Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
85 results
mallory preview

mallory

GitHubjustmao945/mallory

HTTP/HTTPS proxy over SSH

general-purpose-utilitiesnetwork-securityweb-proxies-interception
3242 years ago
CVE-2024-24919-Check-Point-Remote-Access-VPN preview

CVE-2024-24919-Check-Point-Remote-Access-VPN

GitHubgraysignal/cve-2024-24919-check-point-remote-access-vpn

Scan for and exploit CVE-2024-24919 in Check Point Security Gateways, an unauthenticated arbitrary file read that can expose credentials and lead to…

exploitationinformation-gatheringnetwork-security+2
12 years ago
smbeagle preview

smbeagle

GitHubpunk-security/smbeagle

SMBeagle - Fileshare auditing tool.

information-gatheringlateral-movementnetwork-security+4
7449 months ago
SuricataLog preview

SuricataLog

GitHubjosevnz/suricatalog

Parse, filter, and visualize Suricata eve.json logs with CLI tools for alerts, flows, DNS, and payloads. Includes a tutorial for learning Suricata…

educationintrusion-detectionlog-analysis+1
271 month ago
log4j-CVE-2021-44228 preview

log4j-CVE-2021-44228

GitHubkubearmor/log4j-cve-2021-44228

Apache Log4j Zero Day Vulnerability aka Log4Shell aka CVE-2021-44228

cloud-securitycontainer-securityeducation+4
94 years ago
mssharepoint-scanner preview

mssharepoint-scanner

GitHubvirologi-info/mssharepoint-scanner

A scanner for CVE-2026-55040 and CVE-2026-63520, designed to determine whether the server is affected by these two CVEs.

defensive-toolsinformation-gatheringnetwork-security+3
2 days ago
bbs preview

bbs

GitHubsynacktiv/bbs

bbs is a router for SOCKS and HTTP proxies. It exposes a SOCKS5 (or HTTP CONNECT) service and forwards incoming requests to proxies or chains of…

network-securitypenetration-testingred-teaming+2
991 month ago
CQPToolkit preview

CQPToolkit

GitLabqcomms/cqptoolkit

Framework for controlling QKD devices and managing symmetric keys. See the [project page here](https://qcomms.gitlab.io/cqptoolkit/)

cryptographyembedded-systems-securityencryption-decryption-tools+2
64 years ago
doublepulsar-c2-traffic-decryptor preview

doublepulsar-c2-traffic-decryptor

GitHubwithsecurelabs/doublepulsar-c2-traffic-decryptor

A python2 script for processing a PCAP file to decrypt C2 traffic sent to DOUBLEPULSAR implant

command-and-controlencryption-decryption-toolsexploitation+3
2259 years ago
MassZeroLogon preview

MassZeroLogon

GitHubguglia001/masszerologon

Tool for mass testing ZeroLogon vulnerability CVE-2020-1472

exploitationinformation-gatheringnetwork-security+3
33 years ago
MassZeroLogon preview

MassZeroLogon

GitHublikeww/masszerologon

Tool for mass testing ZeroLogon vulnerability CVE-2020-1472

exploitationinformation-gatheringnetwork-security+3
3 years ago
CVE-2018-14847 preview

CVE-2018-14847

GitHubtausifzaman/cve-2018-14847

This is a proof of concept of the critical WinBox vulnerability (CVE-2018-14847) which allows for arbitrary file read of plain text passwords. The…

exploitationinformation-gatheringnetwork-security+3
11 year ago
CVE-2025-24071_PoCExtra preview

CVE-2025-24071_PoCExtra

GitHubctabango/cve-2025-24071_pocextra

Proof-of-concept exploit for CVE-2025-24071 that creates a .searchconnector-ms file to trigger SMB authentication when copied, enabling credential…

exploitationinformation-gatheringlateral-movement+3
21 year ago
SharpStat preview

SharpStat

GitHubraikia/sharpstat

C# utility that uses WMI to run "cmd.exe /c netstat -n", save the output to a file, then use SMB to read and delete the file remotely

information-gatheringlateral-movementnetwork-security+2
396 years ago
KNX-Bus-Dump preview

KNX-Bus-Dump

GitHubchrism09/knx-bus-dump

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

digital-forensicsforensicshardware-iot-security+3
124 years ago
SMBCrunch preview

SMBCrunch

GitHubraikia/smbcrunch

3 tools that work together to simplify reconaissance of Windows File Shares

information-gatheringnetwork-securitypenetration-testing+2
1708 years ago
airdecloak-ng preview

airdecloak-ng

GitHubalt3kx/airdecloak-ng

My Aircrack-ng contribution with Thomas d'Otreppe

network-securitypacket-sniffing-analysispenetration-testing+2
44 years ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubglobalsecureacademy/cve-2024-24919

Exploit tool to validate CVE-2024-24919 vulnerability on Checkpoint Firewall VPNs

exploitationinformation-gatheringnetwork-security+3
32 years ago
Previous12345Next