Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
24 results
gonc preview

gonc

GitHubthreatexpert/gonc

Netcat with automated NAT traversal, secure P2P, and advanced features for shell access, file transfer, and network proxying.

command-and-controldata-exfiltrationencryption-decryption-tools+6
730
2 months ago
Terrminus-CVE-2026-2406 preview

Terrminus-CVE-2026-2406

GitHubridpath/terrminus-cve-2026-2406

AsyncIO Scanner & Exploitation Framework for CVE-2026-24061 (Telnet NEW_ENVIRON Auth Bypass). Features high-concurrency discovery, passive…

exploitationinformation-gatheringiot-security+8
27 months ago
CVE-2026-24061-POC preview

CVE-2026-24061-POC

GitHubjayglxr/cve-2026-24061-poc

Proof-of-concept exploit for CVE-2026-24061, a critical remote authentication bypass in GNU inetutils-telnetd via crafted NEW_ENVIRON USER variable,…

authenticationexploitationnetwork-security+3
688 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubprzemytn/cve-2026-24061

Proof-of-concept exploit for CVE-2026-24061, a telnetd authentication bypass via argument injection in the USER environment variable, allowing…

authenticationexploitationnetwork-security+3
6 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubmr-zapi/cve-2026-24061

Nuclei template for detecting CVE-2026-24061, a critical telnet argument injection in GNU inetutils telnetd allowing unauthenticated root access.

educationexploitationnetwork-security+3
18 months ago
bitbang-cli preview

bitbang-cli

GitHubrichlegrand/bitbang-cli

Establish secure remote access to a machine with interactive shell, file transfer, and web proxy over end-to-end encrypted peer-to-peer WebRTC, using…

network-securitypenetration-testingpost-exploitation+3
3564 days ago
OVSwrap-CVE-2026-64531-Mitigation-Tool preview

OVSwrap-CVE-2026-64531-Mitigation-Tool

GitHubmahfuzreham/ovswrap-cve-2026-64531-mitigation-tool

Shell script that detects vulnerable Open vSwitch kernel modules, blocks automatic loading, removes the affected module, and verifies mitigation…

configuration-auditingdefensive-toolsnetwork-security+1
21 month ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubchocapikk/cve-2026-24061

Proof-of-concept exploit for GNU Inetutils telnetd authentication bypass (CVE-2026-24061) with Docker lab setup and Go PoC. Exploits NEW-ENVIRON…

authentication-authorizationeducationexploitation+4
128 months ago
agentsh preview

agentsh

GitHubcanyonroad/agentsh

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

ai-securityauthentication-authorizationcloud-security+7
38611 days ago
CVE-2018-10933-libSSH-Authentication-Bypass preview

CVE-2018-10933-libSSH-Authentication-Bypass

GitHublikekabin/cve-2018-10933-libssh-authentication-bypass

Exploit tool for CVE-2018-10933 libSSH authentication bypass, enabling remote shell access without credentials using Python scripts and optional fake…

authenticationexploitationnetwork-security+3
17 years ago
POC-CVE-2020-0796 preview

POC-CVE-2020-0796

GitHubhungdnvp/poc-cve-2020-0796

Proof-of-concept exploit for CVE-2020-0796 (SMBGhost) targeting Windows 10/Server SMBv3.1.1. Includes Nmap reconnaissance, vulnerability scanning,…

exploitationnetwork-securitypenetration-testing+3
2 years ago
AgentGuard preview

AgentGuard

GitHubthodoristsampouris/agentguard

Zero-trust sandbox for AI agents with kernel-level filesystem jail, transparent network proxy, and YAML-based policy engine to intercept and control…

ai-securitycontainer-securitydefensive-tools+2
86 months ago
BPFDoor-controller-source preview

BPFDoor-controller-source

GitHubhaxrob/bpfdoor-controller-source

Source code for a BPFDoor backdoor controller supporting TCP, UDP, ICMP, and HTTPS covert communication channels with magic packet activation,…

command-and-controlexploitationmalware-analysis+4
156 months ago
FREAK-Attack-CVE-2015-0204-Testing-Script preview

FREAK-Attack-CVE-2015-0204-Testing-Script

GitHubabhishekghosh/freak-attack-cve-2015-0204-testing-script

Basic BASH Script to Automate OpenSSL based testing for FREAK Attack (CVE-2015-0204) as advised by Akamai.

network-securitypenetration-testingscripting-automation+1
511 years ago
hatiyar preview

hatiyar

GitHubajutamangdev/hatiyar

Modular penetration testing framework with a Metasploit-like interactive shell, pre-built CVE exploit modules, and cloud/network reconnaissance…

cloud-securityeducationexploit-frameworks+5
2310 months ago
morpheus preview

morpheus

GitHubr00t-3xp10it/morpheus

Morpheus - Automating Ettercap TCP/IP (MITM-hijacking Tool)

exploitationids-ips-evasioninformation-gathering+7
8847 years ago
lynis preview

lynis

GitHubcisofy/lynis

Agentless security auditing tool for Linux, macOS, and UNIX systems. Performs in-depth scans for vulnerabilities, configuration issues, and…

configuration-auditingdatabase-securitydefensive-tools+5
16.4k10 days ago
pi-hole preview

pi-hole

GitHubpi-hole/pi-hole

A black hole for Internet advertisements

dns-analysisnetwork-securityprivacy+1
61.1k2 months ago
Previous12Next