Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
175 results
Tentacle preview

Tentacle

GitHuborleven/tentacle

Tentacle is a POC vulnerability verification and exploit framework. It supports free extension of exploits and uses POC scripts. It supports calls to…

exploit-frameworksinformation-gatheringpenetration-testing+2
374
2 years ago
mec preview

mec

GitHubjm33-m0/mec

for mass exploiting

exploitationexploit-frameworksinformation-gathering+5
6154 years ago
Java-Deserialization-Scanner preview

Java-Deserialization-Scanner

GitHubfedericodotta/java-deserialization-scanner

All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities

exploit-frameworkspayload-generationpenetration-testing+2
8034 years ago
ispy preview

ispy

GitHubcyb0r9/ispy

ispy V1.0 - Eternalblue(ms17-010)/Bluekeep(CVE-2019-0708) Scanner and exploit ( Metasploit automation )

exploitationexploit-frameworkspenetration-testing+1
2456 years ago
sicat preview

sicat

GitHubjustakazh/sicat

Multi-source vulnerability and exploit aggregator with auto-discovery via Nmap and Wappalyzer, searching Exploit-DB, NVD, CVE.org, GitHub, Nuclei,…

exploit-frameworksinformation-gatheringpenetration-testing+3
8307 months ago
msmap preview

msmap

GitHubhosch3n/msmap

Modular memory webshell generator supporting Java containers (Tomcat, Spring, WebLogic) with multiple shell types, encoders, and automatic…

exploit-frameworkspayload-generationpenetration-testing+1
5863 years ago
htbenum preview

htbenum

GitHubsolomonsklash/htbenum

A Linux enumeration script for Hack The Box

exploit-frameworksinformation-gatheringpenetration-testing+2
1926 years ago
CVE-2017-10271 preview

CVE-2017-10271

GitHubkkirsche/cve-2017-10271

Python and Metasploit exploit for Oracle WebLogic WLS-WSAT deserialization vulnerability (CVE-2017-10271) with detection scanning and remote code…

exploitationexploit-frameworkspayload-generation+3
1293 years ago
houndsploit preview

houndsploit

GitHubnicolas-carolo/houndsploit

An advanced graphical search engine for Exploit-DB

exploit-frameworksinformation-gatheringpenetration-testing+1
1223 years ago
msploitego preview

msploitego

GitHubshizzz477/msploitego

Pentesting suite for Maltego based on data in a Metasploit database

exploit-frameworksinformation-gatheringnetwork-mapping+6
1488 years ago
Hack-Tool preview

Hack-Tool

GitHubrevanmalang/hack-tool

ALL IN ONE Hacking Tool For Hackers

ctfexploit-frameworksforensics+9
513 years ago
nGixshell preview

nGixshell

GitHubmateusverass/ngixshell

nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others)

command-and-controlexploit-frameworkspayload-development+8
233 months ago
msf-module-CVE-2019-0708 preview

msf-module-CVE-2019-0708

GitHubrickgeex/msf-module-cve-2019-0708

Metasploit module for CVE-2019-0708 (BlueKeep) - https://github.com/rapid7/metasploit-framework/tree/5a0119b04309c8e61b44763ac08811cd3ecbbf8d/modules/…

exploitationexploit-frameworkspayload-development+3
136 years ago
apache_normalize_path preview

apache_normalize_path

GitHubzeop-cybersec/apache_normalize_path

Metasploit-Framework modules (scanner and exploit) for the CVE-2021-41773 and CVE-2021-42013 (Path Traversal in Apache 2.4.49/2.4.50)

exploit-frameworkspayload-developmentpenetration-testing+3
124 years ago
HG532d-RCE-Exploit preview

HG532d-RCE-Exploit

GitHubwilfred-wulbou/hg532d-rce-exploit

A Remote Code Execution (RCE) exploit for Huawei HG532d based on CVE-2017-17215 vulnerability. Modded from original PoC code from exploit-db.com

exploitationexploit-frameworksiot-security+3
95 years ago
CVE-2021-44228-log4jVulnScanner-metasploit preview

CVE-2021-44228-log4jVulnScanner-metasploit

GitHubtaroballzchen/cve-2021-44228-log4jvulnscanner-metasploit

open detection and scanning tool for discovering and fuzzing for Log4J RCE CVE-2021-44228 vulnerability

exploit-frameworksfuzzingpenetration-testing+3
74 years ago
THERE-IS-A-CVE preview

THERE-IS-A-CVE

GitHubransomwares/there-is-a-cve

Pentesting tool integrating Shodan for IP reconnaissance and CVE identification, with Metasploit and Exploit-DB integration for automated exploit…

exploit-frameworksinformation-gatheringpenetration-testing+1
122 years ago
Industrial Security Auditing Framework preview

Industrial Security Auditing Framework

GitLabd0ubl3g/industrial-security-auditing-framework

ISAF aims to be a framework that provides the necessary tools for the correct security audit of industrial (OT) environments.

exploit-frameworksnetwork-securitypenetration-testing+2
75 years ago
Previous1234…10Next