Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
18 results
Karkinos preview

Karkinos

GitHubhelich0pper/karkinos

Penetration Testing and Hacking CTF's Swiss Army Knife with: Reverse Shell Handling - Encoding/Decoding - Encryption/Decryption - Cracking Hashes /…

ctfencryption-decryption-toolshash-analysis+5
418
11 months ago
WP-Contest-Gallery-28.1.4-Exploit preview

WP-Contest-Gallery-28.1.4-Exploit

GitHubcerberusmrxi/wp-contest-gallery-28.1.4-exploit

Complete exploitation toolkit for CVE-2026-3180 - WordPress Contest Gallery SQL Injection vulnerability. Features automated data extraction, WAF…

exploitationpassword-crackingpayload-development+4
11 month ago
BruteSploit preview
Archived

BruteSploit

GitHubscreetsec/brutesploit

BruteSploit is a collection of method for automated Generate, Bruteforce and Manipulation wordlist with interactive shell. That can be used during a…

ctfpassword-attackspassword-cracking+3
7746 years ago
Cloudtopolis preview

Cloudtopolis

GitHubjoelgmsec/cloudtopolis

Zero Infrastructure Password Cracking

cloud-securityeducationpassword-cracking+1
4181 year ago
keepassxc-fzf preview

keepassxc-fzf

GitHubcreusvictor/keepassxc-fzf

A lightweight CLI tool to interactively search and access your KeePassXC database entries using fzf. Fast, secure, and terminal-centric.

authenticationencryption-decryption-toolsgeneral-purpose-utilities+2
106 months ago
Narthex preview

Narthex

GitHubmichaeldim02/narthex

Modular personalized dictionary generator.

password-attackspassword-crackingpenetration-testing
2112 years ago
BetterBackdoor preview

BetterBackdoor

GitHubthatcherclough/betterbackdoor

A backdoor with a multitude of features.

command-and-controldata-exfiltrationpassword-cracking+4
2935 years ago
LinPwn preview

LinPwn

GitHubandromeda1957/linpwn

Interactive post-exploitation tool for Linux privilege escalation, enumeration, file exfiltration, and credential harvesting via reverse shell.

information-gatheringpassword-crackingpenetration-testing+2
376 years ago
VSHG preview

VSHG

GitHubflothesysadmin/vshg

Shell script addon for GnuPG that strengthens symmetric encryption with Argon2 memory-hard KDF, SHA-384 iterations, and cascaded AES-256/CAST5…

cryptographyencryption-decryption-toolspassword-cracking
177 years ago
CVE-2022-44877-white-box preview

CVE-2022-44877-white-box

GitHubhotpotcookie/cve-2022-44877-white-box

Red Team utilities for setting up CWP CentOS 7 payload & reverse shell (Red Team 9 - CW2023)

command-and-controlexploitationids-ips-evasion+6
62 years ago
Penetration-Test preview

Penetration-Test

GitHubjeevananand1202/penetration-test

Full penetration test report against `IP` (Ubuntu VM). Attack chain: directory enumeration → backup file discovery → password cracking → CMS file…

educationexploitationpassword-cracking+6
4 months ago
SimpleCTF-THM-Walkthrough preview

SimpleCTF-THM-Walkthrough

GitHubpaulameg/simplectf-thm-walkthrough

First CTF successfully completed! This repo documents my walkthrough of TryHackMe's Simple CTF. It covers network reconnaissance (Nmap), web…

ctfeducationpassword-cracking+5
13 months ago
Audit-BlackBox-Web-to-Root preview

Audit-BlackBox-Web-to-Root

GitHubfbm31/audit-blackbox-web-to-root

Audit de sécurité Black Box d'un serveur Drupal 7. Démonstration d'une Kill Chain complète : Injection SQL (CVE-2014-3704) ➔ RCE ➔ Reverse Shell ➔…

command-and-controleducationexploitation+8
7 months ago
ZeroLogon-to-Shell preview

ZeroLogon-to-Shell

GitHubc3rrberu5/zerologon-to-shell

This is a combination of the zerologon_tester.py code (https://raw.githubusercontent.com/SecuraBV/CVE-2020-1472/master/zerologon_tester.py) and the…

exploitationpassword-crackingpenetration-testing+3
3 years ago
vss-fr2system preview

vss-fr2system

GitHubsailay1996/vss-fr2system

test

exploitationpassword-crackingpenetration-testing+4
1083 months ago
zyxel-p870hn-hardware-hacking preview

zyxel-p870hn-hardware-hacking

GitHubdanyw24/zyxel-p870hn-hardware-hacking

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

educationembedded-systems-securityexploitation+6
8 days ago
nec_aterm_tools preview

nec_aterm_tools

GitHubinfobyte/nec_aterm_tools
embedded-systems-securityexploitationfirmware-analysis+4
34 years ago
CVE-2025-24054 preview

CVE-2025-24054

GitHubuntouchable17/cve-2025-24054

Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure

exploitationpassword-crackingpayload-generation+4
29 months ago