Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
114 results
username-anarchy preview

username-anarchy

GitHuburbanadventurer/username-anarchy

Username tools for penetration testing

information-gatheringosintpassword-attacks+3
1.5k
1 year ago
Aether preview

Aether

GitHubfknmega/aether

AI-driven OSINT and security research agent that builds a live knowledge graph from public data, with bundled recon tools and offensive-security…

ai-securityctfcurated-resources+5
1746 days ago
linkedin2username preview

linkedin2username

GitHubinitstring/linkedin2username

OSINT Tool: Generate username lists for companies on LinkedIn

email-harvestinginformation-gatheringosint+3
1.9k3 months ago
CVE-2026-26744 preview

CVE-2026-26744

GitHublorenzobruno7/cve-2026-26744

Demonstrates user enumeration in FormaLMS via response discrepancy on the /lostpwd endpoint, enabling unauthenticated username discovery for targeted…

information-gatheringpenetration-testingreconnaissance+2
6 months ago
cve-2016-20012 preview

cve-2016-20012

GitHubarturo-b-cmu/cve-2016-20012

Python script for SSH username enumeration using timing-based analysis to identify valid accounts on a target server.

authenticationinformation-gatheringnetwork-security+3
1 year ago
CVE-2025-63406-PoC preview

CVE-2025-63406-PoC

GitHubnxvh1337/cve-2025-63406-poc

Small PoC to automate exploitation of CVE-2025-63406.

command-and-controlexploitationpenetration-testing+2
410 months ago
CVE-2024-54772 preview

CVE-2024-54772

GitHubdeauther890/cve-2024-54772

Python-based exploit for CVE-2024-54772 enabling username enumeration on MikroTik RouterOS versions v6.43 through v7.17.2 using wordlist or…

exploitationinformation-gatheringnetwork-security+3
341 year ago
cve-2018-15473 preview

cve-2018-15473

GitHubwtbacon/cve-2018-15473

Remote OpenSSH username enumeration exploit for CVE-2018-15473, featuring malformed packet and timing attack scripts with multi-threaded scanning.

exploitationinformation-gatheringnetwork-security+3
5 months ago
CVE-2018-15473 preview

CVE-2018-15473

GitHubkaktus5454/cve-2018-15473

SSH username enumeration exploit for CVE-2018-15473 (OpenSSH 2.3-7.7). Sends malformed authentication packets to identify valid users on vulnerable…

exploitationinformation-gatheringpenetration-testing+3
5 months ago
CVE-2023-30458 preview

CVE-2023-30458

GitHubd34dun1c02n/cve-2023-30458

Username enumeration exploit for Medicine Tracker System 1.0 leveraging response timing discrepancies in the login functionality to identify valid…

exploitationinformation-gatheringpenetration-testing+2
3 years ago
smb-usermap preview

smb-usermap

GitHubh3x0v3rl0rd/smb-usermap

Python exploit for Samba 3.0.20-3.0.25rc3 'username map script' command injection, providing unauthenticated remote code execution and reverse shell.

exploitationpenetration-testingremote-access-tool
4 years ago
CVE-2007-2447 preview

CVE-2007-2447

GitHub0xkn/cve-2007-2447

Python exploit for Samba CVE-2007-2447 username map script remote command execution, delivering a reverse shell payload to a configurable remote…

command-and-controlexploitationpenetration-testing+3
5 years ago
CVE-2023-3897 preview

CVE-2023-3897

GitHubjfriedli/cve-2023-3897

Exploit for CVE-2023-3897 enabling username enumeration via CAPTCHA bypass in On-premise SureMDM on Windows. Includes PoC script for local user…

captcha-bypassexploitationinformation-gathering+3
2 years ago
CVE-2007-2447_Samba_3.0.25rc3 preview

CVE-2007-2447_Samba_3.0.25rc3

GitHubwildfootw/cve-2007-2447_samba_3.0.25rc3

Exploit for Samba 3.0.0-3.0.25rc3 'Username' map script command execution vulnerability (CVE-2007-2447), enabling remote code execution.

command-and-controlexploitationpenetration-testing+2
5 years ago
CVE-2018-15473 preview

CVE-2018-15473

GitHub1stpeak/cve-2018-15473

Proof-of-concept SSH username enumeration exploit for OpenSSH CVE-2018-15473. Supports threading, wordlists, IPv6, and detection of valid accounts on…

exploitationinformation-gatheringnetwork-security+3
5 years ago
CVE-2018-15473 preview

CVE-2018-15473

GitHub0xrobiul/cve-2018-15473

Python-based exploit for CVE-2018-15473 enabling OpenSSH username enumeration via authentication response oracle, with single-user and wordlist modes.

exploitationinformation-gatheringnetwork-security+3
14 years ago
CVE-2007-2447 preview

CVE-2007-2447

GitHubfoudadev/cve-2007-2447

Educational exploit implementation for CVE-2007-2447 Samba 3.0.20-3.0.25rc username map script command execution vulnerability with Python SMB client…

binary-exploitationcommand-and-controleducation+6
2 years ago
OracleOTM preview

OracleOTM

GitHubofirhamam/oracleotm

Python tool for exploiting CVE-2021-35616

database-securityexploitationinformation-gathering+3
114 years ago
Previous1234567Next