Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
190 results
pki-toolbox preview

pki-toolbox

GitHubyoukyi/pki-toolbox

Client-side PKI toolbox that decodes X.509, CSR, chain, CRL, PKCS#7 and PKCS#12 artifacts, views ASN.1, converts formats, and generates self-signed…

cryptographydefensive-toolsencryption-decryption-tools+4
5
5 days ago
Torward preview

Torward

GitHubchundefined/torward

Forces all system traffic through the Tor network with IPv6 leak prevention, strict iptables rules, and DNS routing to enhance anonymity and prevent…

dns-analysisids-ips-evasionnetwork-security+1
91 year ago
F31 preview

F31

GitHubgmh5225/f31

Tool for hiding Kali Linux on the network

anti-botdefensive-toolsfingerprint-spoofing+6
32 years ago
legion preview

legion

GitHubdeadends/legion

Legion is a Zero-Knowledge Authentication Fabric built for privacy

authenticationcryptographyhardware-security+3
109 months ago
CVE-2026-24332 preview

CVE-2026-24332

GitHub0cqb/cve-2026-24332

Unpatched Discord privacy leak allowing presence inference while Invisible.

educationinformation-gatheringprivacy+2
21 days ago
honeypotscan preview

honeypotscan

GitHubteycir/honeypotscan

Free honeypot token scanner for Ethereum, Polygon & Arbitrum. Detect scam tokens before you buy. Instant analysis of smart contracts using 13…

api-securityeducationprivacy+3
96 months ago
Aegis-releases preview

Aegis-releases

GitHubadarsh14734/aegis-releases

Sandbox and MCP proxy that blocks AI coding agents from reading SSH keys, AWS credentials, and .env files, with deny-by-default policy and…

ai-securityauthentication-authorizationconfiguration-auditing+5
15 days ago
nullorigin preview

nullorigin

GitHubrakib-nyc/nullorigin

Research-only AI watermark robustness toolkit: local reverse proxy strips C2PA/EXIF/XMP, Unicode, image/audio stego, OOXML/PDF metadata, and scans…

adversarial-attackai-securityeducation+4
41 month ago
CyberPup preview

CyberPup

GitHubbrodsbytes/cyberpup

A free, open-source cybersecurity app for non techy people.

educationlearning-paths-coursesmobile-security+3
23 months ago
PrivateSphare preview

PrivateSphare

GitLabdshamany/privatesphare

An at-rest encrypted filesharing application with multiple clients who seek to share privately, without tracking.

cloud-securitydata-exfiltrationencryption-decryption-tools+1
2 months ago
tor-ip-changer preview

tor-ip-changer

GitHubianxtianxt/tor-ip-changer

Simple shell script to automatically request new Tor identity at configurable intervals for IP rotation.

educationids-ips-evasionprivacy+1
26 years ago
Real Estate preview

Real Estate

GitLabroxanne_ardary/real-estate

Specifications and open-source platforms for self-sovereign, encrypted real estate data management with blockchain-inspired verification, enabling…

cryptographycurated-resourceseducation+1
1 month ago
ubercookie preview

ubercookie

GitHubelpy1/ubercookie

Educational evercookie demo showing how browser storage and HTTP cache techniques can persistently re-identify a visitor.

educationfingerprint-spoofingids-ips-evasion+3
13 months ago
FecalFace preview

FecalFace

GitLabkennbroorg/shit-bucket/fecalface

This project (PoC for now, and part of Shit Bucket) involves face detection, face recognition and adversarial input to protect avatars

adversarial-attackmachine-learningprivacy
15 years ago
CVE-2026-25197 preview

CVE-2026-25197

GitHubmichaeladamgroberman/cve-2026-25197

CVE-2026-25197: Authorization Bypass via IDOR — Gardyn Home Kit (ICSA-26-055-03)

api-securityeducationinformation-gathering+6
4 months ago
nexus-os preview

nexus-os

GitLabnexaiceo/nexus-os

The Governed Agentic AI Operating System — Rust + Tauri 2.0 | 65 crates, 658 commands, 84 pages, 5,029 tests, 10/10 OWASP

ai-securityauthentication-authorizationcloud-security+8
4 months ago
viber-desktop-html-injection preview

viber-desktop-html-injection

GitHubthawkhant/viber-desktop-html-injection

Public writeup for CVE-2025-55996 (Viber Desktop HTML Injection)

educationphishingprivacy+3
11 year ago
CVE-2025-69581 preview

CVE-2025-69581

GitHubrivek619/cve-2025-69581

An issue was discovered in Chamillo LMS 1.11.2. The Social Network /personal_data endpoint exposes full sensitive user information even after logout…

educationinformation-gatheringprivacy+2
8 months ago
Previous1…91011Next