Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
40 results
midonescanner-android preview

midonescanner-android

GitHubmwhammadrezss/midonescanner-android

Scanner CDN Detection, Real Bandwidth Test, Throttle Detection

anti-botdns-analysisinformation-gathering+4
33
3 months ago
CVE-2026-68121 preview

CVE-2026-68121

GitHubhorkimhab/cve-2026-68121

Proof-of-concept for CVE-2026-68121 (PPPoEject), providing a Python exploit implementation for authorized security research and lab testing.

educationexploitationlabs-practice+4
8 days ago
AgrusScanner preview

AgrusScanner

GitHubnybaywatch/agrusscanner

Windows network reconnaissance scanner with ping sweeps, TCP port scanning, and deep AI/ML service detection for finding shadow AI, rogue LLM…

ai-securitydefensive-toolsinformation-gathering+6
264 days ago
trippy preview

trippy

GitHubfujiapple852/trippy

A network diagnostic tool combining traceroute and ping for analyzing network paths, latency, and packet loss with an interactive terminal UI.

general-purpose-utilitiesinformation-gatheringnetwork-mapping+1
8.0k1 day ago
CVE-2026-33555 preview

CVE-2026-33555

GitHubr3verii/cve-2026-33555

One zero-byte QUIC packet is enough to desynchronize HAProxy's backend connection pool and smuggle HTTP requests across unrelated users — even users…

exploitationnetwork-securitypapers-research+3
25 months ago
scan-cve-2026-24061 preview

scan-cve-2026-24061

GitHubkillsystema/scan-cve-2026-24061

Scans for CVE-2026-24061 telnetd auth bypass, generating payloads and verifying root access on vulnerable GNU inetutils telnetd devices.

exploitationiot-securitynetwork-security+3
7 months ago
CVE-2026-56848 preview

CVE-2026-56848

GitHubopen-flaw/cve-2026-56848

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…

dynamic-code-analysisexploitationnetwork-security+2
1 month ago
roamr preview

roamr

GitHubsourabh-khot65/roamr

Find the best WiFi network for where you are — scores every saved network for real-world quality, not just signal bars.

general-purpose-utilitiesnetwork-securitywireless-security
81 month ago
nmap-nse-scripts preview

nmap-nse-scripts

GitHubcldrn/nmap-nse-scripts

My collection of nmap NSE scripts

curated-resourceseducationinformation-gathering+5
9944 years ago
ICMPTunnel preview

ICMPTunnel

GitHubal1ex/icmptunnel

icmptunnel

data-exfiltrationids-ips-evasionlateral-movement+3
26 years ago
Purdue-Model-for-Industrial-Control-System-Environments preview

Purdue-Model-for-Industrial-Control-System-Environments

GitHubmurataydemir/purdue-model-for-industrial-control-system-environments

Purdue Model for Industrial Control System (ICS) Environments (Turkish)

educationnetwork-securitypapers-research+1
36 years ago
pingback preview

pingback

GitHubcorelight/pingback

A Zeek package to detect the Pingback malware ICMP tunnel command and control (C2) network traffic.

command-and-controlintrusion-detectionmalware-analysis+2
110 years ago
badkeys preview

badkeys

GitHubbadkeys/badkeys

Tool to find common vulnerabilities in cryptographic public keys

cryptographyencryption-decryption-toolshash-analysis+3
37712h 36m ago
MalleableC2Profiles preview

MalleableC2Profiles

GitHubbluscreenofjeff/malleablec2profiles

Malleable C2 profiles for Cobalt Strike

command-and-controlexploit-frameworksnetwork-security+3
779 years ago
PiX-C2 preview

PiX-C2

GitHubrobertdavis1/pix-c2

Ping Exfiltration Command and Control (PiX-C2)

command-and-controlnetwork-securitypacket-sniffing-analysis+3
3111 years ago
LinksysLeaks preview

LinksysLeaks

GitHubjollyjumbuckk/linksysleaks

Python3 script to scan for Linksys smart wifi devices that are vulnerable to CVE-2014-8244

educationexploitationinformation-gathering+5
63 years ago
CVE-2025-26466-msf preview

CVE-2025-26466-msf

GitHubmrowkoob/cve-2025-26466-msf

CVE-2025-26466 - SSH Ping DoS Ruby module for Metasploit Framework

educationexploit-frameworksnetwork-security+2
1 year ago
trivy preview

trivy

GitHubaquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

cloud-infrastructure-securitycloud-securitycode-analysis+14
38.1k17h 33m ago
Previous123Next