Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
38 results
MSMQ-Vulnerability preview

MSMQ-Vulnerability

GitHubleongxudong/msmq-vulnerability

Portfolio lab documenting MSMQ vulnerability (CVE-2023-21554) with detection rules, network capture evidence, mitigation planning, and patch…

defensive-toolseducationintrusion-detection+3
5
3 months ago
rdpy preview

rdpy

GitHubcitronneur/rdpy

Remote Desktop Protocol in Twisted Python

network-securitypenetration-testingred-teaming+1
1.7k6 years ago
CVE-2026-49975-HTTP-2-Bomb preview

CVE-2026-49975-HTTP-2-Bomb

GitHubrenzi25031469/cve-2026-49975-http-2-bomb

Disclosed on June 3, 2026, the "HTTP/2 Bomb" is an unauthenticated remote DoS that combines an HPACK compression bomb with a Slowloris-style hold to…

information-gatheringnetwork-securitypenetration-testing+3
24 months ago
SIGRed preview

SIGRed

GitHubcorelight/sigred

Zeek package for detecting CVE-2020-1350 (SIGRed) Windows DNS server exploit attempts via large DNS SIG/KEY response analysis with configurable…

dns-analysisexploitationintrusion-detection+3
96 years ago
CVE-2023-21554 preview

CVE-2023-21554

GitHubshootweb/cve-2023-21554

CVE-2023-21554 PoC

educationexploitationlabs-practice+3
20 years ago
CVE-2021-42292 preview

CVE-2021-42292

GitHubcorelight/cve-2021-42292

Zeek package detecting CVE-2021-42292 Microsoft Excel local privilege escalation exploit via network traffic analysis of spreadsheet downloads.

exploitationincident-responseintrusion-detection+3
184 years ago
CVE-2023-21554-PoC preview

CVE-2023-21554-PoC

GitHubtheartist54/cve-2023-21554-poc

Python proof of concept for CVE-2023-21554 (QueueJumper) in Microsoft MSMQ, constructing SRMP messages over TCP/1801 to verify the integer-overflow…

exploitationnetwork-securitypapers-research+2
18 days ago
ai-bot-ip-ranges preview

ai-bot-ip-ranges

GitHubrxerium/ai-bot-ip-ranges

Official IP ranges for AI bot crawlers (OpenAI, Anthropic, Google, Microsoft, Perplexity). Weekly auto-updates.

crawlercurated-resourcesdefensive-tools+2
4 months ago
cve-2020-0796 preview

cve-2020-0796

GitHubbutrintkomoni/cve-2020-0796

Identifying and Mitigating the CVE-2020–0796 flaw in the fly

exploitationnetwork-securitypenetration-testing+2
176 years ago
CVE-2021-24086-exp preview

CVE-2021-24086-exp

GitHublisinan988/cve-2021-24086-exp

Proof-of-concept exploit for CVE-2021-24086, a NULL dereference in tcpip.sys causing remote denial of service via malicious UDP packets over IPv6.

exploitationnetwork-securityvulnerability-analysis
15 years ago
CVE-2021-24086 preview
Archived

CVE-2021-24086

GitHub0vercl0k/cve-2021-24086

Proof of concept for CVE-2021-24086, a NULL dereference in tcpip.sys triggered remotely.

binary-analysisexploitationfuzzing+2
2365 years ago
Harden-Windows-Security preview

Harden-Windows-Security

GitHubhotcakex/harden-windows-security

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build…

configuration-auditingdefensive-toolsencryption-decryption-tools+3
4.8k10h 44m ago
CVE-2020-16899 preview

CVE-2020-16899

GitHubadvanced-threat-research/cve-2020-16899

CVE-2020-16899 - Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

dns-analysisids-ips-evasionintrusion-detection+3
205 years ago
NSE-scripts preview

NSE-scripts

GitHubpsc4re/nse-scripts

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

dns-analysisexploitationinformation-gathering+5
1625 years ago
ip-https-tools preview
Archived

ip-https-tools

GitHubtakeshixx/ip-https-tools

Tools for the IP over HTTPS (IP-HTTPS) Tunneling Protocol

dns-analysisnetwork-mappingnetwork-security+3
911 years ago
CVE-2022-26937 preview

CVE-2022-26937

GitHubmalwareman007/cve-2022-26937

POC Of CVE-2022-26937

exploitationfuzzingnetwork-security+1
144 years ago
SCCMVersionGuesser preview

SCCMVersionGuesser

GitHubsynacktiv/sccmversionguesser

Automated SCCM build and patch level detection tool for identifying version information and potential vulnerabilities in Microsoft Endpoint…

information-gatheringnetwork-securitypenetration-testing+2
134 months ago
rdpscan-BlueKeep preview

rdpscan-BlueKeep

GitHubgh0st0ne/rdpscan-bluekeep

A quick scanner for the CVE-2019-0708 "BlueKeep" vulnerability.

exploitationinformation-gatheringnetwork-security+3
17 years ago
Previous123Next