Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
wifi-hacker preview

wifi-hacker

GitHubesc0rtd3w/wifi-hacker

Shell Script For Attacking Wireless Connections Using Built-In Kali Tools. Supports All Securities (WEP, WPS, WPA, WPA2)

password-attackspenetration-testingwi-fi-auditing+1
2.8k
7 years ago
kerberoast preview

kerberoast

GitHubnidem/kerberoast

Toolkit for attacking MS Kerberos implementations: extract SPN accounts, request and export tickets, crack service passwords, rewrite tickets for…

authenticationexploitationpassword-attacks+1
1.5k3 years ago
SharpSphere preview

SharpSphere

GitHubjamescooteuk/sharpsphere

.NET Project for Attacking vCenter

command-and-controldata-exfiltrationpenetration-testing+2
5584 years ago
beanshooter preview

beanshooter

GitHubqtc-de/beanshooter

JMX enumeration and attacking tool.

exploitationpenetration-testingvulnerability-analysis
5153 years ago
aad-bofs preview

aad-bofs

GitHubkozmer/aad-bofs

Cobalt Strike BOF collection for attacking Azure AD during red team operations, covering authentication, enumeration, and post-exploitation vectors.

adversarial-attackcloud-infrastructure-securitycloud-security+5
14110 months ago
LARE preview

LARE

GitHubm4lv0id/lare

[L]ocal [A]uto [R]oot [E]xploiter is a simple bash script that helps you deploy local root exploits from your attacking machine when your victim…

exploitationpenetration-testingprivilege-escalation+1
679 years ago
bLaCk-eye-RSA-Attacking-Toolkit-v0.1f-compiled preview

bLaCk-eye-RSA-Attacking-Toolkit-v0.1f-compiled

GitHubxyl2k/black-eye-rsa-attacking-toolkit-v0.1f-compiled

The great RSA Attacking Toolkit compiled for Windows

binary-analysiscryptographyexploitation+2
2010 years ago
cua-kit preview

cua-kit

GitHubpreludeorg/cua-kit

Tools for attacking Computer Use Agents

ai-securitycommand-and-controlexploitation+7
338 months ago
cve-2026-59827-metabase-cyber-range preview

cve-2026-59827-metabase-cyber-range

GitHubshivammittal2403/cve-2026-59827-metabase-cyber-range

Educational cyber range for CVE-2026-59827 (Metabase H2 unsafe deserialization / CWE-502). Isolated Docker lab — training only, not for attacking…

ctfdynamic-analysis-sandboxingeducation+6
8 days ago
odat preview

odat

GitHubquentinhardy/odat

Penetration testing tool for Oracle Databases that discovers valid SIDs, brute-forces credentials, escalates privileges to DBA, executes system…

command-and-controldatabase-securityexploitation+4
1.8k5 months ago
mikrotrick-poc preview

mikrotrick-poc

GitHubdinosn/mikrotrick-poc

CVE-2026-67276 RouterOS SSH public-key authentication bypass lab PoC

authenticationexploitationnetwork-security+2
8618 days ago
wpscvn preview

wpscvn

GitHubsabersebri/wpscvn

wpscvn is a tool for pentesters, website owner to test if their websites had some vulnerable plugins or themes

penetration-testingvulnerability-scannersweb-security
157 years ago
wp-file-manager preview

wp-file-manager

GitHubrandomrobbiebf/wp-file-manager

wp-file-manager RCE

exploitationpayload-developmentpenetration-testing+1
96 years ago