Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
19 results
Azure-App-Tools preview

Azure-App-Tools

GitHubrvrsh3ll/azure-app-tools

Collection of tools to use with Azure Applications

authenticationcloud-securitycommand-and-control+4
113
2 years ago
KITT-Lite preview

KITT-Lite

GitHubcisc0-gif/kitt-lite

Python-Based Pentesting CLI Tool

command-and-controlexploit-frameworkshardware-hacking+9
895 years ago
KITT preview

KITT

GitHubcisc0-gif/kitt

Python-Based Pentesting Framework

bluetooth-securityexploit-frameworkshardware-hacking+9
306 years ago
FakeImageExploiter preview

FakeImageExploiter

GitHubr00t-3xp10it/fakeimageexploiter

Use a Fake image.jpg to exploit targets (hide known file extensions)

command-and-controlexploitationpayload-development+5
9451 year ago
evilginx preview

evilginx

GitHubkgretzky/evilginx

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

authenticationpenetration-testingphishing+4
1.2k8 years ago
PhishingKitHunter preview

PhishingKitHunter

GitHubt4d/phishingkithunter

Find phishing kits which use your brand/organization's files and image.

information-gatheringlog-analysisosint+3
2427 years ago
ca-clone preview

ca-clone

GitHubbishopfox/ca-clone

Scripts to clone CA certificates for use in HTTPS client attacks.

hardware-iot-securityimpersonation-toolspenetration-testing+4
366 years ago
bettercap preview

bettercap

GitHubbettercap/bettercap

The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.

bluetooth-securitydata-exfiltrationfingerprint-spoofing+16
19.9k23 days ago
ntlm_theft preview

ntlm_theft

GitHubgreenwolf/ntlm_theft

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

information-gatheringpassword-attackspenetration-testing+2
1.5k11 months ago
fbht preview

fbht

GitHubchinoogawa/fbht

Facebook Hacking Tool

information-gatheringosintpassword-attacks+3
1.6k2 years ago
pwndrop preview

pwndrop

GitHubkgretzky/pwndrop

Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.

phishing-toolsred-teamingweb-security
2.3k5 years ago
OSweep preview

OSweep

GitHubecstatic-nobel/osweep

Don't Just Search OSINT. Sweep It.

dns-subdomain-enumerationinformation-gatheringmalware-analysis+4
3187 years ago
miteru preview

miteru

GitHubninoseki/miteru

A phishing kit collector for scavengers

information-gatheringosintphishing+1
2222 months ago
SocialEngineering preview

SocialEngineering

GitHubcappricio-securities/socialengineering

SEt framework

impersonation-toolspassword-attacksphishing-tools+2
15 months ago
CVE-2023-08-21-exploit preview

CVE-2023-08-21-exploit

GitHubamirzargham/cve-2023-08-21-exploit

Axigen < 10.3.3.47, 10.2.3.12 - Reflected XSS

data-exfiltrationexploitationinformation-gathering+3
12 years ago
frameless-bitb preview

frameless-bitb

GitHubwaelmas/frameless-bitb

A new approach to Browser In The Browser (BITB) without the use of iframes, allowing the bypass of traditional framebusters implemented by login…

educationids-ips-evasionphishing+3
4552 years ago
camjacking preview

camjacking

GitHubcappricio-securities/camjacking

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

educationimpersonation-toolsinformation-gathering+5
636 months ago
CVE-2025-2783 preview

CVE-2025-2783

GitHubalchemist3dot14/cve-2025-2783

Simulated PoC for CVE-2025-2783 — a sandbox escape vulnerability in Chrome's Mojo IPC. Includes phishing delivery, memory fuzzing, IPC simulation,…

binary-exploitationeducationexploitation+8
331 year ago
Previous12Next