Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
178 results
cpanelscanner preview

cpanelscanner

GitHub0dev1337/cpanelscanner

Scans internet-exposed cPanel/WHM instances for CVE-2026-41940 authentication bypass, probing HTTPS on port 2087 and matching response markers to…

network-securitypenetration-testingreconnaissance+2
14 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubtiborscholtz/cve-2026-24061

Educational Docker lab demonstrating Telnet NEW-ENVIRON username injection (CVE-2026-24061) with a Python client and vulnerable server for isolated…

educationexploitationlabs-practice+2
6 months ago
Twenty-Three-Scanner preview

Twenty-Three-Scanner

GitHubmadfxr/twenty-three-scanner

CVE-2026-24061 - GNU InetUtils Telnetd Remote Authentication Bypass

exploitationinformation-gatheringnetwork-security+3
47 months ago
CVE-2026-39987 preview

CVE-2026-39987

GitHubkeraattin/cve-2026-39987

Detection and exploitation toolkit for CVE-2026-39987, a pre-auth RCE in Marimo notebooks. Includes Python scanner and Nmap NSE script to identify…

exploitationinformation-gatheringnetwork-security+5
14 months ago
CVE-2026-35616 preview

CVE-2026-35616

GitHubkeraattin/cve-2026-35616

Detection toolkit for CVE-2026-35616, a pre-authentication API bypass in FortiClient EMS. Includes Python scanner and Nmap NSE script for identifying…

authenticationexploitationinformation-gathering+5
14 months ago
CVE-2025-55315-Scanner-Monitor preview

CVE-2025-55315-Scanner-Monitor

GitHubjlinebau/cve-2025-55315-scanner-monitor

Quick and Simple Scripts to Scan for Vulnerable Servers and Packet Level Monitors

educationnetwork-securitypacket-sniffing-analysis+3
210 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubinfat0x/cve-2026-24061

Proof-of-concept exploit for Telnet NEW-ENVIRON authentication bypass vulnerability (CVE-2026-24061). Allows unauthorized access to vulnerable Telnet…

exploitationnetwork-securitypenetration-testing+2
17 months ago
CVE-2025-49844-Vulnerability-Scanner preview

CVE-2025-49844-Vulnerability-Scanner

GitHubimbas007/cve-2025-49844-vulnerability-scanner

Scans Redis instances for CVE-2025-49844 (RediShell) critical RCE vulnerability, detecting vulnerable versions and Lua scripting status with…

exploitationnetwork-securitypenetration-testing+3
110 months ago
Samba-CVE-2021-44142 preview

Samba-CVE-2021-44142

GitHubhrsman/samba-cve-2021-44142

Python tool to check Samba servers for CVE-2021-44142 by leaking heap cookies and pointers via a single SMB connection, demonstrating exploitability.

exploitationnetwork-securitypenetration-testing+2
4 years ago
Metabase_Nmap_Script preview

Metabase_Nmap_Script

GitHubgrey-master-a/metabase_nmap_script

It is a nmap script for metabase vulnerability (CVE-2021-41277)

exploitationinformation-gatheringnetwork-security+2
4 years ago
GravCMS_Nmap_Script preview

GravCMS_Nmap_Script

GitHubgrey-master-a/gravcms_nmap_script

It is a nmap script for GravCMS vulnerability (CVE-2021-21425)

exploitationnetwork-securitypenetration-testing+2
4 years ago
CVE-2026-35616-detector.py preview

CVE-2026-35616-detector.py

GitHubfevar54/cve-2026-35616-detector.py

Detector de CVE-2026-35616: identifica servidores FortiClient EMS vulnerables (7.4.5-7.4.6).

api-securitynetwork-securitypenetration-testing+2
4 months ago
CVE-2021-42392-Detect preview

CVE-2021-42392-Detect

GitHubcybersecurityworks553/cve-2021-42392-detect

Scans a list of IPs to detect vulnerable H2 database consoles, identifying web pages and checking access restrictions for CVE-2021-42392.

information-gatheringnetwork-securitypenetration-testing+2
74 years ago
tscan preview

tscan

GitHubcumakurt/tscan

Python-based scanner that detects and exploits CVE-2026-24061 telnetd authentication bypass, enabling root shell access on vulnerable GNU Inetutils…

educationexploitationnetwork-security+4
17 months ago
CVE-2023-46805 preview

CVE-2023-46805

GitHubcbeek-r7/cve-2023-46805

Simple scanner for scanning a list of ip-addresses for vulnerable Ivanti Pulse Secure devices

exploitationinformation-gatheringnetwork-security+2
52 years ago
CVE-2024-49113-Checker preview

CVE-2024-49113-Checker

GitHubbarcrange/cve-2024-49113-checker

Checks if a system is potentially vulnerable to CVE-2024-49113 (LDAP Nightmare) by testing RPC connectivity, LDAP ports, Netlogon service, and LDAP…

information-gatheringnetwork-securitypenetration-testing+2
101 year ago
cpanel2shell-honeypot preview

cpanel2shell-honeypot

GitHubacuciureanu/cpanel2shell-honeypot

A Rust honeypot that simulates a vulnerable cPanel/WHM instance for CVE-2026-41940

network-securitythreat-intelligencevulnerability-analysis+1
3 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubtrya9ain/cve-2026-24061

Batch scanner for CVE-2026-24061 that scans multiple IPs/CIDRs for vulnerable services, with configurable ports, timeouts, and threading for…

exploitationnetwork-securitypenetration-testing+2
97 months ago
Previous12…10Next