Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
85 results
cs2modrewrite preview

cs2modrewrite

GitHubthreatexpress/cs2modrewrite

Convert Cobalt Strike profiles to modrewrite scripts

command-and-controlids-ips-evasionnetwork-security+3
607
3 years ago
mitmAP preview
Archived

mitmAP

GitHubxdavidhu/mitmap

📡 A python program to create a fake AP and sniff data.

dns-analysiseducationnetwork-security+6
1.7k6 years ago
cmdchamp preview

cmdchamp

GitHubmellen9999/cmdchamp

bash CLI trainer — 30 levels from ls to privilege escalation

ctfeducationforensics+8
126 days ago
SuperMicro-Password-Scanner preview

SuperMicro-Password-Scanner

GitHub1n3/supermicro-password-scanner

Supermicro IPMI/BMC Cleartext Password Scanner

hardware-iot-securityinformation-gatheringmisconfiguration+3
4210 years ago
http-protocol-exfil preview

http-protocol-exfil

GitHubricardojoserf/http-protocol-exfil

Exfiltrate files using the HTTP protocol version ("HTTP/1.0" is a 0 and "HTTP/1.1" is a 1)

data-exfiltrationnetwork-security
244 years ago
cisco-sa-sma-attack-N9bf4 preview

cisco-sa-sma-attack-N9bf4

GitHubstasonjatham/cisco-sa-sma-attack-n9bf4

Script to detect CVE-2025-20393 for Cisco Secure Email Gateway And Cisco Secure Email and Web Manager

exploitationinformation-gatheringnetwork-security+3
218 months ago
Re2Pcap preview

Re2Pcap

GitHubcisco-talos/re2pcap

Convert raw HTTP requests/responses into PCAP files for testing Snort IDS rules and network security analysis. Supports Docker deployment and…

ids-ips-evasionnetwork-securitypacket-sniffing-analysis+1
595 years ago
bitbang-cli preview

bitbang-cli

GitHubrichlegrand/bitbang-cli

Establish secure remote access to a machine with interactive shell, file transfer, and web proxy over end-to-end encrypted peer-to-peer WebRTC, using…

network-securitypenetration-testingpost-exploitation+3
3149 days ago
AgentGuard preview

AgentGuard

GitHubthodoristsampouris/agentguard

Zero-trust sandbox for AI agents with kernel-level filesystem jail, transparent network proxy, and YAML-based policy engine to intercept and control…

ai-securitycontainer-securitydefensive-tools+2
85 months ago
sharesniffer preview

sharesniffer

GitHubshirosaidev/sharesniffer

Network share sniffer and auto-mounter for crawling remote file systems

information-gatheringnetwork-mappingnetwork-security+2
2144 years ago
tomcat-cve-2020-1938-check preview

tomcat-cve-2020-1938-check

GitHubfatal0/tomcat-cve-2020-1938-check

Go-based scanner for Apache Tomcat AJP file read/inclusion vulnerability (CVE-2020-1938). Detects and exploits Ghostcat to read arbitrary files or…

exploitationnetwork-securityvulnerability-scanners+1
76 years ago
h0neytr4p preview

h0neytr4p

GitHubpbssubhash/h0neytr4p

Easy to configure Honeypot for Blue Team

defensive-toolsintrusion-detectionnetwork-security+2
441 year ago
LeitWacht Agent preview

LeitWacht Agent

GitLableitwacht/leitwacht-agent

eBPF + nftables + DNS proxy egress enforcement for GitLab Runner CI/CD job containers — community edition data plane https://leitwacht.eu/

cloud-infrastructure-securitycloud-securitycontainer-security+4
1 month ago
PCredz preview

PCredz

GitHublgandx/pcredz

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP,…

forensicsinformation-gatheringnetwork-security+3
2.5k6 months ago
Aegis preview

Aegis

GitHubantropos17/aegis

OS-level monitor for AI agents: observes processes, file access, and network activity on the local machine and attributes each event to an agent…

ai-securityanomaly-detectiondefensive-tools+4
1454 days ago
jailer preview

jailer

GitHubgen0sec/jailer

Jailer is an eBPF-based process jailing system that provides mandatory access control (MAC) for Linux. It tracks processes using BPF task_storage…

cloud-securitycontainer-securitydefensive-tools+1
5928 days ago
checker-cve2020-3452 preview

checker-cve2020-3452

GitHubmrcl0wnlab/checker-cve2020-3452

Cisco Adaptive Security Appliance and FTD Unauthorized Remote File Reading

exploitationnetwork-securitypenetration-testing+3
176 years ago
nmap-CVE-2023-35078-Exploit preview

nmap-CVE-2023-35078-Exploit

GitHubemanueldosreis/nmap-cve-2023-35078-exploit

Nmap script to exploit CVE-2023-35078 - Mobile Iron Core

exploitationnetwork-securitypenetration-testing+3
13 years ago
Previous12345Next