Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
328 results
wordreaper preview

wordreaper

GitHubnemorous/wordreaper

📜 Scrape targeted wordlists for password cracking using CSS selectors

crawlerctfinformation-gathering+5
514 months ago
CVE-2023-4169_CVE-2023-3306_CVE-2023-4415 preview

CVE-2023-4169_CVE-2023-3306_CVE-2023-4415

GitHubthedarknessdied/cve-2023-4169_cve-2023-3306_cve-2023-4415

Ruijie-RG-EW1200G CVE-2023-4169_CVE-2023-3306_CVE-2023-4415

exploitationpassword-attackspenetration-testing+3
292 years ago
Windows-Privilege-Escalation-Notes preview

Windows-Privilege-Escalation-Notes

GitHubsaisathvik1/windows-privilege-escalation-notes

My handbook for Windows Privilege Escalation concepts. Do Check out my Playlist, link: https://www.youtube.com/playlist?list=PLlrnAg4kKF3puXLI0JyltbNJ…

ctfeducationexploitation+5
594 years ago
ActiveReign preview

ActiveReign

GitHubm8sec/activereign

A Network Enumeration and Attack Toolset for Windows Active Directory Environments.

command-and-controlexploitationinformation-gathering+2
2462 years ago
hacker-roadmap preview
Archived

hacker-roadmap

GitHubsundowndev/hacker-roadmap

A collection of hacking tools, resources and references to practice ethical hacking.

curated-resourceseducationexploitation+6
15.6k2 years ago
legion preview
Archived

legion

GitHubabacus-group-rto/legion

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

container-securityexploitationids-ips-evasion+8
1.1k1 year ago
CVE-2018-17240_exploit preview

CVE-2018-17240_exploit

GitHubfenrirsec/cve-2018-17240_exploit

Bash exploit for the CVE-2018-17240 (Netwave Cameras Memory Leak)

exploitationinformation-gatheringiot-security+2
11 year ago
CVE-2026-5076 preview

CVE-2026-5076

GitHubzycoder0day/cve-2026-5076

Proof-of-concept exploit for CVE-2026-5076 demonstrating unauthenticated admin account takeover in ARMember Premium via SQL injection and plaintext…

authenticationexploitationpassword-attacks+3
2 months ago
keepass-password-dumper preview

keepass-password-dumper

GitHubvdohney/keepass-password-dumper

Original PoC for CVE-2023-32784

digital-forensicsexploitationforensics+3
6533 years ago
w1f1t3kAl1 preview

w1f1t3kAl1

GitHubnu11secur1ty/w1f1t3kal1

w1f1t3kAl1

cryptographyfuzzingpassword-attacks+3
4710 days ago
CVE-2025-63353 preview

CVE-2025-63353

GitHubr0otk3r/cve-2025-63353

CVE-2025-63353

exploitationpassword-attackspenetration-testing+3
21 month ago
CVE-2025-10658 preview

CVE-2025-10658

GitHubjfriedli/cve-2025-10658
authenticationexploitationpassword-attacks+3
15 months ago
CVE-2024-42049-PoC preview

CVE-2024-42049-PoC

GitHubzeved/cve-2024-42049-poc

PoC for CVE-2024-42049

exploitationpassword-attackspenetration-testing+3
1 year ago
fluxion preview

fluxion

GitHubjas502n/fluxion

fluxion

password-attackspenetration-testingphishing+4
8 years ago
LsassReflectDumping preview

LsassReflectDumping

GitHuboffensive-panda/lsassreflectdumping

This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone is created,…

memory-forensicspassword-attackspost-exploitation+1
2201 year ago
wodat preview

wodat

GitHubinitroot/wodat

Windows Oracle Database Attack Toolkit

database-securitypassword-attackspenetration-testing+1
804 years ago
bw-dump preview

bw-dump

GitHubmarkuta/bw-dump

A proof-of-concept for (CVE-2023-38840) that extracts plaintext master passwords from a locked Bitwarden vault.

digital-forensicsexploitationforensics+4
422 years ago
Zimbra-Valid-Login-Checker preview

Zimbra-Valid-Login-Checker

GitHubjenderal92/zimbra-valid-login-checker
authenticationpassword-attackspenetration-testing+2
12 months ago
Previous1…345…19Next