Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
49 results
sshconfig-lint preview

sshconfig-lint

GitHubnoah4ever/sshconfig-lint

Rule-based linter for OpenSSH client config files that detects duplicate hosts, missing identity files, weak algorithms, wildcard ordering issues,…

code-analysisconfiguration-auditingdevsecops+3
16
5 months ago
vsaudit preview

vsaudit

GitHubociredefz/vsaudit

VOIP Security Audit Framework

exploitationnetwork-securitypenetration-testing+1
1098 years ago
sshfinder preview

sshfinder

GitHubkabiri-labs/sshfinder

Parallel SSH service discovery and security auditor that scans any port, validates SSH banners, and audits authentication methods, weak cryptography,…

cryptographyinformation-gatheringnetwork-security+5
321 days ago
copyfailscan preview

copyfailscan

GitHubmonobrau/copyfailscan

SSH posture helper for CVE-2026-31431 (Copy Fail): kernel and algif_aead inventory

information-gatheringnetwork-securitypenetration-testing+3
2 months ago
arp-validator preview

arp-validator

GitHubrnehra01/arp-validator

Security Tool to detect arp poisoning attacks

defensive-toolsintrusion-detectionnetwork-security+1
548 years ago
ssh-auditor preview

ssh-auditor

GitHubncsa/ssh-auditor

The best way to scan for weak ssh passwords on your network

network-securitypassword-attacksvulnerability-scanners
6205 years ago
netfence preview

netfence

GitHubdanthegoodman1/netfence

Like Envoy xDS, but for eBPF filters

cloud-infrastructure-securitycloud-securitycontainer-security+5
1011 month ago
eavesarp preview

eavesarp

GitHubimpostorkeanu/eavesarp

Analyze ARP requests to identify intercommunicating hosts and stale network address configurations (SNACs)

dns-analysisinformation-gatheringnetwork-security+2
684 years ago
hunt-for-cve-2018-10933 preview
Archived

hunt-for-cve-2018-10933

GitHubmarco-lancini/hunt-for-cve-2018-10933

Hunt for and Exploit the libSSH Authentication Bypass (CVE-2018-10933)

educationexploitationnetwork-security+3
107 years ago
fail2ban preview

fail2ban

GitHubfail2ban/fail2ban

Daemon to ban hosts that cause multiple authentication errors

defensive-toolsintrusion-detectionlog-analysis+1
18.4k0 days ago
imaginaryC2 preview

imaginaryC2

GitHubfelixweyne/imaginaryc2

Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which captures…

command-and-controldigital-forensicsdynamic-analysis-sandboxing+5
4463 years ago
libssh-scanner preview

libssh-scanner

GitHubjobroche/libssh-scanner

Script to identify hosts vulnerable to CVE-2018-10933

exploitationnetwork-securityvulnerability-scanners
2357 years ago
cornershot preview

cornershot

GitHubzeronetworks/cornershot

Amplify network visibility from multiple POV of other hosts

information-gatheringnetwork-securitypenetration-testing+2
3112 years ago
smbcrawler preview

smbcrawler

GitHubsyss-research/smbcrawler

smbcrawler is no-nonsense tool that takes credentials and a list of hosts and 'crawls' (or 'spiders') through those shares

data-exfiltrationinformation-gatheringnetwork-security+3
1899 months ago
nacker preview

nacker

GitHubcarmaa/nacker

Nacker is a tool to circumvent 802.1x Network Access Control (NAC) on a wired LAN. Nacker will help you locate any non-802.1x configurable hosts on…

network-access-controlnetwork-securitypenetration-testing+2
10411 years ago
CVE-2022-1388-checker preview

CVE-2022-1388-checker

GitHubjheeree/cve-2022-1388-checker

Simple script realizado en bash, para revisión de múltiples hosts para CVE-2022-1388 (F5)

exploitationnetwork-securitypenetration-testing+3
254 years ago
sshroute preview

sshroute

GitHubthereisnotime/sshroute

Network-aware SSH router - routes connections to different IPs/ports/keys/jump hosts based on active VPN or network

general-purpose-utilitiesnetwork-securityscripting-automation+1
201 day ago
log4j-quick-scan preview

log4j-quick-scan

GitHubmetodidavidovic/log4j-quick-scan

Scan your IP network and determine hosts with possible CVE-2021-44228 vulnerability in log4j library.

exploitationinformation-gatheringnetwork-security+3
4 years ago
Previous123Next