Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
282 results
TransparentTorProxy preview

TransparentTorProxy

GitHubonyks-os/transparenttorproxy

A Linux CLI utility that transparently routes all system traffic through the Tor network using nftables. It enables rapid IP rotation and easy…

command-and-controldefensive-toolsdns-analysis+6
444 days ago
urgent11-detector preview

urgent11-detector

GitHubarmissecurity/urgent11-detector

URGENT/11 detection tool by Armis

embedded-systems-securityinformation-gatheringiot-security+5
647 years ago
CECster preview

CECster

GitHubnccgroup/cecster

A GUI-based tool to perform security testing against the HDMI CEC (Consumer Electronics Control) and HEC (HDMI Ethernet Channel) protocols

embedded-systems-securityfuzzinghardware-security+3
3112 years ago
stegowiper preview

stegowiper

GitHubmindcrypt/stegowiper

A powerful and flexible tool to apply active attacks for disrupting stegomalware

defensive-toolsincident-responsemalware-analysis+2
564 years ago
zscan preview

zscan

GitHubzcyberseclab/zscan

A fast, customizable service detection tool powered by a flexible fingerprint system. It helps you identify services, APIs, and network…

network-securitypenetration-testingport-scanning+3
443 months ago
got-responded preview

got-responded

GitHubjoda32/got-responded

A simple tool to detect NBT-NS and LLMNR spoofing (and messing with them a bit)

intrusion-detectionnetwork-securitypenetration-testing+1
367 years ago
zeek2es preview

zeek2es

GitHubcorelight/zeek2es

A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for further…

log-analysisnetwork-securityscripting-automation+1
414 years ago
rtpnatscan preview

rtpnatscan

GitHubkapejod/rtpnatscan

Minimal CLI scanner that probes RTP proxies and NAT helpers for NAT-stealing vulnerability, helping VoIP administrators validate and harden media…

network-securitypenetration-testingvulnerability-analysis+1
259 years ago
mtpass preview

mtpass

GitHubmanio/mtpass

MikroTik Password Recovery Tool

network-securitypassword-attackspassword-cracking+1
2912 years ago
PQC-Scanner preview

PQC-Scanner

GitHubcyberjez/pqc-scanner

The PQC Network Scanner is a quantum‑focused network assessment tool that scans TLS/SSL certificates across enterprise environments to identify…

cloud-securitycryptographynetwork-security+2
199 months ago
watchTowr-vs-Citrix-Netscaler-CVE-2026-88772 preview

watchTowr-vs-Citrix-Netscaler-CVE-2026-88772

GitHubwatchtowrlabs/watchtowr-vs-citrix-netscaler-cve-2026-88772

Detection artifact generator for Citrix NetScaler CVE-2026-88772 that builds a DTLS pre-auth buffer overflow payload to verify remote code execution.

exploitationnetwork-securitypenetration-testing+3
712 days ago
kexkill preview

kexkill

GitHubdag-erling/kexkill

SSH KEXINIT flood tool exploiting CVE-2016-8858 to trigger memory exhaustion in vulnerable OpenSSH servers. Proof-of-concept for denial-of-service…

exploitationnetwork-securitypenetration-testing+1
78 years ago
Woeful preview

Woeful

GitHubmercuryworkshop/woeful

Woeful is a tool that lets web apps to safely and securely connect to the outside internet without a complex backend.

dns-analysisnetwork-securitypacket-sniffing-analysis+2
141 year ago
roamr preview

roamr

GitHubsourabh-khot65/roamr

Find the best WiFi network for where you are — scores every saved network for real-world quality, not just signal bars.

general-purpose-utilitiesnetwork-securitywireless-security
82 months ago
FREAK-Attack-CVE-2015-0204-Testing-Script preview

FREAK-Attack-CVE-2015-0204-Testing-Script

GitHubabhishekghosh/freak-attack-cve-2015-0204-testing-script

Basic BASH Script to Automate OpenSSL based testing for FREAK Attack (CVE-2015-0204) as advised by Akamai.

network-securitypenetration-testingscripting-automation+1
511 years ago
CQPToolkit preview

CQPToolkit

GitLabqcomms/cqptoolkit

Framework for controlling QKD devices and managing symmetric keys. See the [project page here](https://qcomms.gitlab.io/cqptoolkit/)

cryptographyembedded-systems-securityencryption-decryption-tools+2
64 years ago
tunnelx preview

tunnelx

GitHubprojectdiscovery/tunnelx

TunnelX is a lightweight ingress tunneling tool designed to create a secure SOCKS5 proxy server for routing network traffic.

authenticationcloud-securitynetwork-security+3
31 month ago
bleed preview

bleed

GitHubdominikto/bleed

bleed is a tool to test servers for the 'Heartbleed' vulnerability (CVE-2014-0160).

exploitationnetwork-securitypenetration-testing+2
712 years ago
Previous1…567…16Next