Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
47 results
Open-Source-Threat-Intel-Feeds preview

Open-Source-Threat-Intel-Feeds

GitHubbert-janp/open-source-threat-intel-feeds

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such…

intrusion-detectionioc-managementnetwork-security+3
919
4 days ago
opencanary preview

opencanary

GitHubthinkst/opencanary

Low-resource honeypot that emulates common network services to detect post-breach attacker activity, with extensible protocol modules and…

defensive-toolsincident-responseintrusion-detection+3
3.0k16 days ago
ghes-cve-scanner preview

ghes-cve-scanner

GitHubisagoakira/ghes-cve-scanner

Scans GitHub Enterprise Server instances for CVE-2026-3854 and CVE-2026-4821, providing version-based detection with batch scanning and multiple…

cloud-infrastructure-securityconfiguration-auditingdefensive-tools+2
4 months ago
CVE-2025-49844-discovery preview

CVE-2025-49844-discovery

GitHubgopinaath/cve-2025-49844-discovery

Audits AWS ElastiCache Redis/Valkey clusters for network exposure, checking VPC, subnet, and internet gateway routes across multiple accounts and…

cloud-securityconfiguration-auditinginformation-gathering+2
10 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubtrya9ain/cve-2026-24061

Batch scanner for CVE-2026-24061 that scans multiple IPs/CIDRs for vulnerable services, with configurable ports, timeouts, and threading for…

exploitationnetwork-securitypenetration-testing+2
107 months ago
cve-2026-31431-copy-fail preview

cve-2026-31431-copy-fail

GitHubgagaltotal/cve-2026-31431-copy-fail

Automated scanner and patch helper for CVE-2026-31431, detecting vulnerable Linux hosts via SSH, verifying kernel versions, and applying kernel…

configuration-auditingnetwork-securityvulnerability-scanners
23 months ago
certificate-ripper preview

certificate-ripper

GitHubhakky54/certificate-ripper

🔐 A CLI tool to extract server certificates

cryptographygeneral-purpose-utilitiesinformation-gathering+1
9236 days ago
RedCaddy preview

RedCaddy

GitHubxiaolichan/redcaddy

C2 redirector base on caddy

adversarial-attackanti-botcommand-and-control+3
2112 years ago
quicmap preview

quicmap

GitHubbojanisc/quicmap

quicmap is a simple yet quic (!) QUIC protocol scanner

information-gatheringnetwork-mappingnetwork-security+2
902 years ago
CVE-2018-10933_Scanner preview

CVE-2018-10933_Scanner

GitHubpghook/cve-2018-10933_scanner

Scans single or multiple IPs for libssh servers vulnerable to CVE-2018-10933, displaying geolocation of vulnerable hosts.

exploitationinformation-gatheringnetwork-security+2
7 years ago
meteor preview

meteor

GitHubdegenerat3/meteor

A cross-platform C2/teamserver supporting multiple transport protocols, written in Go.

command-and-controlexploit-frameworksnetwork-security+4
453 years ago
proftpd-cve-2019-12815 preview

proftpd-cve-2019-12815

GitHublcartey/proftpd-cve-2019-12815

Exploit for CVE-2019-12815 in ProFTPD 1.3.x, a configurable FTP daemon with virtual users, multiple authentication methods, and modular architecture…

authenticationconfiguration-auditingexploitation+3
6 years ago
apache__mina-sshd_CVE-2023-35887_2-9-2 preview

apache__mina-sshd_CVE-2023-35887_2-9-2

GitHubshoucheng3/apache__mina-sshd_cve-2023-35887_2-9-2

Pure Java SSH client/server library implementing SSH-2 protocol with support for multiple ciphers, key exchanges, authentication methods, SFTP, SCP,…

authenticationcryptographyencryption-decryption-tools+5
1 year ago
Mass-scanner-for-CVE-2019-0708-RDP-RCE-Exploit preview

Mass-scanner-for-CVE-2019-0708-RDP-RCE-Exploit

GitHubdeathstroke-source/mass-scanner-for-cve-2019-0708-rdp-rce-exploit

Scan through given ip list

exploitationnetwork-securitypenetration-testing+2
17 years ago
heartbleed-masstest preview

heartbleed-masstest

GitHubmusalbas/heartbleed-masstest

Multi-threaded tool for scanning many hosts for CVE-2014-0160.

information-gatheringnetwork-securitypenetration-testing+3
57211 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubr4tw1z/cve-2024-6387

This script, created by R4Tw1z, is designed to scan IP addresses to check if they are running a potentially vulnerable version of OpenSSH. The tool…

exploitationinformation-gatheringnetwork-security+3
12 years ago
relay_bible preview

relay_bible

GitHubrootsecdev/relay_bible

Technical Reference to multiple relay techniques

authenticationcurated-resourceseducation+8
1943 months ago
CVE_2023_44487-Rapid_Reset preview

CVE_2023_44487-Rapid_Reset

GitHubmadhusudhan-in/cve_2023_44487-rapid_reset

A comprehensive Python testing tool for CVE-2023-44487, the HTTP/2 Rapid Reset vulnerability. This enhanced version provides granular control over…

exploitationnetwork-securitypenetration-testing+3
11 month ago
Previous123Next