Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1593 results
Windows-Kernel-Exploitation preview

Windows-Kernel-Exploitation

GitHubvp777/windows-kernel-exploitation

Techniques and tools for Windows kernel exploitation, covering pool overflow exploitation, segment heap metadata abuse, and debugging scripts for…

binary-exploitationeducationexploitation+3
266
2 days ago
Final-project-SQL-injection-pipeline preview

Final-project-SQL-injection-pipeline

GitHubmlily2024/final-project-sql-injection-pipeline

Hybrid machine-learning pipelines for detecting SQL injection in web traffic, combining DistilBERT and BERT-GNN models with adversarial training and…

anomaly-detectioneducationmachine-learning+3
1 month ago
LR-WebPKI preview

LR-WebPKI

GitHubnserser/lr-webpki

Reference implementation of LR+ post-quantum authentication over WebPKI CA context, with corpus pipeline, reconstruction, evaluation, and provenance…

cloud-infrastructure-securitycryptographyeducation+2
4 days ago
WeaveMark preview

WeaveMark

GitHubqkrrkd90-source/weavemark

Reference implementation of a multi-bit LLM watermarking scheme using coded payload spreading, unbiased reweighting, and soft-decision ECC decoding…

ai-securitycryptographyeducation+2
1 month ago
safety-awareness preview

safety-awareness

GitHubcucu220123/safety-awareness

Research code for extracting and training safety-awareness directions in multimodal LLMs to improve refusal behavior while limiting benign-task drift.

ai-securityeducationmachine-learning+1
6 days ago
ROPE preview

ROPE

GitHubxhowenma/rope

Defense framework enforcing routed origin policy to prevent indirect prompt injection in tool-using LLM agents, with deterministic origin checks and…

ai-securitydefensive-toolseducation+2
3 days ago
CamoDocs preview

CamoDocs

GitHubjaewonalive/camodocs

Research implementation of a poisoning attack against retrieval-augmented language models using camouflaged documents to evade filtering defenses and…

adversarial-attackai-securityeducation+1
4 days ago
gha-lab-23db52563c preview

gha-lab-23db52563c

GitHubpvharmo2/gha-lab-23db52563c

Security-research lab: reproduction of CVE-2025-10894 (PR-title injection in GitHub Actions) — snapshot of nrwl/nx

curated-resourceseducationpapers-research+1
1 day ago
gha-lab-6ab39df295 preview

gha-lab-6ab39df295

GitHubpvharmo2/gha-lab-6ab39df295

Controlled security-research lab reproducing CVE-2024-45798 (GHSA-h52q-xhg2-6jw8) in espressif/arduino-esp32 — poisoned-artifact pwn request via…

curated-resourceseducationexploitation+2
1 day ago
CVE-2026-9335-keras-hdf5-externallink preview

CVE-2026-9335-keras-hdf5-externallink

GitHubpaparojonathan/cve-2026-9335-keras-hdf5-externallink

CVE-2026-9335: KerasFileEditor and load_weights follow h5py ExternalLinks, disclosing arbitrary local HDF5 file contents in keras ≤ 3.14.0. Advisory…

curated-resourceseducationexploitation+2
1 day ago
CVE-2026-82221-PoC preview

CVE-2026-82221-PoC

GitHubgabrielftanaka/cve-2026-82221-poc

PoC for Unauthenticated Reflected Cross-Site Scripting (XSS) in RegistrationMagic WordPress Plugin

educationexploitationpapers-research+2
2 days ago
cve-2026-82329-jfrog-artifactory preview

cve-2026-82329-jfrog-artifactory

GitHubdinosn/cve-2026-82329-jfrog-artifactory

Reproducible Docker lab and Python PoC for CVE-2026-82329, an unauthenticated auth-bypass in JFrog Artifactory leading to admin takeover, with…

authenticationcloud-securityexploitation+5
12 days ago
security-advisories preview

security-advisories

GitHubthreatlance-org/security-advisories

Public repository of security advisories with detailed CVE write-ups, including vulnerability descriptions, severity ratings, and remediation…

curated-resourceseducationpapers-research+2
1 month ago
postgresql-cve-2026-14662 preview

postgresql-cve-2026-14662

GitHubkihara-1/postgresql-cve-2026-14662

PostgreSQL の全文検索(tsvector/tsquery)に見つかった範囲外書き込み脆弱性 CVE-2026-14662 を、修正前(18.4)と修正後(18.6)を Docker で並べて動かして検証した記録と発表資料

curated-resourcesdatabase-securityeducation+3
2 days ago
CVE-2026-82329 preview

CVE-2026-82329

GitHubhorkimhab/cve-2026-82329

Educational proof-of-concept for CVE-2026-82329, providing vulnerability analysis and authorized testing resources in isolated environments.

curated-resourceseducationexploitation+2
2 days ago
CVE-2026-30252 preview

CVE-2026-30252

GitHubvenablee/cve-2026-30252

The ZenShare Suite application is vulnerable by a Reflected Cross-Site Scripting (XSS) vulnerability, affecting web application login and recovery…

educationexploitationpapers-research+2
3 days ago
gha-lab-fb32aba4a3 preview

gha-lab-fb32aba4a3

GitHubpvharmo2/gha-lab-fb32aba4a3

Authorized lab reproduction of CVE-2023-26493 (GHSL-2023-027): command injection via github.head_ref in cocos-engine's <Web> Interface check…

educationexploitationpapers-research+1
3 days ago
SwordStamp preview

SwordStamp

GitHubd-diaa/swordstamp

Semantic Watermarking with Order-Robust Detection over Sub-sentence Units

ai-securitycryptographycurated-resources+2
7 days ago
Previous12…89Next