Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
219 results
ids_bypass preview

ids_bypass

GitHubkirillwow/ids_bypass

IDS Bypass tricks

educationexploitationids-ips-evasion+1
1217 years ago
tsharkVM preview

tsharkVM

GitHubh21lab/tsharkvm

tshark + ELK analytics virtual machine

educationintrusion-detectionlog-analysis+3
686 months ago
Awesome-Pentest preview

Awesome-Pentest

GitHubal1ex/awesome-pentest

Collection of penetration testing tools

ctfcurated-resourceseducation+6
835 years ago
Nac_Bypass_Agent preview

Nac_Bypass_Agent

GitHubalperenugurlu/nac_bypass_agent

This function combines all the above functions and takes necessary information from the user to change the IP and MAC address, start the responder…

educationids-ips-evasionimpersonation-tools+5
733 years ago
OFFPORT_KILLER preview

OFFPORT_KILLER

GitHubth3xace/offport_killer

This tool aims at automating the identification of potential service running behind ports identified manually either through manual scan or services…

ctfinformation-gatheringnetwork-security+3
505 years ago
explain-my-curl preview

explain-my-curl

GitHubakgitrepos/explain-my-curl

Takes a curl command and explains DNS/TLS/HTTP details step-by-step

dns-analysiseducationgeneral-purpose-utilities+3
1006 months ago
CVE-2023-50387 preview

CVE-2023-50387

GitHubknqyf263/cve-2023-50387

Educational proof-of-concept for the DNSSEC KeyTrap vulnerability (CVE-2023-50387) with a Docker-based lab environment to demonstrate algorithmic…

dns-analysiseducationexploitation+3
452 years ago
CVE-2023-25136 preview

CVE-2023-25136

GitHubadhikara13/cve-2023-25136

OpenSSH Pre-Auth Double Free CVE-2023-25136 POC

educationexploitationnetwork-security+2
473 years ago
brutus preview

brutus

GitHubexbotanical/brutus

extensible exploitation framework shipped on a modular multi-tasking architecture

educationexploit-frameworksnetwork-security+6
815 years ago
SharkMCP preview

SharkMCP

GitHubweirdmachine64/sharkmcp

A swiss-knife MCP server for analysing PCAP files

ctfdigital-forensicseducation+6
744 months ago
arp-dns-attacks preview

arp-dns-attacks

GitHubashishraste/arp-dns-attacks

ARP spoofing, HTTP redirection, DNS spoofing and DNS forging using pcap library

dns-analysiseducationexploitation+3
3113 years ago
ofp_sniffer preview

ofp_sniffer

GitHubamlight/ofp_sniffer

An OpenFlow sniffer to help network troubleshooting in production networks.

educationnetwork-mappingnetwork-security+1
151 month ago
mountain_goat preview

mountain_goat

GitHubgnoxter/mountain_goat

A PoC demonstrating techniques exploiting CVE-2016-5696 Off-Path TCP Exploits: Global Rate Limit Considered Dangerous

educationexploitationnetwork-security+2
4010 years ago
openclaw-security-monitor preview

openclaw-security-monitor

GitHubadibirzu/openclaw-security-monitor

Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks.

defensive-toolseducationforensics+9
492 months ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubbigb0x/cve-2024-6387

Bulk Scanning Tool for OpenSSH CVE-2024-6387, CVE-2006-5051 , CVE-2008-4109 and others.

educationinformation-gatheringnetwork-security+3
352 years ago
CVE-2025-26686-The-TCP-IP-Flaw-That-Opens-the-Gates preview

CVE-2025-26686-The-TCP-IP-Flaw-That-Opens-the-Gates

GitHubmrk336/cve-2025-26686-the-tcp-ip-flaw-that-opens-the-gates

A critical RCE vulnerability in Windows TCP/IP stack (CVE-2025-26686) leaves sensitive memory unlocked, allowing remote attackers to hijack systems.…

binary-exploitationeducationexploitation+4
3211 months ago
AppleDOS preview

AppleDOS

GitHubfarisv/appledos

Messing Apple devices on the network with CVE-2018-4407 (heap overflow in bad packet handling)

educationexploitationnetwork-security+2
257 years ago
QUIC-attacks preview

QUIC-attacks

GitHubefchatz/quic-attacks

Educational scripts demonstrating QUIC protocol attacks including CVE-2022-30591 exploitation, flooding, and slowloris techniques against major…

educationexploitationnetwork-security+2
273 years ago
Previous1…345…13Next