Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
383 results
oscp-notes-2026 preview

oscp-notes-2026

GitLabwattocyber/oscp-notes-2026

OSCP field notebook: merged technique vault and numbered notes. MIT.

curated-resourceseducationinformation-gathering+7
11 days ago
CVE-2026-31278 preview

CVE-2026-31278

GitHubmda1r/cve-2026-31278

CVE write-up for Active Directory credential exposure vulnerability in Suprema BioStar 2

exploitationnetwork-securitypapers-research+3
2 months ago
CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability preview

CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability

GitHubxaitax/cve-2024-21413-microsoft-outlook-remote-code-execution-vulnerability

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

email-securityexploitationinformation-gathering+5
7702 years ago
C2-Tool-Collection preview

C2-Tool-Collection

GitHuboutflanknl/c2-tool-collection

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

command-and-controlexploit-frameworksinformation-gathering+8
1.4k2 years ago
CVE-2023-24055_PoC preview

CVE-2023-24055_PoC

GitHubalt3kx/cve-2023-24055_poc

CVE-2023-24055 PoC (KeePass 2.5x)

data-exfiltrationexploitationpassword-attacks+3
2533 years ago
CVE-2024-28085 preview

CVE-2024-28085

GitHubskyler-ferrante/cve-2024-28085

WallEscape vulnerability in util-linux

exploitationpassword-attackspost-exploitation+3
562 years ago
By-Poloss..-..CVE-2026-11551-PoC preview

By-Poloss..-..CVE-2026-11551-PoC

GitHubpolosss/by-poloss..-..cve-2026-11551-poc

Unauthenticated Privilege Escalation via Account Takeover

exploitationpassword-attackspenetration-testing+3
12 months ago
CVE-2023-30765 preview

CVE-2023-30765

GitHub0xfml/cve-2023-30765

CVE-2023-30765 / ZDI-23-905 - Delta Electronics Infrasuite Device Master Privilege Escalation

exploitationpassword-attackspenetration-testing+3
3 years ago
CVE-2012-1803 preview

CVE-2012-1803

GitHubx3roxismygood/cve-2012-1803

Critical vulnerability in Siemens RuggedCom ROS devices allowing attackers to derive a hidden factory account password from the device MAC address…

exploitationhardware-iot-securitynetwork-security+3
3 months ago
CVE-2026-5076 preview

CVE-2026-5076

GitHubzycoder0day/cve-2026-5076

Proof-of-concept exploit for CVE-2026-5076 demonstrating unauthenticated admin account takeover in ARMember Premium via SQL injection and plaintext…

authenticationexploitationpassword-attacks+3
3 months ago
CVE-2024-39211 preview

CVE-2024-39211

GitHubartemy-ccrsky/cve-2024-39211

User Enumeration vulnerability in Kaiten (workflow management system)

information-gatheringosintpassword-attacks+3
71 year ago
CVE-2025-10658 preview

CVE-2025-10658

GitHubjfriedli/cve-2025-10658

Python exploit script for CVE-2025-10658: brute-forces 6-digit OTP in WordPress SupportCandy guest login to achieve full account takeover via…

authenticationexploitationpassword-attacks+3
15 months ago
Joomla-CMS-Full-Lifecycle-Pentest preview

Joomla-CMS-Full-Lifecycle-Pentest

GitHubmarwan651/joomla-cms-full-lifecycle-pentest

A comprehensive full-lifecycle penetration testing project on Joomla 4.2.5 exploiting CVE-2023-23752 inside a Dockerized lab environment

educationexploitationinformation-gathering+7
3 months ago
CVE-2023-23397 preview

CVE-2023-23397

GitHubtrackflaw/cve-2023-23397

Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.

email-securityexploitationpassword-attacks+3
1323 years ago
VULNERAVEL-CVE-2018-14847---CREDENCIAIS-EXTRAIDAS preview

VULNERAVEL-CVE-2018-14847---CREDENCIAIS-EXTRAIDAS

GitHubmourafuseti/vulneravel-cve-2018-14847---credenciais-extraidas

VULNERAVEL CVE-2018-14847 - CREDENCIAIS EXTRAIDAS MIKROTIK EM PYTHON

exploitationiot-securitynetwork-security+3
13 months ago
Nettacker preview

Nettacker

GitHubowasp/nettacker

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

api-securityapi-security-testingdynamic-code-analysis+14
5.5k16h 6m ago
CVE-2017-2751 preview
Archived

CVE-2017-2751

GitHubbadersz/cve-2017-2751

Mini-paper on CVE-2017-2751, HP EFI password extraction.

educationexploitationfirmware-analysis+3
13 years ago
brutespray preview

brutespray

GitHubx90skysn3k/brutespray

Fast, multi-protocol credential brute-forcer. Parses Nmap, Nessus, and Nexpose output to automatically test default and custom credentials across 30+…

password-attackspassword-crackingpenetration-testing
2.5k1 day ago
Previous12…22Next