Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17 results
zerologon preview

zerologon

GitHubcorelight/zerologon

Zeek package to detect Zerologon

defensive-toolsintrusion-detectionnetwork-security+2
114 years ago
CVE-2025-33073 preview

CVE-2025-33073

GitHubmverschu/cve-2025-33073

PoC Exploit for the NTLM reflection SMB flaw.

authenticationexploitationnetwork-security+3
7197 months ago
Potato preview

Potato

GitHubfoxglovesec/potato

Windows local privilege escalation exploit using NBNS spoofing, fake WPAD proxy, and HTTP-to-SMB NTLM relay to gain NT AUTHORITY\SYSTEM access.

authenticationexploitationlateral-movement+5
7435 years ago
CVE-2021-42292 preview

CVE-2021-42292

GitHubcorelight/cve-2021-42292

Zeek package detecting CVE-2021-42292 Microsoft Excel local privilege escalation exploit via network traffic analysis of spreadsheet downloads.

exploitationincident-responseintrusion-detection+3
184 years ago
cmdchamp preview

cmdchamp

GitHubmellen9999/cmdchamp

bash CLI trainer — 30 levels from ls to privilege escalation

ctfeducationforensics+8
1215 days ago
sunset-noontide-pentesting preview

sunset-noontide-pentesting

GitHubzales2004/sunset-noontide-pentesting

Description Professional penetration testing assessment of the Sunset: Noontide VulnHub machine, covering reconnaissance, service enumeration,…

ctfeducationexploitation+9
23 days ago
cve-2026-86060 preview

cve-2026-86060

GitHubbahirul/cve-2026-86060

Advisory for CVE-2026-86060, a critical pre-auth privilege escalation in MikroTik RouterOS SSH, with impact analysis, detection guidance, and…

defensive-toolsembedded-systems-securityexploitation+4
126 days ago
Kerberos_CVE-2022-33679 preview

Kerberos_CVE-2022-33679

GitHubnotareaperbutdr34p3r/kerberos_cve-2022-33679

Python exploit for CVE-2022-33679 targeting Kerberos authentication to perform privilege escalation on Windows domain controllers via RC4 session key…

authenticationexploitationnetwork-security+2
43 years ago
mtechweek_04 preview

mtechweek_04

GitHubaish19siddiqua-commits/mtechweek_04

Documented penetration test on an isolated Metasploitable2 VM using Metasploit and Nmap, covering remote exploitation, privilege escalation, and…

educationexploitationlabs-practice+5
1 month ago
patch-CVE-2026-19843 preview

patch-CVE-2026-19843

GitHubgduma-phdata/patch-cve-2026-19843

Patch: Privilege escalation via web UI (Cisco IOS XE)

configuration-auditingdevsecopsnetwork-security+1
1 month ago
CVE-2026-43284-CVE-2026-43500-scan preview

CVE-2026-43284-CVE-2026-43500-scan

GitHubgagaltotal/cve-2026-43284-cve-2026-43500-scan

Automated SSH-based scanner and patcher for Linux kernel LPE vulnerabilities CVE-2026-43284 and CVE-2026-43500, with multi-host discovery, privilege…

configuration-auditingexploitationincident-response+3
14 months ago
CUPS-CVE-2024-47176 preview

CUPS-CVE-2024-47176

GitHubrhyru9/cups-cve-2024-47176

Exploit for CVE-2024-47176 targeting CUPS printing service vulnerability. Enables remote code execution and privilege escalation on affected…

exploitationnetwork-securitypenetration-testing+3
4 months ago
ScannerCVE-2021-3156 preview

ScannerCVE-2021-3156

GitHubsantiagoserrao/scannercve-2021-3156

Script to scan a list of hosts for CVE-2021-3156 (sudoedit privilege escalation) vulnerability, with configurable passwordless SSH connections for…

exploitationinformation-gatheringnetwork-security+3
15 years ago
CYBERDUDEBIVASH-5G-Core-Key-Rotation-Ghost-Admin-Auditor preview

CYBERDUDEBIVASH-5G-Core-Key-Rotation-Ghost-Admin-Auditor

GitHubcyberdudebivash/cyberdudebivash-5g-core-key-rotation-ghost-admin-auditor

Production-grade tool for detecting & remediating CVE-2026-0622 (Ghost Admin privilege escalation & master key exposure in 5G core software).

anomaly-detectioncloud-securityconfiguration-auditing+3
8 months ago
copy-fail-blocker preview

copy-fail-blocker

GitHubcozystack/copy-fail-blocker

BPF-LSM mitigation for CVE-2026-31431 (Copy Fail) — denies AF_ALG socket creation cluster-wide

cloud-securitycontainer-securitydefensive-tools+2
345 months ago
deepce preview

deepce

GitHubstealthcopter/deepce

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

container-escapecontainer-securityexploitation+5
1.6k9 months ago
CVE-2023-1206-CVE-2025-40040-CVE-2024-49882 preview

CVE-2023-1206-CVE-2025-40040-CVE-2024-49882

GitHubspiralbl0ck/cve-2023-1206-cve-2025-40040-cve-2024-49882

3 linux kernel bugs chains to do secure comm app using side channel to establish key and establish covert channe;

binary-exploitationcontainer-escapecontainer-security+3
1210 months ago