Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
CVE-2026-100740 preview

CVE-2026-100740

GitHubmurrez/cve-2026-100740

Python PoC for CVE-2026-100740, an L2TP Host Name AVP out-of-bounds write in D-Link DIR-895L A1_102b07 tunnel_set_params. Fingerprints the device and…

embedded-systems-securityexploitationfirmware-analysis+6
1
12 days ago
DShield-SIEM preview

DShield-SIEM

GitHubbruneaug/dshield-siem

DShield Sensor Log Collection with ELK

defensive-toolsincident-responseintrusion-detection+4
501 month ago
pyrmax preview

pyrmax

GitHubinfobyte/pyrmax

Decoder/encoder for Ubiquiti AirMAX wireless protocol frames; parse pcap/live captures, discover devices, scan for vulnerable firmware, craft…

fuzzingnetwork-securityreverse-engineering+2
122 months ago
wiremax preview

wiremax

GitHubinfobyte/wiremax

Lua-based Wireshark postdissector that decrypts and parses Ubiquiti AirMAX/RouterBoard 802.11 vendor IEs into filterable fields.

forensicsgeneral-purpose-utilitiesnetwork-security+2
102 months ago
CVE-2026-23002-5G-NAS-Message-Buffer-Overflow-in-gNodeB preview

CVE-2026-23002-5G-NAS-Message-Buffer-Overflow-in-gNodeB

GitHubgeorge0papasotiriou/cve-2026-23002-5g-nas-message-buffer-overflow-in-gnodeb

Simulated 5G gNodeB NAS parser with stack buffer overflow PoC for CVE-2026-23002; a crafted NAS message triggers remote code execution.

binary-exploitationembedded-systems-securityexploitation+2
2 months ago
zeek-openvpn preview

zeek-openvpn

GitHubcorelight/zeek-openvpn

A Zeek OpenVPN protocol analyzer plugin.

defensive-toolsinformation-gatheringintrusion-detection+3
73 years ago
zeek-quic preview

zeek-quic

GitHubcorelight/zeek-quic

Bro analyzer that detects Google's QUIC protocol

intrusion-detectionlog-analysisnetwork-forensics+2
125 years ago
CorelightForSecOps preview

CorelightForSecOps

GitHubcorelight/corelightforsecops

Chronicle parser for CORELIGHT and related information.

cloud-securitydefensive-toolsintrusion-detection+3
54 months ago
FuzzAP preview

FuzzAP

GitHubplantdaddy/fuzzap

A python script for obfuscating wireless networks

ids-ips-evasionnetwork-securitypenetration-testing+3
809 years ago
chapcrack preview

chapcrack

GitHubmoxie0/chapcrack

Parses and decrypts MS-CHAPv2 handshakes from PPTP VPN and WPA2 Enterprise captures, extracting credentials for offline cracking via CloudCracker.

encryption-decryption-toolsnetwork-securitypacket-sniffing-analysis+3
38514 years ago
SSH-Terrapin-Prefix-Truncation-Weakness-CVE-2023-48795-Checker preview

SSH-Terrapin-Prefix-Truncation-Weakness-CVE-2023-48795-Checker

GitHubmr-whiskerss/ssh-terrapin-prefix-truncation-weakness-cve-2023-48795-checker

Lightweight Python scanner for CVE-2023-48795 (SSH Terrapin prefix truncation). Performs passive banner grab and KEXINIT parse to detect vulnerable…

exploitationinformation-gatheringnetwork-security+3
14 months ago
CVE-2025-20352 preview

CVE-2025-20352

GitHubscadastrangelove/cve-2025-20352

CVE-2025-20352 SNMP Exposure Check (onesixtyone + parser)

configuration-auditinginformation-gatheringnetwork-security+2
71 year ago
FencePost preview

FencePost

GitHubseriocomic/fencepost

Multi-host UFW firewall dashboard — explains rules in plain English, detects security gaps, and provides connection diagnostics

cloud-securityconfiguration-auditingcontainer-security+6
26 months ago
clawpatrol preview

clawpatrol

GitHubdenoland/clawpatrol

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

api-securityapi-security-testingcloud-security+6
1.1k6 days ago
Heartbleed-PoC-Exploit-Script preview

Heartbleed-PoC-Exploit-Script

GitHubindrajeetmp11/heartbleed-poc-exploit-script

This Python PoC script detects the Heartbleed vulnerability (CVE-2014-0160) by performing a TLS handshake with heartbeat extension and sending a…

cryptographyeducationexploitation+3
210 months ago
cve-2018-15473 preview

cve-2018-15473

GitHubepi052/cve-2018-15473

Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473

exploitationinformation-gatheringnetwork-security+3
1177 years ago
citrix-logchecker preview

citrix-logchecker

GitHubcertat/citrix-logchecker

Parse citrix netscaler logs to check for signs of CVE-2023-4966 exploitation

incident-responselog-analysisnetwork-security+3
52 years ago
PoC-CVE-2018-15473 preview

PoC-CVE-2018-15473

GitHubsudorm0x/poc-cve-2018-15473

FAFAF

exploitationinformation-gatheringnetwork-security+3
1 year ago
Previous12Next