Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
22 results
MITM_Intercept preview

MITM_Intercept

GitHubcyberark/mitm_intercept

A little bit less hackish way to intercept and modify non-HTTP protocols through Burp & others.

penetration-testingweb-proxies-interception
2204 years ago
polymorph preview

polymorph

GitHubshramos/polymorph

Polymorph is a real-time network packet manipulation framework with support for almost all existing protocols

educationnetwork-securitypacket-sniffing-analysis+2
4971 year ago
PRISM-AP preview

PRISM-AP

GitHub1n3/prism-ap

An automated Wireless RogueAP MITM attack framework.

dns-analysisinformation-gatheringpacket-sniffing-analysis+6
1917 years ago
CVE-2023-23397 preview

CVE-2023-23397

GitHubka7ana/cve-2023-23397

PowerShell proof-of-concept for CVE-2023-23397 that exploits Outlook's ReminderSoundFile property to intercept Net-NTLMv2 hashes via SMB or WebDAV…

authenticationexploitationpenetration-testing+3
403 years ago
cdb preview

cdb

GitHubpownjs/cdb

Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP requests and…

debuggersnetwork-mappingpenetration-testing+2
725 years ago
oproxy preview

oproxy

GitHubsauravrao637/oproxy

Open-source MITM proxy to intercept, inspect, and mock network traffic.

api-security-testingdns-analysisnetwork-security+4
6169 days ago
otp-bot preview

otp-bot

GitHuboriyomi12/otp-bot

Automates vishing calls via Discord bot and API to intercept SMS one-time passwords, bypassing SMS verification for PayPal, Google, Instagram, and 3D…

authenticationimpersonation-toolspenetration-testing+3
3792 years ago
hooker preview
Archived

hooker

GitHubandroidhooker/hooker

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

android-securityapi-security-testingdynamic-analysis-sandboxing+3
41510 years ago
BUK_TS_KILLER preview

BUK_TS_KILLER

GitHubblackhatexploitation/buk_ts_killer

Exploit for BUK-TS authentication bypass and remote code execution, with steps to intercept responses and manipulate userid to gain unauthorized…

authentication-authorizationexploitationpenetration-testing+2
3 months ago
ssh-mitm preview
Archived

ssh-mitm

GitHubjtesta/ssh-mitm

SSH man-in-the-middle tool

authenticationids-ips-evasioninformation-gathering+6
1.7k5 years ago
NetRipper preview

NetRipper

GitHubnytrorst/netripper

NetRipper - Smart traffic sniffing for penetration testers

packet-sniffing-analysispenetration-testingpost-exploitation
1.4k4 years ago
BadIntent preview
Archived

BadIntent

GitHub1ultimat3/badintent

Intercept, modify, repeat and attack Android's Binder transactions using Burp Suite

android-securitydynamic-analysis-sandboxingexploitation+4
3239 years ago
pipe-intercept preview

pipe-intercept

GitHubgabriel-sztejnworcel/pipe-intercept

Intercept Windows Named Pipes communication using Burp or similar HTTP proxy tools

penetration-testingred-teamingweb-proxies-interception
3041 year ago
xepor preview

xepor

GitHubxepor/xepor

Flask-like routing framework for mitmproxy to intercept, modify, and spoof HTTP requests/responses. Enables rapid development of MITM scripts for…

penetration-testingphishing-toolsred-teaming+3
2151 year ago
ritm preview

ritm

GitHubargos83/ritm

Ruby In The Middle (HTTP/HTTPS interception proxy)

dynamic-analysis-sandboxingpenetration-testingweb-proxies-interception+1
1007 years ago
SharpRelay preview

SharpRelay

GitHubpkb1s/sharprelay

C# tool leveraging WinDivert driver to intercept and redirect Windows port 445 traffic for NTLM relay attacks via Cobalt Strike, enabling lateral…

lateral-movementpacket-sniffing-analysispenetration-testing+1
1805 years ago
DatajackProxy preview

DatajackProxy

GitHubnccgroup/datajackproxy

Datajack Proxy allows you to intercept TLS traffic in native x86 applications across platforms

network-securitypenetration-testingred-teaming+2
1047 years ago
Hawk preview

Hawk

GitHubprodefense/hawk

Golang tool designed to exfiltrate passwords found via the sshd and su services

data-exfiltrationinformation-gatheringpassword-attacks+3
3810 months ago
Previous12Next