Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1035 results
cve-2021-44228 preview

cve-2021-44228

GitHubkimobu/cve-2021-44228

CVE-2021-44228 investigation toolkit with Log4j RCE PoC, JNDIExploit payload runner, Snort detection rules, and PCAP analysis for red and blue team…

exploitationincident-responseintrusion-detection+3
1
4 years ago
APOLOGEE preview
Archived

APOLOGEE

GitHubrosesecurity/apologee

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

authenticationexploitationexploit-frameworks+8
501 year ago
pentest-metasploitable2 preview

pentest-metasploitable2

GitHubemilebarnard242/pentest-metasploitable2

Structured penetration testing lab documenting a full attack chain from network reconnaissance to root exploitation of vsftpd 2.3.4 backdoor, with…

educationexploitationlabs-practice+6
4 months ago
CVE-2024-6387_PoC preview

CVE-2024-6387_PoC

GitHubyassdev221608/cve-2024-6387_poc

Scans and exploits CVE-2024-6387 (regreSSHion) in OpenSSH servers. Features multi-threaded scanning, banner retrieval, grace time detection, and…

exploitationnetwork-securitypenetration-testing+2
171 year ago
G3-Loop-DoS preview

G3-Loop-DoS

GitHubrenancesarr/g3-loop-dos

This Python script automates the process of scanning for systems potentially vulnerable to the Loop DoS attack and the hypothetical CVE-2024-2169…

educationexploitationnetwork-security+2
2 years ago
cve-2018-10933 preview

cve-2018-10933

GitHubhackerhouse-opensource/cve-2018-10933

Docker-based CVE-2018-10933 libssh authentication bypass exploit with patched client for testing SSH server vulnerabilities and unauthorized access…

authenticationcontainer-securityexploitation+3
1107 months ago
FreakVulnChecker preview

FreakVulnChecker

GitHubfelmoltor/freakvulnchecker

This script check if your list of server is accepting Export cipher suites and could be vulnerable to CVE-2015-0204

cryptographynetwork-securitypenetration-testing+1
211 years ago
CVE-2024-40898-SSL-Bypass-Detection preview

CVE-2024-40898-SSL-Bypass-Detection

GitHubforceea001/cve-2024-40898-ssl-bypass-detection

This Python script is a Proof-of-Concept (PoC) scanner for detecting the vulnerability CVE-2024-40898, which affects Apache HTTP Server’s SSL…

exploitationnetwork-securitypenetration-testing+2
21 year ago
MSMQ-Vulnerability preview

MSMQ-Vulnerability

GitHubleongxudong/msmq-vulnerability

Portfolio lab documenting MSMQ vulnerability (CVE-2023-21554) with detection rules, network capture evidence, mitigation planning, and patch…

defensive-toolseducationintrusion-detection+3
52 months ago
HTTP-2-Rapid-Reset-DDos preview

HTTP-2-Rapid-Reset-DDos

GitHubregelepuma/http-2-rapid-reset-ddos

PoC for HTTP/2 Rapid Reset DDoS Vulnerability - CVE-2023-44487

exploitationnetwork-securitypenetration-testing+2
7 months ago
CVE-2022-22536_SAP_Request_Smuggling_Scanner preview

CVE-2022-22536_SAP_Request_Smuggling_Scanner

GitHubabrewer251/cve-2022-22536_sap_request_smuggling_scanner

Fast, socket-level scanner for detecting CVE-2022-22536 in SAP ICM or Web Dispatcher instances. Performs request smuggling tests with a crafted…

exploitationnetwork-securitypenetration-testing+3
10 months ago
CVE-2020-3187-Scanlist preview

CVE-2020-3187-Scanlist

GitHubsunyyer/cve-2020-3187-scanlist

Batch scanning site.

exploitationnetwork-securitypenetration-testing+2
3 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubtam-k592/cve-2024-6387

Recently, the OpenSSH maintainers released security updates to fix a critical vulnerability that could lead to unauthenticated remote code execution…

exploitationinformation-gatheringnetwork-security+3
142 years ago
smbGhostCVE-2020-0796 preview

smbGhostCVE-2020-0796

GitHubadamsonov/smbghostcve-2020-0796

This script will help you to scan for smbGhost vulnerability(CVE-2020-0796)

exploitationinformation-gatheringnetwork-security+2
12 years ago
nuclei preview

nuclei

GitHubprojectdiscovery/nuclei

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

anti-botapi-securityapi-security-testing+21
31.0k3h 40m ago
Nettacker preview

Nettacker

GitHubowasp/nettacker

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

api-securityapi-security-testingdynamic-code-analysis+14
5.5k18h 48m ago
OpenSSL-CCS-Inject-Test preview

OpenSSL-CCS-Inject-Test

GitHubtripwire/openssl-ccs-inject-test

This script is designed for detection of vulnerable servers (CVE-2014-0224.) in a wide range of configurations. It attempts to negotiate using each…

exploitationnetwork-securitypenetration-testing+2
3912 years ago
fortileak-01-2025-Be preview

fortileak-01-2025-Be

GitHubniklasmato/fortileak-01-2025-be

This repository contains informaion about the Fortigate firewall vulnerability (CVE-2022-40684) and affected data that were publicly disclosed by the…

incident-responseinformation-gatheringioc-management+3
1 year ago
Previous123…58Next