Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
435 results
device-activity-tracker preview

device-activity-tracker

GitHubgommzystudio/device-activity-tracker

A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak…

educationexploitationinformation-gathering+7
5.1k
7 months ago
lava preview

lava

GitHubpanda-re/lava

LAVA: Large-scale Automated Vulnerability Addition

binary-analysiseducationfuzzing+2
4171 month ago
cai preview

cai

GitHubaliasrobotics/cai

Cybersecurity AI (CAI), the framework for AI Security

ai-securityctfeducation+8
9.8k1 month ago
garak preview

garak

GitHubnvidia/garak

Modular LLM vulnerability scanner that probes for hallucination, data leakage, prompt injection, jailbreaks, and toxicity using static, dynamic, and…

ai-securityeducationpapers-research+3
8.9k1 day ago
hackerone-reports preview

hackerone-reports

GitHubreddelexc/hackerone-reports

Curated collection of top HackerOne bug bounty reports organized by vulnerability type and program, with scripts to fetch, deduplicate, and rank…

ctfcurated-resourceseducation+7
6.5k4 days ago
AI-Infra-Guard preview

AI-Infra-Guard

GitHubtencent/ai-infra-guard

A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

ai-securitycloud-securitycontainer-security+7
5.0k1 day ago
bindiff preview

bindiff

GitHubgoogle/bindiff

Quickly find differences and similarities in disassembled code

binary-analysiseducationfirmware-analysis+5
3.1k2 days ago
Awesome-LLM4Cybersecurity preview

Awesome-LLM4Cybersecurity

GitHubtmylla/awesome-llm4cybersecurity

Curated systematic literature review of 756+ papers on LLM applications in cybersecurity, covering threat intelligence, vulnerability detection,…

ai-securitycurated-resourceseducation+6
1.8k20h 41m ago
token-priv preview

token-priv

GitHubhatriot/token-priv

Token Privilege Research

exploitationpapers-researchpost-exploitation+1
8908 years ago
wpair-app preview

wpair-app

GitHubzalexdev/wpair-app

WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This…

android-securitybluetooth-securityeducation+6
8237 months ago
paranoid_crypto preview

paranoid_crypto

GitHubgoogle/paranoid_crypto

Paranoid's library contains implementations of checks for well known weaknesses on cryptographic artifacts.

cryptographypapers-researchstatic-analysis+2
8031 year ago
anamnesis-release preview

anamnesis-release

GitHubseanheelan/anamnesis-release

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

ai-securitybinary-exploitationeducation+9
6326 months ago
bitlocker-attacks preview

bitlocker-attacks

GitHubwack0/bitlocker-attacks

A list of public attacks on BitLocker

curated-resourcesencryption-decryption-toolsexploitation+4
4651 month ago
o3_finds_cve-2025-37899 preview

o3_finds_cve-2025-37899

GitHubseanheelan/o3_finds_cve-2025-37899

Artefacts for blog post on finding CVE-2025-37899 with o3

curated-resourceseducationexploitation+2
3521 year ago
t-reqs preview

t-reqs

GitHubbahruzjabiyev/t-reqs

Grammar-based HTTP/1 fuzzer with mutation ability

fuzzingpapers-researchvulnerability-analysis+1
2631 year ago
Copy-Fail-CVE-2026-31431-Kubernetes-PoC preview

Copy-Fail-CVE-2026-31431-Kubernetes-PoC

GitHubpercivalll/copy-fail-cve-2026-31431-kubernetes-poc

PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared image layers.…

cloud-securitycontainer-escapeeducation+4
1873 months ago
CVE-2022-0778 preview

CVE-2022-0778

GitHubdrago-96/cve-2022-0778

Proof of concept for CVE-2022-0778, which triggers an infinite loop in parsing X.509 certificates due to a bug in BN_mod_sqrt

binary-analysiscryptographyeducation+3
1814 years ago
CVE-2024-0044 preview

CVE-2024-0044

GitHubcanyie/cve-2024-0044

RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation…

android-securitybinary-exploitationeducation+5
1801 year ago
Previous12…25Next