Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
510 results
shodan-eye preview

shodan-eye

GitHubbullseye0/shodan-eye

Shodan Eye This tool collects all the information about all devices directly connected to the internet using the specified keywords that you enter.…

information-gatheringnetwork-securityosint+2
1.4k
12 days ago
nullinux preview

nullinux

GitHubm8sec/nullinux

Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through…

information-gatheringnetwork-securitypenetration-testing+1
5792 years ago
NTLMRecon preview

NTLMRecon

GitHubpwnfoo/ntlmrecon

Enumerate information from NTLM authentication enabled web endpoints 🔎

authenticationinformation-gatheringnetwork-security+3
51011 months ago
CVE-2018-0296 preview

CVE-2018-0296

GitHubyassineaboukir/cve-2018-0296

Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.

exploitationinformation-gatheringnetwork-security+3
2052 years ago
scripts-nse preview

scripts-nse

GitHubdanilabs/scripts-nse

Some NSE scripts to search information from routers

exploitationinformation-gatheringnetwork-security+4
3610 years ago
cdpsnarf preview

cdpsnarf

GitHubzapotek/cdpsnarf

CDPSnarf is a network sniffer exclusively written to extract information from CDP (Cisco Discovery Protocol) packets.

information-gatheringnetwork-mappingnetwork-security+2
4315 years ago
ImpossibleTravelLogAnalysis preview

ImpossibleTravelLogAnalysis

GitHubnccgroup/impossibletravelloganalysis

Basic log analysis tool to detect impossible travel via IP address geographic information

anomaly-detectionforensicsincident-response+3
207 years ago
SCCMVersionGuesser preview

SCCMVersionGuesser

GitHubsynacktiv/sccmversionguesser

Automated SCCM build and patch level detection tool for identifying version information and potential vulnerabilities in Microsoft Endpoint…

information-gatheringnetwork-securitypenetration-testing+2
133 months ago
icannTLD preview

icannTLD

GitHubcorelight/icanntld

Zeek script using the official ICANN Top-Level Domain (TLD) list with the Input Framework to extract the relevant information from a DNS query and…

dns-analysisinformation-gatheringintrusion-detection+3
81 year ago
Zeek-Endpoint-Enrichment preview

Zeek-Endpoint-Enrichment

GitHubcorelight/zeek-endpoint-enrichment

Zeek log enrichment tool that adds host information and known entity references to enhance network security monitoring and incident response.

information-gatheringlog-analysisnetwork-security+1
42 months ago
Prommetrix preview

Prommetrix

GitHubepsylon/prommetrix

Prommetrix can obtain relevant information from the instances of 'Node Exporter' executed by 'Prometheus'.

cloud-securityinformation-gatheringmisconfiguration+4
52 years ago
CVE-1999-0524-ICMP-Timestamp-and-Address-Mask-Request-Exploit preview

CVE-1999-0524-ICMP-Timestamp-and-Address-Mask-Request-Exploit

GitHubthreatlabindonesia/cve-1999-0524-icmp-timestamp-and-address-mask-request-exploit

Exploit for CVE-1999-0524 that sends ICMP Timestamp and Address Mask requests to expose network information or trigger denial of service. Supports…

exploitationinformation-gatheringnetwork-security+2
31 year ago
CVE-2025-6980-check preview

CVE-2025-6980-check

GitHubbishopfox/cve-2025-6980-check

Safely test Arista NGFW for information disclosure

exploitationinformation-gatheringnetwork-security+3
39 months ago
CVE-2024-42657 preview

CVE-2024-42657

GitHubbaroi-ai/cve-2024-42657

CVE-2024-42657 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the lack of…

exploitationinformation-gatheringnetwork-security+3
12 years ago
ThreatSentry-AI preview

ThreatSentry-AI

GitHubeclipsemanic/threatsentry-ai

ThreatSentry AI is an intelligent threat hunting dashboard that leverages machine learning to proactively identify and prioritize risks in your…

defensive-toolsincident-responseinformation-gathering+6
17 months ago
CVE-2020-23593 preview

CVE-2020-23593

GitHubhuzaifahussain98/cve-2020-23593

INFORMATION DISCLOSURE :CSRF to enable syslog mode and send to remote syslog server IP and Port.

exploitationinformation-gatheringnetwork-security+2
3 years ago
fortileak-01-2025-Be preview

fortileak-01-2025-Be

GitHubniklasmato/fortileak-01-2025-be

This repository contains informaion about the Fortigate firewall vulnerability (CVE-2022-40684) and affected data that were publicly disclosed by the…

incident-responseinformation-gatheringioc-management+3
1 year ago
jarm preview

jarm

GitHubsalesforce/jarm

Active TLS server fingerprinting tool that sends crafted Client Hello packets to generate unique JARM hashes for identifying server configurations,…

information-gatheringnetwork-securityreconnaissance+1
1.3k1 month ago
Previous12…29Next