Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1786 results
reconkg preview

reconkg

GitHubxghst0/reconkg

Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

network-securitypenetration-testingthreat-feeds-aggregators+2
20h 46m ago
iron-proxy preview

iron-proxy

GitHubparadigmxyz/iron-proxy

An egress firewall for untrusted workloads.

cloud-securitycontainer-securitydatabase-security+5
6125 days ago
ansible-cve-2023-36845 preview

ansible-cve-2023-36845

GitHubp4x1s/ansible-cve-2023-36845

Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞)

devsecopsnetwork-securityscripting-automation+2
2 years ago
CVE-2026-61241 preview

CVE-2026-61241

GitHubgodliveanton/cve-2026-61241

Oracle OID LDAP Server Privileges Management Exploit

exploitationidentity-access-managementnetwork-security+3
1 day ago
ksmbrace preview

ksmbrace

GitHubturtlearm/ksmbrace

ksmbd CVEs: CVE-2026-31717, CVE-2026-68083

authentication-authorizationdefensive-toolsexploitation+3
51 day ago
CVE-2026-41089 preview

CVE-2026-41089

GitHubjelasin/cve-2026-41089

Pre-auth PoC for CVE-2026-41089 Netlogon CLDAP stack overflow via UDP/389, triggering LSASS crash/DC reboot. Includes exploit script, root-cause…

binary-exploitationexploitationnetwork-security+3
2 months ago
CVE-2026-56848 preview

CVE-2026-56848

GitHubopen-flaw/cve-2026-56848

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…

dynamic-code-analysisexploitationnetwork-security+2
1 day ago
HeartBleed-CVE-2014-0160--SCRIPTS-python3 preview

HeartBleed-CVE-2014-0160--SCRIPTS-python3

GitHubihsspotlight/heartbleed-cve-2014-0160--scripts-python3

Python scripts for detecting and exploiting OpenSSL Heartbleed (CVE-2014-0160), leaking sensitive memory contents from vulnerable TLS services.

exploitationnetwork-securityvulnerability-analysis
2 days ago
CVE-2024-24919-Check-Point-Remote-Access-VPN preview

CVE-2024-24919-Check-Point-Remote-Access-VPN

GitHubgraysignal/cve-2024-24919-check-point-remote-access-vpn

Scan for and exploit CVE-2024-24919 in Check Point Security Gateways, an unauthenticated arbitrary file read that can expose credentials and lead to…

exploitationinformation-gatheringnetwork-security+2
12 years ago
DutchOven preview

DutchOven

GitHubloosehose/dutchoven

Application-scoped Windows network brownouts in native C and BOF form

adversarial-attackchaos-engineeringnetwork-security+2
13 days ago
Security_incident_report preview

Security_incident_report

GitHubkevin9480/security_incident_report

React2Shell(CVE-2025-55182) 취약점 기반 침해 시나리오를 재현하고, Wazuh/Sysmon/Coraza WAF 로그로 침해사고를 분석·대응한 DFIR 프로젝트

digital-forensicsincident-responseintrusion-detection+5
4 days ago
Windows-Defender-Security-Auditor-CVE-2026-50656- preview

Windows-Defender-Security-Auditor-CVE-2026-50656-

GitHubeh-amish/windows-defender-security-auditor-cve-2026-50656-

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

configuration-auditingdefensive-toolsincident-response+8
4 days ago
CVE-2023-48795 preview

CVE-2023-48795

GitHubhav0cx0/cve-2023-48795

Scans SSH servers for Terrapin-affected OpenSSH versions by grabbing banners over port 22, enabling quick internal audits, penetration testing, and…

information-gatheringnetwork-securitypenetration-testing+2
1 year ago
CVE-2025-32433-PoC-Analysis preview

CVE-2025-32433-PoC-Analysis

GitHubliam-worsley/cve-2025-32433-poc-analysis

This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

authentication-authorizationeducationexploitation+4
6 days ago
Perform-an-RDP-exploitation-using-the-BlueKeep-vulnerability-CVE-2019-0708-on-Windows preview

Perform-an-RDP-exploitation-using-the-BlueKeep-vulnerability-CVE-2019-0708-on-Windows

GitHubmohaimenul370/perform-an-rdp-exploitation-using-the-bluekeep-vulnerability-cve-2019-0708-on-windows

Step-by-step demonstration of BlueKeep CVE-2019-0708 exploitation against Windows Remote Desktop Services, including RCE via crafted RDP packets and…

exploitationnetwork-securitypenetration-testing+2
6 days ago
HydraDragonAV-Mobile preview

HydraDragonAV-Mobile

GitHubhydradragonantivirus/hydradragonav-mobile

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

android-securitydefensive-toolsdynamic-analysis-sandboxing+6
1311 days ago
threat-finder preview

threat-finder

GitHuboffseq/threat-finder

Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

devsecopsnetwork-securitythreat-intelligence+2
5716 days ago
DShield-SIEM preview

DShield-SIEM

GitHubbruneaug/dshield-siem

DShield Sensor Log Collection with ELK

defensive-toolsincident-responseintrusion-detection+4
505 days ago
Previous12…100Next