Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
66 results
sqlancer preview

sqlancer

GitHubsqlancer/sqlancer

Automated testing to find logic and performance bugs in database systems

database-securityeducationfuzzing+2
1.7k2 days ago
nextpnr preview

nextpnr

GitHubyosyshq/nextpnr

nextpnr portable FPGA place and route tool

educationembedded-systems-securityfirmware-analysis+2
1.7k4 days ago
bindiff preview

bindiff

GitHubgoogle/bindiff

Quickly find differences and similarities in disassembled code

binary-analysiseducationfirmware-analysis+5
3.2k7 days ago
ZeroLogon-PoC-DC-Pwn preview

ZeroLogon-PoC-DC-Pwn

GitHubmods20hh/zerologon-poc-dc-pwn

Zerologon (CVE-2020-1472) Proof-of-Concept application - Critical Active Directory vulnerability exploitation tool.

educationexploitationpapers-research+6
410 days ago
pharos preview

pharos

GitHubcmu-sei/pharos

Automated static analysis tools for binary programs

binary-analysiseducationmalware-analysis+4
1.7k22 days ago
mcp-attack-detection-sentinel preview

mcp-attack-detection-sentinel

GitHubj-dahl7/mcp-attack-detection-sentinel

Azure Sentinel detection lab for MCP attack patterns, providing 5 analytics rules and 7 KQL hunting queries against SSRF token theft, tool poisoning,…

ai-securitycloud-securityeducation+5
21 month ago
mcpguard-dynamic preview

mcpguard-dynamic

GitHubfacebook/mcpguard-dynamic

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

ai-securitycode-analysiscontainer-security+8
721 month ago
CVE-2026-41940-analysis preview

CVE-2026-41940-analysis

GitHuboguz-kagan-akar/cve-2026-41940-analysis

In-depth technical analysis of CVE-2026-41940, a critical pre-authentication CRLF injection in cPanel/WHM enabling unauthenticated root session…

authentication-authorizationeducationexploitation+5
1 month ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubsh4den/cve-2026-24061

Proof-of-concept exploit for CVE-2026-24061, a critical authentication bypass in GNU inetutils-telnetd. Provides unauthenticated remote root shell…

authenticationcommand-and-controleducation+7
61 month ago
pdf.js-CVE-2024-4367 preview

pdf.js-CVE-2024-4367

GitHubveronimo669/pdf.js-cve-2024-4367

Client-side scanner that detects CVE-2024-4367 (PDF.js RCE) on any website via JavaScript bundle analysis, version fingerprinting, and exploitation…

educationexploitationinformation-gathering+5
12 months ago
CVE-2026-46552 preview

CVE-2026-46552

GitHub0xmrma/cve-2026-46552

NocoDB Shared-Base Links Could Invite Real Base Members and Survive Share Revocation

authentication-authorizationeducationpapers-research+3
2 months ago
xtride preview

xtride

GitHubpr0me/xtride

N-gram-based type recovery tool for binaries, recovering structures and function signatures from decompiled code with high throughput and actionable…

binary-analysisdebuggerseducation+5
262 months ago
SecAssessment-GapDetection-Thesis preview

SecAssessment-GapDetection-Thesis

GitLabthesisgroup3/secassessment_gapdetect

Rule-based CLI tool that grades organizational defenses against MITRE ATT&CK and D3FEND frameworks, detects security gaps, and proposes mitigations.…

configuration-auditingdevsecopseducation+3
12 months ago
CVE-2025-67511 preview

CVE-2025-67511

GitHubedoardottt/cve-2025-67511

Detailed disclosure of CVE-2025-67511, a command injection vulnerability in the CAI framework's SSH tool that allows AI agents to be tricked into…

ai-securitycommand-and-controleducation+5
62 months ago
xz-backdoor-research preview

xz-backdoor-research

GitHubnnatsopoulos/xz-backdoor-research

CVE-2024-3094 XZ Utils backdoor research - attack surface visualiser, system vulnerability checker, and general Linux CVE assessment tool

educationforensicsincident-response+5
12 months ago
kassandra_x33fcon_2026 preview

kassandra_x33fcon_2026

GitHubthreathunters-io/kassandra_x33fcon_2026

This repository contains the research tool presented at x33fcon 2026, along with the associated presentation slides. The content is made available…

curated-resourceseducationpapers-research
642 months ago
polytracker preview

polytracker

GitHubtrailofbits/polytracker

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

binary-analysisdynamic-code-analysiseducation+4
5982 months ago
opac-fast-automation preview

opac-fast-automation

GitHubrimbadirgantara/opac-fast-automation

Automated testing tool for CVE-2025-65862 (SLiMS Bulian v9.7.2 arbitrary file upload to RCE). Uploads ZIP payloads to verify vulnerability in target…

educationexploitationpapers-research+3
2 months ago
Previous1234Next