Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
HTTP3-Adapter preview

HTTP3-Adapter

GitHubt0xodile-swig/http3-adapter

Burp Suite extension that intercepts requests and sends them over HTTP/3, converting responses back for Burp, with support for kettled requests and…

api-security-testingnetwork-securitypenetration-testing+3
1
18 days ago
CVE-2024-6387_PoC preview

CVE-2024-6387_PoC

GitHubyassdev221608/cve-2024-6387_poc

Scans and exploits CVE-2024-6387 (regreSSHion) in OpenSSH servers. Features multi-threaded scanning, banner retrieval, grace time detection, and…

exploitationnetwork-securitypenetration-testing+2
161 year ago
CVE-2026-33827 preview

CVE-2026-33827

GitHubkaleth4/cve-2026-33827

Technical analysis of CVE-2026-33827, a critical Windows TCP/IP RCE via race condition in IPv6/IPSec, including exploitation techniques, mitigation…

educationexploitationnetwork-security+1
25 months ago
mailinabox preview

mailinabox

GitHubmail-in-a-box/mailinabox

Mail-in-a-Box helps individuals take back control of their email by defining a one-click, easy-to-deploy SMTP+everything else server: a mail server…

configuration-auditingdefensive-toolsemail-security+3
15.4k7 days ago
canarytokens-docker preview

canarytokens-docker

GitHubthinkst/canarytokens-docker

Docker configuration to quickly setup your own Canarytokens.

defensive-toolsincident-responseintrusion-detection+1
6712 months ago
SharpNTLMRawUnHide preview

SharpNTLMRawUnHide

GitHubx-c3ll/sharpntlmrawunhide

C# version of NTLMRawUnHide

hash-analysisnetwork-securitypacket-sniffing-analysis+2
723 years ago
canarytokens preview

canarytokens

GitHubthinkst/canarytokens

Canarytokens helps track activity and actions on your network

anomaly-detectiondefensive-toolsincident-response+2
2.2k10 days ago
project_mantis preview

project_mantis

GitHubpasquini-dario/project_mantis

Project Mantis: Hacking Back the AI-Hacker; Prompt Injection as a Defense Against LLM-driven Cyberattacks

adversarial-attackai-securitynetwork-security+4
1242 months ago
buttinsky preview

buttinsky

GitHubmushorg/buttinsky

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

information-gatheringintrusion-detectionmalware-analysis+2
8213 years ago
proxychains-ng preview

proxychains-ng

GitHubrofl0r/proxychains-ng

proxychains ng (new generation) - a preloader which hooks calls to sockets in dynamically linked programs and redirects it through one or more…

command-and-controldata-exfiltrationgeneral-purpose-utilities+6
10.7k1 month ago
AnySniff preview

AnySniff

GitHubmkultra6969/anysniff

AnySniff is a tool for monitoring TCP connections of processes like AnyDesk on Windows. It uses the CVE-2024-52940 vulnerability to track open…

exploitationinformation-gatheringnetwork-security+3
41 year ago
CVE-2024-6387_Check preview

CVE-2024-6387_Check

GitHubsardine-web/cve-2024-6387_check

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead to sshd to handle some…

exploitationnetwork-securitypenetration-testing+2
2 years ago
cve-2019-11477-poc preview

cve-2019-11477-poc

GitHubsasqwatch/cve-2019-11477-poc

Proof-of-concept exploit for CVE-2019-11477, demonstrating a denial-of-service attack against Linux kernel TCP SACK panic via crafted netfilter…

exploitationnetwork-securitypenetration-testing+2
87 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubgrupooruss/cve-2024-6387

Python script to scan and secure SSH configurations against the CVE-2024-6387 race condition vulnerability, with automated LoginGraceTime adjustment…

configuration-auditingnetwork-securitypenetration-testing+3
22 years ago
snmpvlan preview

snmpvlan

GitHubehabhussein/snmpvlan

SNMP scanner and brute-forcer targeting Cisco Nexus switches (5000/6000) to exploit CVE-2014-3341, enumerate VLANs, crack SNMP community strings, and…

configuration-auditingexploitationnetwork-security+2
411 years ago
chackd preview

chackd

GitHubbplinux/chackd

Daemon to randomize tcp_challenge_ack_limit to prevent side channel attacks CVE-2016-5696

anomaly-detectionconfiguration-auditingdefensive-tools+2
210 years ago
CVE-2024-42657 preview

CVE-2024-42657

GitHubbaroi-ai/cve-2024-42657

CVE-2024-42657 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the lack of…

exploitationinformation-gatheringnetwork-security+3
12 years ago
Exploiting-a-vulnerability-using-reverse-shell preview

Exploiting-a-vulnerability-using-reverse-shell

GitHubdampedcoast/exploiting-a-vulnerability-using-reverse-shell

This project simulates a real-world attack-and-defend scenario across two virtual machines. You will exploit a critical pre-authentication RCE…

ctfeducationexploitation+5
3 months ago
Previous12Next