Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
49 results
ejbca-pqc-lab preview

ejbca-pqc-lab

GitHubmokokash/ejbca-pqc-lab

Pure PQC two-tier PKI hierarchy using ML-DSA-65 (NIST FIPS 204) on EJBCA Community Edition — Root CA + Sub CA with CRL and OCSP

cloud-securitycryptographyeducation+2
5 months ago
DB_Audit_Research preview

DB_Audit_Research

GitHubmthamil107/db_audit_research

Self-Defeating Audits: reproducible lab showing a low-privilege PostgreSQL role reversibly blinding a trigger-based auditor + poisoning attribution…

adversarial-attackdatabase-securitydefensive-tools+4
1 day ago
OdTM preview

OdTM

GitHubowasp/odtm

OWASP Ontology-driven Threat Modelling framework

cloud-securitycurated-resourceseducation+3
443 years ago
mcpguard-dynamic preview

mcpguard-dynamic

GitHubfacebook/mcpguard-dynamic

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

ai-securitycode-analysiscontainer-security+8
711 month ago
OWASP-Subtractive-Hardening-Top-10 preview

OWASP-Subtractive-Hardening-Top-10

GitHubowasp/owasp-subtractive-hardening-top-10

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber…

ai-securitycloud-securitycontainer-security+6
211 day ago
Threat_Model_Examples preview

Threat_Model_Examples

GitHubtaleliyahu/threat_model_examples

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

ai-securityapi-securitycloud-security+6
5151 year ago
AI-Infra-Guard preview

AI-Infra-Guard

GitHubtencent/ai-infra-guard

A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

ai-securitycloud-securitycontainer-security+7
4.9k1 day ago
heartbleed-proof-of-concept preview

heartbleed-proof-of-concept

GitHubundacmic/heartbleed-proof-of-concept

Proof of concept for exploiting the Heartbeat Extension bug detailed in the CVE-2014-0160. 🗝️ 🔓

educationexploitationpapers-research+2
53 years ago
longfellow-zk preview

longfellow-zk

GitHubgoogle/longfellow-zk

Implementation of the Google Zero-Knowledge library for Identity Protocols.

authenticationcryptographyeducation+3
1.3k8 days ago
serverless-prey preview

serverless-prey

GitHubpumasecurity/serverless-prey

Serverless Functions for establishing Reverse Shells to Lambda, Azure Functions, and Google Cloud Functions

cloud-securityeducationexploitation+5
2481 year ago
Johnny-You-Are-Fired preview

Johnny-You-Are-Fired

GitHubrub-nds/johnny-you-are-fired

Artifacts for the USENIX publication.

cryptographyemail-securitypapers-research+3
566 years ago
uoftctf-2025-chals-public preview

uoftctf-2025-chals-public

GitHubuoftctf/uoftctf-2025-chals-public

Challenge handouts, source code, and solutions for UofTCTF 2025

binary-exploitationcryptographyctf+6
401 year ago
quantum-zk-proof-poc preview

quantum-zk-proof-poc

GitHubtrailofbits/quantum-zk-proof-poc

Proof-of-concept code for beating Google's ZK proof of quantum cryptanalysis

cryptographyeducationexploitation+3
154 months ago
CVE-2026-36851 preview

CVE-2026-36851

GitHubsyntaxsaiyan/cve-2026-36851

Walkthrough and PoC of File path traversal vulnerability(CVE-2026-36851) for UnPoller 2.33.0

data-exfiltrationeducationexploitation+3
1 month ago
SecAssessment-GapDetection-Thesis preview

SecAssessment-GapDetection-Thesis

GitLabthesisgroup3/secassessment_gapdetect

Rule-based CLI tool that grades organizational defenses against MITRE ATT&CK and D3FEND frameworks, detects security gaps, and proposes mitigations.…

configuration-auditingdevsecopseducation+3
12 months ago
Vlun-Agent-X preview

Vlun-Agent-X

GitHubrenweimeng/vlun-agent-x

VulnAgent-X: A Layered Agentic Framework for Repository-Level Vulnerability Detection

ai-securitycode-analysisdynamic-analysis-sandboxing+4
5 months ago
sfop preview

sfop

GitHubsignal-sfop/sfop

Segmentation Fault-Oriented Programming exploitation technique

binary-exploitationexploitationpapers-research+1
203 months ago
Kaspersky_CVE-2024-3094 preview

Kaspersky_CVE-2024-3094

GitHubvesjolyjd/kaspersky_cve-2024-3094
code-analysisdynamic-analysis-sandboxingeducation+7
3 months ago
Previous123Next