Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
175 results
owasp-istg preview

owasp-istg

GitHubowasp/owasp-istg

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

curated-resourceseducationembedded-systems-security+9
129
1 month ago
domainim preview

domainim

GitHubpptx704/domainim

A fast and comprehensive tool for organizational network scanning

dns-analysisdns-subdomain-enumerationinformation-gathering+5
1382 years ago
CVE-2019-0708 preview

CVE-2019-0708

GitHubvictor0013/cve-2019-0708

Scanner PoC for CVE-2019-0708 RDP RCE vuln

exploitationexploit-frameworksnetwork-security+3
37 years ago
Metasploit-Exploits-CVE-2023-6710 preview

Metasploit-Exploits-CVE-2023-6710

GitHubdedsec-47/metasploit-exploits-cve-2023-6710

Welcome to the Metasploit Exploits Repository, your go-to resource for a comprehensive collection of cutting-edge exploits designed for penetration…

educationexploit-frameworkspayload-development+4
12 years ago
mastg preview

mastg

GitHubowasp/mastg

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

android-securitycryptographydynamic-analysis-sandboxing+9
13.2k3 days ago
NextSecureScan preview

NextSecureScan

GitHubjmbowes/nextsecurescan

Next.js CVE-2025-29927 Vulnerability Scanner

exploitationpenetration-testingvulnerability-scanners+3
21 year ago
CVE-2025-29927-scanner preview

CVE-2025-29927-scanner

GitHubnocomp/cve-2025-29927-scanner

python script for evaluate if you are vulnerable or not to next.js CVE-2025-29927

information-gatheringpenetration-testingreconnaissance+3
11 year ago
relay_bible preview

relay_bible

GitHubrootsecdev/relay_bible

Technical Reference to multiple relay techniques

authenticationcurated-resourceseducation+8
1943 months ago
kstg preview

kstg

GitHubowasp/kstg

Kubernetes Security Testing Guide

cloud-securitycontainer-securitycurated-resources+3
282 years ago
CVE-2025-30208 preview

CVE-2025-30208

GitHubthemehackers/cve-2025-30208

CVE‑2025‑30208 is a medium-severity arbitrary file read vulnerability in the Vite development server (a popular frontend build tool)

exploitationinformation-gatheringpayload-generation+3
101 year ago
CVE-2025-30208 preview

CVE-2025-30208

GitHubth-secforge/cve-2025-30208

CVE‑2025‑30208 is a medium-severity arbitrary file read vulnerability in the Vite development server (a popular frontend build tool)

exploitationinformation-gatheringpenetration-testing+3
11 year ago
XAttacker preview

XAttacker

GitHubmoham3driahi/xattacker

X Attacker Tool ☣ Website Vulnerability Scanner & Auto Exploiter

exploit-frameworksinformation-gatheringpenetration-testing+2
1.8k2 years ago
NetExec preview

NetExec

GitHubpennyw0rth/netexec

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

command-and-controldatabase-securityexploitation+14
5.8k1 day ago
owtf preview

owtf

GitHubowtf/owtf

Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

exploit-frameworkspenetration-testingpenetration-testing-frameworks+2
2.0k10h 57m ago
P4wnP1_aloa preview

P4wnP1_aloa

GitHubrogandawes/p4wnp1_aloa

P4wnP1 A.L.O.A. by MaMe82 is a framework which turns a Rapsberry Pi Zero W into a flexible, low-cost platform for pentesting, red teaming and…

bluetooth-securityexploit-frameworkshardware-hacking+5
4.4k2 years ago
PowerSharpPack preview

PowerSharpPack

GitHubs3cur3th1ssh1t/powersharppack

PowerShell wrapper bundling 50+ C# offensive security tools for post-exploitation, privilege escalation, credential dumping, lateral movement, and…

exploit-frameworksinformation-gatheringlateral-movement+5
1.7k1 year ago
gadgetinspector preview

gadgetinspector

GitHubjackofmosttrades/gadgetinspector

A byte code analyzer for finding deserialization gadget chains in Java applications

binary-analysisexploit-frameworkspenetration-testing+2
1.1k6 years ago
React2Shell-CVE-2025-55182-original-poc preview

React2Shell-CVE-2025-55182-original-poc

GitHublachlan2k/react2shell-cve-2025-55182-original-poc

Original proof-of-concept exploits for React2Shell (CVE-2025-55182), demonstrating remote code execution in Next.js applications via Webpack chunk…

code-analysisexploit-frameworkspayload-development+3
1.1k9 months ago
Previous123…10Next