Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
34 results
puppet-os-hardening preview

puppet-os-hardening

GitHubdev-sec/puppet-os-hardening

This puppet module provides numerous security-related configurations, providing all-round base protection.

authenticationcloud-infrastructure-securityconfiguration-auditing+3
291
11 days ago
puppet-ssh-hardening preview

puppet-ssh-hardening

GitHubdev-sec/puppet-ssh-hardening

This puppet module provides secure ssh-client and ssh-server configurations.

authenticationcloud-infrastructure-securityconfiguration-auditing+2
602 years ago
WSUSResponder preview

WSUSResponder

GitHubradzarr/wsusresponder

Module PowerShell de réponse à l'incident CVE-2025-59287 — WSUS Remote Code Execution (RCE)

cloud-infrastructure-securityconfiguration-auditingincident-response+2
11 months ago
CVE-2026-43284-CVE-2026-43500-scan preview

CVE-2026-43284-CVE-2026-43500-scan

GitHubgagaltotal/cve-2026-43284-cve-2026-43500-scan

Automated SSH-based scanner and patcher for Linux kernel LPE vulnerabilities CVE-2026-43284 and CVE-2026-43500, with multi-host discovery, privilege…

configuration-auditingexploitationincident-response+3
14 months ago
OVSwrap-CVE-2026-64531-Mitigation-Tool preview

OVSwrap-CVE-2026-64531-Mitigation-Tool

GitHubmahfuzreham/ovswrap-cve-2026-64531-mitigation-tool

Shell script that detects vulnerable Open vSwitch kernel modules, blocks automatic loading, removes the affected module, and verifies mitigation…

configuration-auditingdefensive-toolsnetwork-security+1
21 month ago
BadSamba preview

BadSamba

GitHubstrozfriedberg/badsamba

This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.

exploitationlateral-movementnetwork-security+3
226 years ago
yamcs__yamcs_CVE-2023-45277_5-8-6 preview

yamcs__yamcs_CVE-2023-45277_5-8-6

GitHubshoucheng3/yamcs__yamcs_cve-2023-45277_5-8-6

Java-based mission control framework with YAML configuration, supporting telemetry, commanding, and simulation for spacecraft operations. Includes…

configuration-auditingexploitationnetwork-security+3
1 year ago
EvilSunCheck preview

EvilSunCheck

GitHubfrompartsunknown/evilsuncheck

This is a little Python script to detect the "EvilSun" vulnerability (CVE-2020-14871) on Solaris systems. The vulnerability is a buffer overflow in…

authenticationexploitationnetwork-security+2
1 year ago
Detection-and-Mitigation-for-CVE-2022-2639 preview

Detection-and-Mitigation-for-CVE-2022-2639

GitHubekamsinghwalia/detection-and-mitigation-for-cve-2022-2639

Shell script to detect and mitigate CVE-2022-2639 in Open vSwitch kernel module. Checks module status, provides remediation steps, and recommends…

educationexploitationmisconfiguration+3
3 years ago
detect_bluekeep.py preview

detect_bluekeep.py

GitHubhynekpetrak/detect_bluekeep.py

Python script to detect bluekeep vulnerability (CVE-2019-0708) with TLS/SSL and x509 support

exploitationnetwork-securitypenetration-testing+3
277 years ago
CVE-2026-42530 preview

CVE-2026-42530

GitHubv4ltonn/cve-2026-42530

Scanner PoC for CVE-2026-42530 -- nginx 1.31.0-1.31.1 HTTP/3 QPACK encoder stream Use-After-Free (CVSS 9.2)

exploitationfuzzingnetwork-security+2
53 months ago
CVE-2025-26466-msf preview

CVE-2025-26466-msf

GitHubmrowkoob/cve-2025-26466-msf

CVE-2025-26466 - SSH Ping DoS Ruby module for Metasploit Framework

educationexploit-frameworksnetwork-security+2
1 year ago
Bluekeep-Hunter preview

Bluekeep-Hunter

GitHubravaan21/bluekeep-hunter

CVE-2019-0708, A tool which mass hunts for bluekeep vulnerability for exploitation.

exploitationexploit-frameworksnetwork-security+3
43 years ago
cve-2019-11477-poc preview

cve-2019-11477-poc

GitHubsasqwatch/cve-2019-11477-poc

Proof-of-concept exploit for CVE-2019-11477, demonstrating a denial-of-service attack against Linux kernel TCP SACK panic via crafted netfilter…

exploitationnetwork-securitypenetration-testing+2
87 years ago
PasswordsSniffer preview

PasswordsSniffer

GitHubmauricelambert/passwordssniffer

This module sniff username and password of unprotected protocols.

information-gatheringnetwork-securitypacket-sniffing-analysis+2
95 years ago
ParrotSec-Linux-Hardening-Project preview

ParrotSec-Linux-Hardening-Project

GitLabxe1phix/parrotlinux-public-kiosk-project

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

configuration-auditingdigital-forensicsforensics+3
31 month ago
CVE-2020-0796 preview

CVE-2020-0796

GitHubjulixsalas/cve-2020-0796

Metasploit Auxiliary module for scanning and detecting CVE-2020-0796 (SMBGhost) vulnerability in Windows SMBv3 implementations.

exploitationexploit-frameworksnetwork-security+3
14 years ago
nginx-rift-detect preview

nginx-rift-detect

GitHubiammerrida-source/nginx-rift-detect

Behavioral detection script for CVE-2026-42945 (NGINX Rift) — heap overflow in ngx_http_rewrite_module. No RCE, crash-based detection only.

exploitationinformation-gatheringnetwork-security+3
44 months ago
Previous12Next