Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
20 results
PDFCrack preview

PDFCrack

GitHubusethisname1419/pdfcrack

PDF Crack is a GUI tool used for cracking pdf passwords. includes 3 cracking options

encryption-decryption-toolspassword-attackspassword-cracking+1
7
16 days ago
iOSRestrictionBruteForce preview

iOSRestrictionBruteForce

GitHubthehappydinoa/iosrestrictionbruteforce

Crack iOS Restriction Passcodes with Python

forensicsios-securitymobile-security+1
3751 month ago
cupp preview

cupp

GitHubmebus/cupp

Interactive password profiler that generates targeted wordlists by gathering personal details about a user, used for penetration testing and forensic…

information-gatheringosintpassword-attacks+1
6.5k1 month ago
NextPass preview

NextPass

GitHub0xblarky/nextpass

A tool which can be used to generate password list or dictionary from the details of the target

ai-securityinformation-gatheringpassword-attacks+3
66 months ago
RedTeam_toolkit preview

RedTeam_toolkit

GitHubsignorrayan/redteam_toolkit

Red Team Toolkit is an Open-Source Django Offensive Web-App which is keeping the useful offensive tools used in the red-teaming together.

exploitationinformation-gatheringpassword-attacks+5
5736 months ago
Oh365UserFinder preview

Oh365UserFinder

GitHubdievus/oh365userfinder

Enumerates valid Microsoft 365 accounts and domains via response analysis, with password spraying support and throttling detection to avoid lockouts.

information-gatheringosintpassword-attacks+1
5787 months ago
LaZagne preview

LaZagne

GitHubalessandroz/lazagne

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

encryption-decryption-toolsforensicshash-analysis+8
11.0k11 months ago
Cable preview

Cable

GitHublogangoins/cable

.NET post-exploitation toolkit for Active Directory reconnaissance and exploitation

authenticationconfiguration-auditingexploitation+8
4021 year ago
IPSpinner preview

IPSpinner

GitHubsynacktiv/ipspinner

IPSpinner works as a local proxy that redirects requests through external services.

cloud-securityids-ips-evasionpassword-attacks+3
1241 year ago
lnkbomb preview
Archived

lnkbomb

GitHubdievus/lnkbomb

Malicious shortcut generator for collecting NTLM hashes from insecure file shares.

exploitationinformation-gatheringlateral-movement+3
3631 year ago
Modules preview
Archived

Modules

GitHubhavocframework/modules

Modules used by the Havoc Framework

authenticationcommand-and-controlinformation-gathering+5
2732 years ago
CVE-2019-9053-Exploit-in-Python-3 preview

CVE-2019-9053-Exploit-in-Python-3

GitHubjason-siu/cve-2019-9053-exploit-in-python-3

Python 3 exploit for CVE-2019-9053 (SQL injection) with hash-cracking, updated from outdated Python 2 code for TryHackMe CTF use.

ctfeducationexploitation+3
2 years ago
princeprocessor preview

princeprocessor

GitHubhashcat/princeprocessor

Standalone password candidate generator using the PRINCE algorithm

password-attackspassword-crackingpayload-generation
5022 years ago
CVE-2023-33243 preview

CVE-2023-33243

GitHubredteampentesting/cve-2023-33243

PoC for login with password hash in STARFACE

authenticationexploitationpassword-attacks+3
13 years ago
bugstropics preview

bugstropics

GitHubdozernz/bugstropics

Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk

cryptographyembedded-systems-securityexploitation+4
124 years ago
GoAWSConsoleSpray preview

GoAWSConsoleSpray

GitHubwhiteoaksecurity/goawsconsolespray

Tool to spray AWS Console IAM Logins

authenticationcloud-securityinformation-gathering+3
364 years ago
CVE-2021-36934-export-shadow-volume-POC preview

CVE-2021-36934-export-shadow-volume-POC

GitHubolivierlaflamme/cve-2021-36934-export-shadow-volume-poc

Proof-of-concept exploit for CVE-2021-36934, exporting Windows Volume Shadow Copy files to enable privilege escalation and hash-based credential…

exploitationpassword-attackspost-exploitation+2
15 years ago
crowbar preview

crowbar

GitHubgalkan/crowbar

Crowbar is brute forcing tool that can be used during penetration tests. It is developed to support protocols that are not currently supported by…

password-attackspenetration-testing
1.5k6 years ago
Previous12Next