Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17 results
Log4ShellAuditor preview

Log4ShellAuditor

GitHubc00ln3t/log4shellauditor

An autonomous reflective Go agent for full-cycle security auditing, WAF evasion, OOB LDAP verification, self-remediation (auto-patching), and…

devsecopsexploitationlabs-practice+6
1
13 days ago
JustTryHarder preview

JustTryHarder

GitHubsinfulz/justtryharder

Comprehensive penetration testing cheat sheet for PWK/OSCP exam preparation, covering privilege escalation, password cracking, payload generation,…

educationexploitationpassword-cracking+7
8351 month ago
metasploitable2-vsftpd-exploitation preview

metasploitable2-vsftpd-exploitation

GitHubrinaliyeva/metasploitable2-vsftpd-exploitation

Project: vsFTPd 2.3.4 backdoor exploitation (CVE-2011-2523) on Metasploitable 2.

educationexploitationnetwork-mapping+7
4 months ago
ubuntu-privesc-lab preview

ubuntu-privesc-lab

GitHubvaibhavkrishna12004/ubuntu-privesc-lab

Full penetration testing workflow: credential brute force, SSH access and privilege escalation (CVE-2021-4034)

educationexploitationlabs-practice+8
5 months ago
tscan preview

tscan

GitHubcumakurt/tscan

Python-based scanner that detects and exploits CVE-2026-24061 telnetd authentication bypass, enabling root shell access on vulnerable GNU Inetutils…

educationexploitationnetwork-security+4
17 months ago
CYBERDUDEBIVASH-FortiSIEM-CVE-2025-64155-Scanner preview

CYBERDUDEBIVASH-FortiSIEM-CVE-2025-64155-Scanner

GitHubcyberdudebivash/cyberdudebivash-fortisiem-cve-2025-64155-scanner

Authorized high-impact tool from CYBERDUDEBIVASH ECOSYSTEM to detect CVE-2025-64155 (FortiSIEM phMonitor Command Injection). Scans for open ports and…

command-and-controlexploitationpenetration-testing+3
17 months ago
Offensive-lab-2 preview

Offensive-lab-2

GitHubmafiosohack/offensive-lab-2

Penetration test walkthrough on a vulnerable Ubuntu VM. Exploited the ProFTPD 1.3.3c backdoor (CVE-2010-4221) to gain root access and capture the…

ctfeducationexploitation+8
8 months ago
erl_mouse preview

erl_mouse

GitHubm0usem0use/erl_mouse

python script to find vulnerable targets of CVE-2025-32433

exploitationinformation-gatheringnetwork-mapping+3
51 year ago
CVE-2024-6387-Checker preview

CVE-2024-6387-Checker

GitHubrickgeex/cve-2024-6387-checker

CVE-2024-6387-Check is a streamlined and efficient tool created to detect servers operating on vulnerable versions of OpenSSH.

information-gatheringnetwork-securitypenetration-testing+3
32 years ago
checker-CVE-2024-6387 preview

checker-CVE-2024-6387

GitHubachux21/checker-cve-2024-6387

Python scanner that checks hosts for the OpenSSH regreSSHion vulnerability (CVE-2024-6387)

exploitationnetwork-securitypenetration-testing+3
22 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubr4tw1z/cve-2024-6387

This script, created by R4Tw1z, is designed to scan IP addresses to check if they are running a potentially vulnerable version of OpenSSH. The tool…

exploitationinformation-gatheringnetwork-security+3
12 years ago
CVE-2024-6387-exploit preview

CVE-2024-6387-exploit

GitHubthegenetic/cve-2024-6387-exploit

CVE-2024-6387 exploit

exploitationnetwork-securitypenetration-testing+3
132 years ago
OpenSSH-Vulnerability-test preview

OpenSSH-Vulnerability-test

GitHubbetancour/openssh-vulnerability-test

OpenSSH CVE-2024-6387 Vulnerability Checker

educationinformation-gatheringnetwork-security+3
22 years ago
Gorsair preview
Archived

Gorsair

GitHubullaakut/gorsair

Gorsair gives root access on remote docker containers that expose their APIs

cloud-securitycontainer-securityexploitation+6
8472 years ago
CVE-2023-27163-InternalProber preview

CVE-2023-27163-InternalProber

GitHubsamh4cks/cve-2023-27163-internalprober

A tool to perform port scanning using vulnerable Request-Baskets

exploitationpenetration-testingport-scanning+3
53 years ago
CVE-2022-36663-PoC preview

CVE-2022-36663-PoC

GitHubaqeisi/cve-2022-36663-poc

Internal network scanner through Gluu IAM blind ssrf

network-mappingport-scanningreconnaissance+2
23 years ago
openmagic preview

openmagic

GitHubisgroup/openmagic

OpenSSL TLS heartbeat read overrun (CVE-2014-0160)

exploitationinformation-gatheringnetwork-security+3
4012 years ago