Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
57 results
CVE-2025-55315-Scanner-Monitor preview

CVE-2025-55315-Scanner-Monitor

GitHubjlinebau/cve-2025-55315-scanner-monitor

Quick and Simple Scripts to Scan for Vulnerable Servers and Packet Level Monitors

educationnetwork-securitypacket-sniffing-analysis+3
2
10 months ago
keepass-exfil-forensics preview

keepass-exfil-forensics

GitHubpugazhendii22/keepass-exfil-forensics

Network forensics writeup + tooling for a TryHackMe DFIR challenge: reverses a hex→Base64→XOR exfiltration chain from PCAP traffic, then recovers a…

ctfdata-exfiltrationdigital-forensics+6
20 days ago
teamcity-CVE-2026-63077-pcap preview

teamcity-CVE-2026-63077-pcap

GitHubboredhackerblog/teamcity-cve-2026-63077-pcap

teamcity teamcity-CVE-2026-63077 exploitation pcap

exploitationintrusion-detectionnetwork-security+2
24 days ago
vm-homelab-log4shell-assessment preview

vm-homelab-log4shell-assessment

GitHubyili-soc/vm-homelab-log4shell-assessment

Full-lifecycle vulnerability management on a live Log4Shell (CVE-2021-44228) target — scan, manual exploitation, network detection, and remediation…

educationexploitationintrusion-detection+7
27 days ago
CVE-2024-21413-Microsoft-Outlook-Moniker-Link-Vulnerability preview

CVE-2024-21413-Microsoft-Outlook-Moniker-Link-Vulnerability

GitHubh4cknain/cve-2024-21413-microsoft-outlook-moniker-link-vulnerability

Lab write-up analyzing CVE-2024-21413 Outlook Moniker Link exploitation, NetNTLMv2 credential leakage via SMB, detection with YARA/Wireshark, and…

educationemail-securityexploitation+6
29 days ago
Cyber-Defenders-lab- preview

Cyber-Defenders-lab-

GitHubabiral-timalsina/cyber-defenders-lab-

My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers TeamCity RCE (CVE-2024-27198), XSS session hijacking, and…

digital-forensicseducationincident-response+3
25 days ago
raw-packet preview

raw-packet

GitHubraw-packet/raw-packet

Raw-packet Project

dns-analysiseducationnetwork-security+4
2356 years ago
CVE-2021-33959 preview

CVE-2021-33959

GitHublixiang957/cve-2021-33959

Proof-of-concept exploit for CVE-2021-33959 demonstrating UDP reflection amplification attack against Plex Media Server via crafted M-SEARCH packets…

dns-analysisexploitationnetwork-security+2
13 years ago
CVE-2022-47522-PoC preview

CVE-2022-47522-PoC

GitHubtoffeenutt/cve-2022-47522-poc

Proof-of-concept exploit for CVE-2022-47522 demonstrating Wi-Fi frame interception via deauthentication attack and MAC address spoofing to capture…

exploitationpacket-sniffing-analysispenetration-testing+3
1 year ago
Wireshark preview

Wireshark

GitHubkirkdjohnson/wireshark

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…

command-and-controldigital-forensicseducation+9
32 years ago
Urgent11-Suricata-LUA-scripts preview

Urgent11-Suricata-LUA-scripts

GitHubsud0woodo/urgent11-suricata-lua-scripts

Suricata LUA scripts to detect CVE-2019-12255, CVE-2019-12256, CVE-2019-12258, and CVE-2019-12260

exploitationids-ips-evasionintrusion-detection+3
196 years ago
shellshock preview

shellshock

GitHubthemson/shellshock

scripts associate with bourne shell EVN function parsing vulnerability CVE-2014-6271

exploitationnetwork-securitypacket-sniffing-analysis+2
111 years ago
PoC_TLS1_3_CVE-2020-13777 preview

PoC_TLS1_3_CVE-2020-13777

GitHubprprhyt/poc_tls1_3_cve-2020-13777

Proof-of-concept for CVE-2020-13777 (GnuTLS TLS 1.3 reconnect vulnerability). Parses pcap files to demonstrate the flaw for educational and technical…

cryptographyctfeducation+3
5 years ago
CVE-2023-50257 preview

CVE-2023-50257

GitHubjminis/cve-2023-50257

This repository is for research purposes (2025 Sejong Univ. Capstone Design)

educationexploitationpacket-sniffing-analysis+2
1 year ago
CVE-2024-51179 preview

CVE-2024-51179

GitHublakshmirnr/cve-2024-51179

Proof-of-concept exploit for CVE-2024-51179: crafted PFCP packet flooding causes denial of service in Open5GS UPF/SMF, disrupting 5G core PDU session…

exploitationnetwork-securitypacket-sniffing-analysis+2
41 year ago
etherleak-checker preview

etherleak-checker

GitHubmarb08/etherleak-checker

This Python script helps to detect the Etherleak (CVE-2003-0001) vulnerability on a target host by analyzing the padding data in network packets. The…

educationexploitationinformation-gathering+3
51 year ago
ESPTouchCatcher preview

ESPTouchCatcher

GitHubsalgio/esptouchcatcher

eWeLinkESPT is a tool that automatically decodes and decrypts the WiFi network credentials transmitted to a supported ESP-based IoT device by the…

cryptographyexploitationhardware-iot-security+4
55 years ago
DNS-Poisoning-Triage-Lab preview

DNS-Poisoning-Triage-Lab

GitHubnicholasc03/dns-poisoning-triage-lab

Forensic triage of DNS cache poisoning in legacy hardware. Includes PCAP analysis of 839-byte unsolicited record injections, CVE-2025-40778 mapping,…

dns-analysiseducationforensics+6
11 month ago
Previous1234Next