Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
94 results
Routeglass preview

Routeglass

GitHubk3ystr0k3r/routeglass

Multi-threaded router fingerprinting tool that identifies web-exposed network devices by analyzing HTTP responses, headers, and favicon hashes for…

information-gatheringiot-securitynetwork-mapping+3
2
2 months ago
CVE-2026-8888-Printer-Firmware-Unsigned-Update-via-HTTP preview

CVE-2026-8888-Printer-Firmware-Unsigned-Update-via-HTTP

GitHubgeorge0papasotiriou/cve-2026-8888-printer-firmware-unsigned-update-via-http

Demonstrates CVE-2026-8888, an unsigned printer firmware update over HTTP, including a malicious update server and vulnerable printer emulator for…

embedded-systems-securityexploitationfirmware-analysis+4
1 month ago
zeek-mercury-npf preview

zeek-mercury-npf

GitHubcorelight/zeek-mercury-npf

Zeek plugin generating Mercury NPF fingerprints for TCP, TLS/DTLS, QUIC, HTTP, SSH, OpenVPN, and STUN to support network security monitoring.

defensive-toolsnetwork-securitypacket-sniffing-analysis
1 month ago
CVE-2026-33234 preview

CVE-2026-33234

GitHubpavanchow/cve-2026-33234

SSRF via smtplib raw TCP sockets bypassing HTTP blocklist in AutoGPT SendEmailBlock

exploitationinformation-gatheringnetwork-security+2
8 days ago
CVE-2026-33555 preview

CVE-2026-33555

GitHubr3verii/cve-2026-33555

One zero-byte QUIC packet is enough to desynchronize HAProxy's backend connection pool and smuggle HTTP requests across unrelated users — even users…

exploitationnetwork-securitypapers-research+3
25 months ago
CVE-2024-40898-SSL-Bypass-Detection preview

CVE-2024-40898-SSL-Bypass-Detection

GitHubforceea001/cve-2024-40898-ssl-bypass-detection

This Python script is a Proof-of-Concept (PoC) scanner for detecting the vulnerability CVE-2024-40898, which affects Apache HTTP Server’s SSL…

exploitationnetwork-securitypenetration-testing+2
21 year ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubcorelight/cve-2021-41773

Zeek package detecting Apache HTTP Server path traversal/RCE exploits (CVE-2021-41773, CVE-2021-42013) with payload capture and server header…

exploitationincident-responseintrusion-detection+3
14 years ago
cve-2026-20127 preview

cve-2026-20127

GitHubgigachadusers/cve-2026-20127

Windows-based C++ network scanner that fingerprints Cisco SD-WAN/vManage services and checks for CVE-2026-20127 exposure via HTTP endpoint analysis.

information-gatheringnetwork-securitypenetration-testing+2
25 months ago
CVE-2025-1868 preview

CVE-2025-1868

GitHubitres-labs/cve-2025-1868

CVE-2025-1868: Advanced IP Scanner & Advanced Port Scanner NTLM Leakage HTTP Tester

authenticationexploitationinformation-gathering+3
27 months ago
xtor preview

xtor

GitHubkhalidelborai/xtor

Python library for programmatic Tor instance management with SOCKS5 proxy, identity rotation, stream isolation, hidden services, circuit control, and…

crawlernetwork-securityprivacy+2
17 months ago
CVE-2026-36958 preview

CVE-2026-36958

GitHubkirubel-cve/cve-2026-36958

Proof-of-concept for CVE-2026-36958, a denial-of-service vulnerability in U-SPEED Router firmware that exhausts resources via concurrent HTTP…

exploitationnetwork-securitypenetration-testing+2
4 months ago
Reachability-Check preview

Reachability-Check

GitHubabdullahaligun/reachability-check

Browser-based network connectivity checker for testing firewall rules, access restrictions, and corporate policy compliance. Supports HTTP Fetch and…

configuration-auditingdns-analysisinformation-gathering+3
15 months ago
apache_audit_cve-2026-23918 preview

apache_audit_cve-2026-23918

GitHubsibersan/apache_audit_cve-2026-23918

Python toolkit to audit Apache HTTP Server against CVE-2026-23918 (HTTP/2 double-free RCE) and 4 related CVEs. Passive scanner with ALPN verification…

configuration-auditingdefensive-toolsincident-response+3
4 months ago
Cisco_CVE-2023-20198 preview

Cisco_CVE-2023-20198

GitHubreket99/cisco_cve-2023-20198

Python script to scan networks for Cisco IOS XE devices vulnerable to CVE-2023-20198, detecting implants via HTTP status and response analysis.

exploitationnetwork-securitypenetration-testing+3
2 years ago
ble_proxy preview

ble_proxy

GitHubjclarkcom/ble_proxy

BLE-based HTTP proxy system routing browser traffic through an iOS device. Supports HTTP/HTTPS, data compression, and mock mode for testing without…

bluetooth-securityios-securitymobile-security+3
9 months ago
cmty-ssl-heartbleed-CVE-2014-0160-HTTP-HTTPS preview

cmty-ssl-heartbleed-CVE-2014-0160-HTTP-HTTPS

GitHubartofscripting-zz/cmty-ssl-heartbleed-cve-2014-0160-http-https

Detects the Heartbleed vulnerability (CVE-2014-0160) in OpenSSL on HTTP and HTTPS services via version checking, with guidance for using nmap,…

exploitationnetwork-securitypenetration-testing+3
7 years ago
CVE-2023-38545 preview

CVE-2023-38545

GitHubyang-shun-yu/cve-2023-38545

Proof-of-concept exploit for CVE-2023-38545, a curl heap buffer overflow. Includes SOCKS5 proxy and HTTP server to trigger the vulnerability and…

exploitationfuzzingnetwork-security+3
2 years ago
vuln-CVE-2022-41082 preview

vuln-CVE-2022-41082

GitHubnotareaperbutdr34p3r/vuln-cve-2022-41082

https & http

exploitationnetwork-securitypenetration-testing+3
3 years ago
Previous123456Next