Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
email-osint-ripper preview

email-osint-ripper

GitHubquantika14/email-osint-ripper

EO-RIPPER.PY es una herramienta que nos permite hacer OSINT con un email o con una lista de emails.

email-harvestinginformation-gatheringosint+1
76
6 years ago
Sooty preview

Sooty

GitHubtheresafewconors/sooty

The SOC Analysts all-in-one CLI tool to automate and speed up workflow.

dns-analysishash-analysisinformation-gathering+5
1.5k1 year ago
emploleaks preview

emploleaks

GitHubinfobyte/emploleaks

An OSINT tool that helps detect members of a company with leaked credentials

data-exfiltrationemail-harvestinginformation-gathering+8
7913 months ago
MASAPT preview

MASAPT

GitHubmarzekan/masapt

Multi-Agent System for Automated Penetration Testing (MASAPT)

educationnetwork-mappingpenetration-testing+3
304 years ago
sarenka preview

sarenka

GitHubktzgraph/sarenka

OSINT tool - gets data from services like shodan, censys etc. in one app

crawlerdns-analysishash-analysis+4
6744 years ago
phantomstars preview

phantomstars

GitHubtg12/phantomstars

Automated detection and tracking of fake engagement on GitHub — daily CI, zero infrastructure

anti-botcrawlercurated-resources+6
762 months ago
osint-suite-tools preview

osint-suite-tools

GitHubquantika14/osint-suite-tools

Repositorio del conjunto de herramientas para hacer OSINT y SOCMINT con Dante's Gates Minimal Version.

educationemail-harvestinginformation-gathering+3
1673 years ago
POC-CVE-2021-42013-EXPLOIT preview

POC-CVE-2021-42013-EXPLOIT

GitHubmakavellik/poc-cve-2021-42013-exploit

Una herramienta avanzada de escaneo, explotación e interacción remota diseñada para detectar y aprovechar la vulnerabilidad Apache Path Traversal +…

command-and-controlexploitationinformation-gathering+7
1 year ago
gssapi-abuse preview

gssapi-abuse

GitHubccob/gssapi-abuse

A tool for enumerating potential hosts that are open to GSSAPI abuse within Active Directory networks

authenticationdns-analysisinformation-gathering+5
1881 year ago
marimo_CVE-2026-39987_RCE_PoC preview

marimo_CVE-2026-39987_RCE_PoC

GitHubfevar54/marimo_cve-2026-39987_rce_poc

PoC de CVE-2026-39987: RCE pre-autenticacion via WebSocket en Marimo menor a 0.23.0 (CVSS 9.3).

educationexploitationpenetration-testing+3
5 months ago
Scanner_CVE_2026-42945 preview

Scanner_CVE_2026-42945

GitHuboseasfr/scanner_cve_2026-42945

Script Python para detecção de instâncias Nginx vulneráveis ao CVE-2026-42945 em IPs, CIDRs e ASNs.

exploitationinformation-gatheringnetwork-mapping+3
183 months ago
Simple-CVE-2021-41773-checker preview

Simple-CVE-2021-41773-checker

GitHubjheeree/simple-cve-2021-41773-checker

Simple script realizado en bash, para revisión de múltiples hosts para CVE-2021-41773 (Apache)

exploitationreconnaissancescripting-automation+2
24 years ago
CVE-2024-23897-Arbitrary-file-read preview

CVE-2024-23897-Arbitrary-file-read

GitHubpulentoski/cve-2024-23897-arbitrary-file-read

Un script realizado en python para atumatizar la vulnerabilidad CVE-2024-23897

exploitationinformation-gatheringpenetration-testing+3
1 year ago