Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
22 results
harpyTools preview

harpyTools

GitHubjssngc/harpytools

Automated Active Directory post-exploitation toolkit for Kerberos ticket extraction, NTLM relay attacks, and lateral movement via NetExec, Impacket,…

command-and-controlexploitationlateral-movement+6
20
13 days ago
SSTImap preview

SSTImap

GitHubvladko312/sstimap

Automatic SSTI detection tool with interactive interface

code-analysiscommand-and-controldynamic-code-analysis+6
1.6k20 days ago
ezXSS preview

ezXSS

GitHubssl/ezxss

Blind XSS detection and exploitation platform with persistent sessions, reverse proxy, and automated information gathering for penetration testers…

information-gatheringpayload-generationpenetration-testing+2
2.3k2 months ago
LLMMap preview

LLMMap

GitHubhellsender01/llmmap

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

ai-securityapi-security-testingdynamic-analysis-sandboxing+6
2076 months ago
React2Shell-CVE-2025-55182-Advanced-Scanner preview

React2Shell-CVE-2025-55182-Advanced-Scanner

GitHubysfcndgr/react2shell-cve-2025-55182-advanced-scanner

Automated scanner for CVE-2025-55182 RCE in Next.js with 8 WAF bypass techniques, custom command execution, and test-only detection mode for…

command-and-controlexploitationpayload-generation+4
9 months ago
CVE-2025-55182-NextJS-Scanner-React2Shell-PoC preview

CVE-2025-55182-NextJS-Scanner-React2Shell-PoC

GitHubexrienz/cve-2025-55182-nextjs-scanner-react2shell-poc

Automated detection and exploitation toolkit for CVE-2025-55182, a critical RCE in Next.js React Server Components. Features multi-layered…

command-and-controlexploitationpayload-generation+5
9 months ago
CVE-2025-8550 preview
Archived

CVE-2025-8550

GitHubbytereaper77/cve-2025-8550

Automated Proof-of-Concept exploit for CVE-2025-8550, a reflected XSS in atjiu pybbs. Features 20+ payload variations, cookie exfiltration,…

exploitationpayload-generationpenetration-testing+3
311 months ago
EvilDroid preview

EvilDroid

GitHubsridhar-sec/evildroid

EvilDroid automates the exploitation of CVE-2024-0044, installing malicious payloads on a target device and extracting sensitive data. It features…

android-securityeducationexploitation+3
301 year ago
WIndows-7-automated-exploitation-using-metasploit-framework- preview

WIndows-7-automated-exploitation-using-metasploit-framework-

GitHubpelagornisandersi/windows-7-automated-exploitation-using-metasploit-framework-

Automated bash script which scans an ip for potential vulnerability to eternalblue using nmap and then exploit using metasploit framework which uses…

exploitationexploit-frameworkspayload-generation+3
1 year ago
-CVE-2024-52010- preview

-CVE-2024-52010-

GitHubiuds/-cve-2024-52010-

Automated exploit tool targeting CVE-2024-52010 for penetration testing and vulnerability validation.

exploitationpayload-generationpenetration-testing+2
1 year ago
CVE-2024-53677-Exploit preview

CVE-2024-53677-Exploit

GitHubshishirghimir/cve-2024-53677-exploit

Automated Python exploit script for CVE-2024-53677 with JSP web payload delivery, enabling targeted vulnerability exploitation and penetration…

exploitationpayload-generationpenetration-testing+2
31 year ago
autoblue preview

autoblue

GitHubatithkhawas/autoblue

AutoBlue - Automated EternalBlue (CVE-2017-0144 / MS17-010) exploitation tool leveraging Nmap and Metasploit for ethical hacking, penetration…

ctfeducationexploitation+5
41 year ago
PasteJacker preview

PasteJacker

GitHubd4vinci/pastejacker

Hacking systems with the automation of PasteJacking attacks.

exploit-frameworkspayload-generationpenetration-testing+3
4021 year ago
CVE-2018-20250 preview

CVE-2018-20250

GitHubtannlh/cve-2018-20250

Exploit for CVE-2018-20250 (WinRAR ACE path traversal) with automated payload generation and Metasploit reverse shell integration for penetration…

command-and-controlexploitationpayload-generation+3
2 years ago
Zeebsploit preview

Zeebsploit

GitHubjack-new-project/zeebsploit

Modular exploitation framework for penetration testing, featuring automated payload generation, reconnaissance modules, and post-exploitation…

exploit-frameworksinformation-gatheringpayload-generation+1
1763 years ago
CVE-2023-23638-Tools preview

CVE-2023-23638-Tools

GitHubp4x1s/cve-2023-23638-tools

Exploit tool for CVE-2023-23638, providing automated exploitation and payload generation for targeted vulnerability assessment and penetration…

exploitationpayload-generationpenetration-testing+2
3 years ago
Androspy preview

Androspy

GitHubcyb0r9/androspy

Automated Android backdoor generator with crypter, IP poisoning, and Metasploit payload integration for penetration testing and red team operations.

android-securityexploit-frameworkspayload-development+3
2677 years ago
CVE-2004-2271-MiniShare-1.4.1-Buffer-Overflow preview

CVE-2004-2271-MiniShare-1.4.1-Buffer-Overflow

GitHubpercussiveelbow/cve-2004-2271-minishare-1.4.1-buffer-overflow

Automated buffer overflow exploit for MiniShare 1.4.1 (CVE-2004-2271) with integrated msfvenom payload generation for penetration testing and…

exploitationpayload-generationpenetration-testing+2
8 years ago
Previous12Next