Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
119 results
MaltegoHeartbleed preview

MaltegoHeartbleed

GitHubdisk0nn3ct/maltegoheartbleed

Maltego transform to detect the OpenSSL Heartbleed vulnerability (CVE-2014-0160)

information-gatheringnetwork-securityosint+3
18
12 years ago
Zeek-CVE-Enrichment preview

Zeek-CVE-Enrichment

GitHubcorelight/zeek-cve-enrichment

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…

incident-responseioc-managementlog-analysis+3
11 year ago
CVE-2025-6980-check preview

CVE-2025-6980-check

GitHubbishopfox/cve-2025-6980-check

Safely test Arista NGFW for information disclosure

exploitationinformation-gatheringnetwork-security+3
310 months ago
CVE-1999-0524-ICMP-Timestamp-and-Address-Mask-Request-Exploit preview

CVE-1999-0524-ICMP-Timestamp-and-Address-Mask-Request-Exploit

GitHubthreatlabindonesia/cve-1999-0524-icmp-timestamp-and-address-mask-request-exploit

Exploit for CVE-1999-0524 that sends ICMP Timestamp and Address Mask requests to expose network information or trigger denial of service. Supports…

exploitationinformation-gatheringnetwork-security+2
31 year ago
CVE-2018-0296 preview

CVE-2018-0296

GitHubyassineaboukir/cve-2018-0296

Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.

exploitationinformation-gatheringnetwork-security+3
2052 years ago
CVE-2026-30081 preview

CVE-2026-30081

GitHubrakeshelamaran98/cve-2026-30081

Documentation of CVE-2026-30081, a high-severity cleartext transmission vulnerability in Quantum Networks QN-I-470 router firmware 6.1.1.B1, allowing…

exploitationinformation-gatheringnetwork-security+2
6 months ago
Mikrotik-router-hack preview

Mikrotik-router-hack

GitHubhacker30468/mikrotik-router-hack

Proof-of-concept exploit for CVE-2018-14847 (MikroTik WinBox vulnerability) enabling arbitrary file read and plaintext password extraction via TCP/IP…

exploitationinformation-gatheringnetwork-security+3
555 years ago
detect_bluekeep.py preview

detect_bluekeep.py

GitHubhynekpetrak/detect_bluekeep.py

Python script to detect bluekeep vulnerability (CVE-2019-0708) with TLS/SSL and x509 support

exploitationnetwork-securitypenetration-testing+3
277 years ago
CVE-2021-21975 preview

CVE-2021-21975

GitHubguayoyocyber/cve-2021-21975

Nmap script to check vulnerability CVE-2021-21975

information-gatheringnetwork-securityreconnaissance+3
275 years ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubguayoyocyber/cve-2024-24919

Nmap script to check vulnerability CVE-2024-24919

exploitationnetwork-securitypenetration-testing+3
42 years ago
CVE-2024-47176 preview

CVE-2024-47176

GitHubaytackalinci/cve-2024-47176

Vulnerability Scanner for CUPS: CVE-2024-47176

exploitationnetwork-securitypenetration-testing+3
27 months ago
SMBv3.1.1-scan---CVE-2020-0796 preview

SMBv3.1.1-scan---CVE-2020-0796

GitHubbinaryshadow94/smbv3.1.1-scan---cve-2020-0796

Little scanner to know if a machine is runnig SMBv3 (possible vulnerability CVE-2020-0796)

exploitationinformation-gatheringnetwork-security+2
16 years ago
winboxPOC preview

winboxPOC

GitHubtr33-he11/winboxpoc

Proof of Concept of Winbox Critical Vulnerability (CVE-2018-14847)

exploitationinformation-gatheringnetwork-security+3
17 years ago
open-ssh-user-enumeration preview

open-ssh-user-enumeration

GitHubmakmour/open-ssh-user-enumeration

This script checks for the OpenSSH 7.7 (and prior) username enumeration vulnerability (CVE-2018-15473). It sends a malformed authentication packet…

exploitationinformation-gatheringnetwork-security+3
1 year ago
bluekeep preview

bluekeep

GitHubdavidfortytwo/bluekeep

Python-based checker and exploit for BlueKeep (CVE-2019-0708) RDP vulnerability. Scans multiple IPs to identify unpatched Windows systems and enables…

exploitationnetwork-securitypenetration-testing+3
3 years ago
Metabase_Nmap_Script preview

Metabase_Nmap_Script

GitHubgrey-master-a/metabase_nmap_script

It is a nmap script for metabase vulnerability (CVE-2021-41277)

exploitationinformation-gatheringnetwork-security+2
4 years ago
WinboxPoC preview
Archived

WinboxPoC

GitHubbasucert/winboxpoc

Proof of Concept of Winbox Critical Vulnerability (CVE-2018-14847)

exploitationinformation-gatheringnetwork-security+3
5195 years ago
CVE-2018-14847 preview

CVE-2018-14847

GitHubjas502n/cve-2018-14847

Proof-of-concept exploit for CVE-2018-14847 allowing arbitrary file read of plaintext passwords from MikroTik RouterOS WinBox service, with TCP/IP…

exploitationinformation-gatheringnetwork-security+3
307 years ago
Previous1234567Next