Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17 results
CVE-2024-6387-Check preview

CVE-2024-6387-Check

GitHubdevarshishimpi/cve-2024-6387-check

Fast, efficient, and reliable detection for the regreSSHion exploit. Scan multiple targets in seconds with zero dependencies.

information-gatheringnetwork-securitypenetration-testing+3
14
2 years ago
proftpd-cve-2019-12815 preview

proftpd-cve-2019-12815

GitHublcartey/proftpd-cve-2019-12815

Exploit for CVE-2019-12815 in ProFTPD 1.3.x, a configurable FTP daemon with virtual users, multiple authentication methods, and modular architecture…

authenticationconfiguration-auditingexploitation+3
6 years ago
Dosinator preview

Dosinator

GitHubhalildeniz/dosinator

DoSinator is a powerful Denial of Service (DoS) testing tool developed in Python.

exploitationinformation-gatheringnetwork-security+3
1442 years ago
CVE-2021-40113 preview

CVE-2021-40113

GitHubkarammahmad/cve-2021-40113

CVE documentation repository detailing unauthenticated remote vulnerabilities in Cisco Catalyst PON Series Switches ONT, including default credential…

authenticationconfiguration-auditingexploitation+3
3 years ago
meteor preview

meteor

GitHubdegenerat3/meteor

A cross-platform C2/teamserver supporting multiple transport protocols, written in Go.

command-and-controlexploit-frameworksnetwork-security+4
453 years ago
heartbleed-masstest preview

heartbleed-masstest

GitHubmusalbas/heartbleed-masstest

Multi-threaded tool for scanning many hosts for CVE-2014-0160.

information-gatheringnetwork-securitypenetration-testing+3
57111 years ago
CVE-2024-6387-Vulnerability-Checker preview

CVE-2024-6387-Vulnerability-Checker

GitHubfilipi86/cve-2024-6387-vulnerability-checker

This Python script checks for the CVE-2024-6387 vulnerability in OpenSSH servers. It supports multiple IP addresses, URLs, CIDR ranges, and ports.…

exploitationnetwork-securityvulnerability-scanners
1022 years ago
CVE-2024-6387-Vulnerability-Checker preview

CVE-2024-6387-Vulnerability-Checker

GitHubidentity-threat-labs/cve-2024-6387-vulnerability-checker

This Python script checks for the CVE-2024-6387 vulnerability in OpenSSH servers. It supports multiple IP addresses, URLs, CIDR ranges, and ports.…

exploitationinformation-gatheringnetwork-security+3
22 years ago
CVE-2025-49844-discovery preview

CVE-2025-49844-discovery

GitHubgopinaath/cve-2025-49844-discovery

Audits AWS ElastiCache Redis/Valkey clusters for network exposure, checking VPC, subnet, and internet gateway routes across multiple accounts and…

cloud-securityconfiguration-auditinginformation-gathering+2
11 months ago
BlueGate-CVE-2020-0609 preview

BlueGate-CVE-2020-0609

GitHubbhanunamikaze/bluegate-cve-2020-0609

BlueGate Exploit validator - RD Gateway validator for CVE-2020-0609 and CVE-2020-0610 (BlueGate) using OpenSSL DTLS over UDP/3391.

exploitationnetwork-securitypenetration-testing+2
28 days ago
Vanquish preview

Vanquish

GitHubfrizb/vanquish

Vanquish is Kali Linux based Enumeration Orchestrator. Vanquish leverages the opensource enumeration tools on Kali to perform multiple active…

dns-subdomain-enumerationexploitationinformation-gathering+8
5148 years ago
CVE-2022-3602-and-CVE-2022-3786 preview

CVE-2022-3602-and-CVE-2022-3786

GitHubcybersecurityworks553/cve-2022-3602-and-cve-2022-3786

Python-based scanner that detects OpenSSL 3.0.0-3.0.6 servers vulnerable to CVE-2022-3602 and CVE-2022-3786 by checking client authentication…

information-gatheringnetwork-securitypenetration-testing+2
43 years ago
CVE_2023_44487-Rapid_Reset preview

CVE_2023_44487-Rapid_Reset

GitHubmadhusudhan-in/cve_2023_44487-rapid_reset

A comprehensive Python testing tool for CVE-2023-44487, the HTTP/2 Rapid Reset vulnerability. This enhanced version provides granular control over…

exploitationnetwork-securitypenetration-testing+3
12 months ago
SSH-Weak-DH preview

SSH-Weak-DH

GitHubstrozfriedberg/ssh-weak-dh

Audits SSH servers for weak Diffie-Hellman key exchange groups by testing multiple client configurations, identifying Logjam-vulnerable endpoints…

cryptographynetwork-securitypenetration-testing+1
1042 days ago
ghes-cve-scanner preview

ghes-cve-scanner

GitHubisagoakira/ghes-cve-scanner

Scans GitHub Enterprise Server instances for CVE-2026-3854 and CVE-2026-4821, providing version-based detection with batch scanning and multiple…

cloud-infrastructure-securityconfiguration-auditingdefensive-tools+2
5 months ago
CVE_2023_44487-Rapid_Reset preview

CVE_2023_44487-Rapid_Reset

GitHubgmh5225/cve_2023_44487-rapid_reset

Python-based testing tool for CVE-2023-44487 (HTTP/2 Rapid Reset) with multiple attack patterns, granular configuration, and monitoring for…

exploitationnetwork-securitypenetration-testing+2
1 year ago
cisco-CVE-2023-20198-tester preview

cisco-CVE-2023-20198-tester

GitHubsecurityphoenix/cisco-cve-2023-20198-tester

cisco-CVE-2023-20198-tester

exploitationnetwork-securitypenetration-testing+2
12 years ago