Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
325 results
Zhilly preview

Zhilly

GitLabsacriphanius/zhilly

🛡️ AI-powered portable cybersecurity & pentesting assistant built on ESP32-S3 (LilyGO T-Embed CC1101 & T-Watch S3). Features voice-controlled RF…

embedded-systems-securityhardware-hackingiot-security+6
1
28 days ago
PolyEngine preview

PolyEngine

GitHublongwayhomie/polyengine

PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV…

anti-botbinary-analysisctf+6
15726 days ago
LOG4J-CVE-2021-44228 preview
Archived

LOG4J-CVE-2021-44228

GitHubsumitpathania03/log4j-cve-2021-44228

Proof-of-concept for Log4Shell (CVE-2021-44228) demonstrating remote code execution via JNDI injection, including vulnerable server setup, exploit…

command-and-controlexploitationpacket-sniffing-analysis+3
3 years ago
pentest-muse-cli preview

pentest-muse-cli

GitHubabstractengine/pentest-muse-cli

AI-powered assistant for penetration testers that generates payloads, analyzes code, performs reconnaissance, and executes command-line actions to…

ai-securitycode-analysiseducation+4
2362 years ago
CVE-2017-12615 preview

CVE-2017-12615

GitHubk3ystr0k3r/cve-2017-12615

CVE-2017-12615 - Apache Tomcat Remote Code Execution (RCE)

code-analysiseducationexploitation+4
2 months ago
goshs preview

goshs

GitHubgoshs-labs/goshs

Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP…

command-and-controlctfdns-analysis+5
9655 days ago
Hack-Tool preview

Hack-Tool

GitHubrevanmalang/hack-tool

ALL IN ONE Hacking Tool For Hackers

ctfexploit-frameworksforensics+9
513 years ago
markdown-exfil-tester preview

markdown-exfil-tester

GitHubtrerb/markdown-exfil-tester

Black-box test whether an LLM chatbot is vulnerable to markdown/HTML exfil (CVE-2025-32711 class). Spins up a sink, sends payloads, renders in…

ai-securityctfdynamic-analysis-sandboxing+6
4 months ago
bugbounty-cheatsheet preview

bugbounty-cheatsheet

GitHubedoverflow/bugbounty-cheatsheet

A list of interesting payloads, tips and tricks for bug bounty hunters.

ctfcurated-resourceseducation+6
6.5k5 years ago
bscan preview

bscan

GitHubwelchbj/bscan

an asynchronous target enumeration tool

ctfinformation-gatheringnetwork-mapping+4
2517 years ago
Blackash-CVE-2025-55182 preview

Blackash-CVE-2025-55182

GitHubshen771/blackash-cve-2025-55182

CVE-2025-55182

command-and-controlctfeducation+7
9 months ago
AllAboutBugBounty preview

AllAboutBugBounty

GitHubdaffainfo/allaboutbugbounty

All about bug bounty (bypasses, payloads, and etc)

ctfcurated-resourceseducation+7
6.8k3 years ago
JYso preview

JYso

GitHubqi4l/jyso

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

command-and-controlctfexploit-frameworks+5
1.8k2 months ago
BoxPwnr preview

BoxPwnr

GitHub0ca/boxpwnr

A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, Cybench,…

ai-securityctfeducation+8
4491 month ago
CVE-2026-42945-POC preview

CVE-2026-42945-POC

GitHubcipherspy/cve-2026-42945-poc

exploit for CVE-2026-42945

binary-exploitationcommand-and-controlctf+7
613 months ago
PSTrojanFile preview

PSTrojanFile

GitHubhyp3rlinx/pstrojanfile

Unfixed Windows PowerShell Filename Code Execution POC

ctfeducationexploitation+6
422 years ago
Cybersec preview

Cybersec

GitHubamitr12/cybersec

Single-file HTML cheat sheet for red teamers and pentesters with auto-injecting attacker/target variables, OS-aware reverse shell generator, and…

command-and-controlctfeducation+9
913 days ago
CVE-2026-42945-Reverse-Shell-POC preview

CVE-2026-42945-Reverse-Shell-POC

GitHubsec-sys/cve-2026-42945-reverse-shell-poc

Python RCE PoC with reverse-shell listener for CVE-2026-42945 (NGINX Rift)

binary-exploitationctfexploitation+6
2 months ago
Previous12…19Next