-2026-61511 targeting vBulletin pre-auth RCE, featuring multi-endpoint exploitation, WAF bypass via PHPFuck, and…

database-securityexploitationnetwork-mapping+7
519 days ago
INtrack preview

INtrack

GitHubk3ystr0k3r/intrack

A flexible internet crawler used for scanning technologies, instances and vulnerabilities worldwide across the internet.

crawlerexploitationinformation-gathering+7
6028 days ago
Multi-VLAN-Enterprise-Network-Vulnerability-Assessment preview

Multi-VLAN-Enterprise-Network-Vulnerability-Assessment

GitHubklairmanraj/multi-vlan-enterprise-network-vulnerability-assessment

Multi-VLAN enterprise network vulnerability assessment using Nessus, OWASP ZAP, and Wireshark. Confirms Stored XSS on WebGoat and EternalBlue…

exploitationnetwork-mappingnetwork-security+6
4 months ago
WhatWeb preview

WhatWeb

GitHuburbanadventurer/whatweb

Web technology identification scanner with 1800+ plugins for detecting CMS, servers, JS libraries, and embedded devices. Supports stealthy to…

crawlerdynamic-code-analysisinformation-gathering+9
6.8k4 months ago
dahua-cve-research preview

dahua-cve-research

GitHubumair-aziz025/dahua-cve-research

Dahua IP camera CVE research toolkit (CVE-2021-33044/33045, CVE-2025-31700/31701)

authenticationeducationexploitation+5
274 months ago
pentest-mcp preview

pentest-mcp

GitHubdmontgomery40/pentest-mcp

NOT for educational purposes: An MCP server for professional penetration testers including STDIO/HTTP/SSE support, nmap, go/dirbuster, nikto, JtR,…

exploitationfuzzingnetwork-mapping+8
1425 months ago
CVE-2025-64459-hunter preview

CVE-2025-64459-hunter

GitHubpurehate/cve-2025-64459-hunter

Fast network scanner targeting CVE-2025-64459 (Django SQL Injection). Scans IPs, CIDR ranges, custom ports, and paths with configurable concurrency…

exploitationnetwork-mappingport-scanning+3
6 months ago
Vulnerable-Lab-Exploitation preview

Vulnerable-Lab-Exploitation

GitHubhackhermind-pixel/vulnerable-lab-exploitation

A hands-on project demonstrating the setup of virtual security lab, network reconnaissance, and exploitation of CVE-2012-1823.

educationexploitationinformation-gathering+8
17 months ago
Review.CVE-2023-5612 preview

Review.CVE-2023-5612

GitHubtopskiypavelqwertygang/review.cve-2023-5612

PoC and NSE scripts for GitLab SSRF (CVE-2023-5612) enabling internal network scanning and validation of webhook URL vulnerabilities.

exploitationnetwork-mappingpenetration-testing+3
1 year ago
CVE-2025-24132-Scanner preview

CVE-2025-24132-Scanner

GitHubferalthedogg/cve-2025-24132-scanner

mDNS-based AirPlay device discovery tool that scans local networks and tests for CVE-2025-24132 zero-click HTTP RCE vulnerability with a simple GUI…

exploitationinformation-gatheringnetwork-mapping+3
31 year ago
peeko preview

peeko

GitHubb3rito/peeko

XSS-based C2 that turns a victim's browser into a proxy for internal scanning, URL fetch, cookie theft, JS execution, and data exfiltration via…

command-and-controldata-exfiltrationinformation-gathering+7
2331 year ago
Nmap-API preview

Nmap-API

GitHubmorpheuslord/nmap-api

RESTful API wrapping Nmap for automated network scanning, port detection, service enumeration, and vulnerability analysis with optional AI-powered…

api-security-testingnetwork-mappingosint+2
821 year ago
cve-2024-10914-port preview

cve-2024-10914-port

GitHubretuci0/cve-2024-10914-port

Rust and Python exploit for CVE-2024-10914, a critical command injection vulnerability in D-Link NAS devices. Sends crafted HTTP requests to execute…

exploitationnetwork-mappingpenetration-testing+3
1 year ago
kygocera preview

kygocera

GitHubr0lh/kygocera

Improved Golang Version of Rapid7 PoC for CVE-2022-1026

exploitationinformation-gatheringnetwork-mapping+3
2 years ago
Previous12Next