Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
260 results
pomerium preview

pomerium

GitHubpomerium/pomerium

Identity-aware reverse proxy that delivers zero-trust access to internal apps and services via context-aware policy, continuous verification, and no…

authenticationauthentication-authorizationcloud-security+6
5.0k
15h 44m ago
ziti preview

ziti

GitHubopenziti/ziti

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

api-securityauthentication-authorizationcloud-security+7
4.4k19h 35m ago
oathkeeper preview

oathkeeper

GitHubory/oathkeeper

A cloud native Identity & Access Proxy / API (IAP) and Access Control Decision API that authenticates, authorizes, and mutates incoming HTTP(s)…

api-securityauthenticationauthentication-authorization+5
3.6k1 month ago
safenet-soho-security-framework preview

safenet-soho-security-framework

GitHubalvin-alvo/safenet-soho-security-framework

A lightweight, policy-driven framework that brings Zero-Trust micro-segmentation to SOHO networks using WireGuard.

authentication-authorizationcloud-infrastructure-securityencryption-decryption-tools+1
25 months ago
Fireaway preview

Fireaway

GitHubtcstool/fireaway

Next Generation Firewall Audit and Bypass Tool

data-exfiltrationids-ips-evasionnetwork-security+1
2679 years ago
CVE-2026-6060-QUIC-Handshake-Amplification-via-Address-Validation-Bypass preview

CVE-2026-6060-QUIC-Handshake-Amplification-via-Address-Validation-Bypass

GitHubgeorge0papasotiriou/cve-2026-6060-quic-handshake-amplification-via-address-validation-bypass

Educational Python PoC for a QUIC address-validation bypass that triggers handshake amplification, including vulnerable server simulation and attack…

adversarial-attackeducationexploitation+2
1 month ago
Cisco-SNMP-Slap preview

Cisco-SNMP-Slap

GitHubnccgroup/cisco-snmp-slap

IP spoofing and SNMP community string brute-forcing tool to bypass ACLs on Cisco IOS devices, exfiltrate configuration files via TFTP.

exploitationinformation-gatheringnetwork-security+4
5911 years ago
CVE-2026-20127 preview

CVE-2026-20127

GitHubsfewer-r7/cve-2026-20127

Exploit for Cisco Catalyst SD-WAN Controller authentication bypass (CVE-2026-20127) that forges DTLS CHALLENGE_ACK_ACK messages to gain unauthorized…

authenticationexploitationnetwork-security+3
245 months ago
ssct preview

ssct

GitHubwanjunzh/ssct

A wrapper tool for shadowsocks to consistently bypass firewalls.

encryption-decryption-toolsnetwork-security
808 years ago
CVE-2026-0257-PoC preview

CVE-2026-0257-PoC

GitHubakashsingh0454/cve-2026-0257-poc

Passive, read-only remote detection tool for CVE-2026-0257, an authentication bypass in Palo Alto Networks PAN-OS GlobalProtect. Fingerprints PAN-OS…

information-gatheringnetwork-securitypenetration-testing+3
23 months ago
Fortinet-CVE-2022-40684 preview

Fortinet-CVE-2022-40684

GitHubjsongmax/fortinet-cve-2022-40684

Go-based exploit tool for CVE-2022-40684 (Fortinet authentication bypass). Automates SSH key injection for authorized penetration testing and…

exploitationnetwork-securitypenetration-testing+3
23 years ago
CVE-2018-10933-libSSH-Authentication-Bypass preview

CVE-2018-10933-libSSH-Authentication-Bypass

GitHublikekabin/cve-2018-10933-libssh-authentication-bypass

Exploit tool for CVE-2018-10933 libSSH authentication bypass, enabling remote shell access without credentials using Python scripts and optional fake…

authenticationexploitationnetwork-security+3
17 years ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubbuzz075/cve-2026-24061

Deep technical analysis and scanner for CVE-2026-24061, a critical authentication bypass in GNU InetUtils telnetd, including exploit chain, PoC, and…

authenticationexploitationnetwork-security+2
7 months ago
cups-script-final-project preview

cups-script-final-project

GitHubaniruddh-bhandarkar/cups-script-final-project

Custom script to showcase the novel contribution to CVE-2025-58060

authenticationnetwork-securitypenetration-testing+3
4 months ago
tscan preview

tscan

GitHubcumakurt/tscan

Python-based scanner that detects and exploits CVE-2026-24061 telnetd authentication bypass, enabling root shell access on vulnerable GNU Inetutils…

educationexploitationnetwork-security+4
17 months ago
ByeDPIAndroid preview

ByeDPIAndroid

GitHubdovecoteescapee/byedpiandroid

Android VPN-based local proxy that bypasses Deep Packet Inspection (DPI) and censorship by redirecting all traffic through a SOCKS5 tunnel without…

dns-analysisids-ips-evasionnetwork-security+2
5.5k1 year ago
TelnetdBypass- preview

TelnetdBypass-

GitHubahmadsadeeq/telnetdbypass-

CVE-2026-24061 — GNU InetUtils Telnetd Authentication Bypass Scanner

authenticationexploitationinformation-gathering+3
3 months ago
SecuraBV-CVE-2020-1472 preview

SecuraBV-CVE-2020-1472

GitHubfa1c0n35/securabv-cve-2020-1472

Python script using Impacket to test for the Zerologon vulnerability (CVE-2020-1472) by attempting Netlogon authentication bypass on Domain…

authenticationexploitationnetwork-security+2
15 years ago
Previous123…15Next