Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
38 results
CVE-2019-5513-scanner preview

CVE-2019-5513-scanner

GitHubsudosu01/cve-2019-5513-scanner

The VMWare Horizon Connection Server is often used as an internet-facing gateway to an organization’s virtual desktop environment (VDI). Until…

exploitationinformation-gatheringpenetration-testing+3
2 months ago
relay_bible preview

relay_bible

GitHubrootsecdev/relay_bible

Technical Reference to multiple relay techniques

authenticationcurated-resourceseducation+8
1933 months ago
CVE-2023-27163-exploit preview

CVE-2023-27163-exploit

GitHubjeanback1/cve-2023-27163-exploit
cloud-securityexploitationport-scanning+3
3 months ago
CVE-2025-68645 preview

CVE-2025-68645

GitHubcrow5-oss/cve-2025-68645
exploitationinformation-gatheringpenetration-testing+3
6 months ago
internal-security-detect preview

internal-security-detect

GitHubrxerium/internal-security-detect

The detection of internal security controls at a company

configuration-auditingdefensive-toolsinformation-gathering+5
27 months ago
CVE-2022-23779 preview

CVE-2022-23779

GitHubrishi-kaul/cve-2022-23779

CVE-2022-23779 is a security vulnerability in Zoho ManageEngine Desktop Central ,Testing for CVE-2022-23779 using curl

exploitationinformation-gatheringpenetration-testing+3
7 months ago
MSFinger preview

MSFinger

GitHubsecorizon/msfinger

Microsoft Network Service Fingerprinting Tool

dns-analysisinformation-gatheringnetwork-mapping+3
757 months ago
Kioptrix-Level1-Vulnerability-Analysis preview

Kioptrix-Level1-Vulnerability-Analysis

GitHubdeepakkcybersec-eng/kioptrix-level1-vulnerability-analysis

Technical audit of Kioptrix Level 1. Focus: Samba 2.2.1a exploitation (CVE-2003-0201), manual enumeration, and internal infrastructure hardening.

educationexploitationlabs-practice+6
7 months ago
strot preview

strot

GitHubvertexcover-io/strot

API Scraper Agent for Web API's

api-security-testingcrawlerinformation-gathering+3
189 months ago
WinPwn preview

WinPwn

GitHubs3cur3th1ssh1t/winpwn

Automation for internal Windows Penetrationtest / AD-Security

exploitationpenetration-testingpenetration-testing-frameworks+4
3.7k11 months ago
DahuaConsole preview

DahuaConsole

GitHubmcw0/dahuaconsole

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

authentication-authorizationembedded-systems-securityexploitation+5
3181 year ago
Dejavu preview

Dejavu

GitHubbhdresh/dejavu

DejaVU - Open Source Deception Framework

cloud-securitydefensive-toolsids-ips-evasion+7
4321 year ago
PHP-CGI-INTERNAL-RCE preview

PHP-CGI-INTERNAL-RCE

GitHubmananjain61/php-cgi-internal-rce

Delivering PHP RCE (CVE-2024-4577) to the Local Network Servers

dns-analysisexploitationpayload-development+3
1 year ago
CVE-2023-27163-Request-Baskets-Local-Ports-Bruteforcer preview

CVE-2023-27163-Request-Baskets-Local-Ports-Bruteforcer

GitHubtheopaid/cve-2023-27163-request-baskets-local-ports-bruteforcer

PoC and internal port brute-forcer for CVE-2023-27163

exploitationport-scanningreconnaissance+2
11 year ago
CVE-2023-7231 preview

CVE-2023-7231

GitHubbbo513/cve-2023-7231

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

cloud-securitycontainer-securitydata-exfiltration+6
11 year ago
CVE-2025-46822 preview

CVE-2025-46822

GitHubd3sca/cve-2025-46822

Unauthenticated Arbitrary File Read via Absolute Path

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2024-53591 preview

CVE-2024-53591

GitHubaljoharasubaie/cve-2024-53591
information-gatheringpenetration-testingreconnaissance+2
1 year ago
peeko preview

peeko

GitHubb3rito/peeko

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

command-and-controldata-exfiltrationinformation-gathering+7
2321 year ago
Previous123Next