Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
225 results
CVE-2018-9995_Batch_scanning_exp preview

CVE-2018-9995_Batch_scanning_exp

GitHubzzh217/cve-2018-9995_batch_scanning_exp

CVE-2018-9995_Batch_scanning_exp

exploitationiot-securitypassword-attacks+3
4
8 years ago
Routeglass preview

Routeglass

GitHubk3ystr0k3r/routeglass

Multi-threaded router fingerprinting tool that identifies web-exposed network devices by analyzing HTTP responses, headers, and favicon hashes for…

information-gatheringiot-securitynetwork-mapping+3
21 month ago
ssh_user_enum preview

ssh_user_enum

GitHubnccgroup/ssh_user_enum

SSH User Enumeration Script in Python Using The Timing Attack

information-gatheringpenetration-testingreconnaissance+1
9510 years ago
operative-framework preview

operative-framework

GitHubgraniet/operative-framework

operative framework is a rust investigation OSINT framework, you can interact with multiple targets, execute multiple modules, create links with…

forensicsinformation-gatheringosint+1
7501 year ago
CVE-2021-31589 preview

CVE-2021-31589

GitHubkarthi-the-hacker/cve-2021-31589

Lightweight CLI scanner for CVE-2021-31589 that checks single or multiple URLs for the vulnerability, outputting results to a file for bug bounty and…

information-gatheringpenetration-testingreconnaissance+3
13 years ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubzam89/cve-2024-24919

Simple POC Python script that check & leverage Check Point CVE-2024-24919 vulnerability (Wrong Check Point)

exploitationinformation-gatheringpenetration-testing+3
42 years ago
CVE-2023-24489-poc preview

CVE-2023-24489-poc

GitHubwhalebone7/cve-2023-24489-poc

POC for CVE-2023-24489 with bash.

exploitationpenetration-testingreconnaissance+2
13 years ago
cve-2021-41773 preview

cve-2021-41773

GitHubmohwahyudi/cve-2021-41773

Python script that uses Shodan to discover Apache HTTP Server 2.4.49 instances vulnerable to CVE-2021-41773 path traversal and file disclosure.

exploitationinformation-gatheringosint+3
4 years ago
CVE-2022-26134-Confluence preview

CVE-2022-26134-Confluence

GitHubvesperp/cve-2022-26134-confluence

Python exploit script for CVE-2022-26134 that scans target URLs from a file and outputs vulnerable hosts to a results file.

exploitationpenetration-testingreconnaissance+2
4 years ago
CVE-2024-38475_SonicBoom_Apache_URL_Traversal_PoC preview

CVE-2024-38475_SonicBoom_Apache_URL_Traversal_PoC

GitHubabrewer251/cve-2024-38475_sonicboom_apache_url_traversal_poc

Proof-of-concept scanner for CVE-2024-38475 (SonicBoom) Apache URL traversal. Automates TLS negotiation, directory scanning, traversal verification,…

exploitationfuzzingpenetration-testing+3
1 year ago
cve-2019-7192-check preview

cve-2019-7192-check

GitHubcycraft-corp/cve-2019-7192-check

Checker for QNAP pre-auth root RCE (CVE-2019-7192 ~ CVE-2019-7195)

exploitationpenetration-testingreconnaissance+2
135 years ago
Poc_CVE-2025-68645 preview

Poc_CVE-2025-68645

GitHubharisaidhin/poc_cve-2025-68645

Zimbra Path Traversal (CVE-2025-68645) - Unauthenticated file read vulnerability in Zimbra Collaboration Suite

exploitationinformation-gatheringpenetration-testing+3
13 months ago
wordpress-snapcreek preview

wordpress-snapcreek

GitHubraghu66669999/wordpress-snapcreek

snapcreek_duplicator file read vulnerability https://www.cvedetails.com/cve/CVE-2020-11738/

exploitationinformation-gatheringpenetration-testing+3
2 years ago
BinGoo preview

BinGoo

GitHubhood3drob1n/bingoo

BinGoo! A Linux bash based Bing and Google Dorking Tool

dns-subdomain-enumerationinformation-gatheringosint+5
24014 years ago
SnafflerParser preview

SnafflerParser

GitHubzh54321/snafflerparser

Parses Snaffler output file and generate beautified outputs.

data-exfiltrationinformation-gatheringlog-analysis+5
1503 months ago
bypass-firewalls-by-DNS-history preview

bypass-firewalls-by-DNS-history

GitHubvincentcox/bypass-firewalls-by-dns-history

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that…

dns-analysispenetration-testingreconnaissance+2
1.3k5 years ago
Dorkwright preview

Dorkwright

GitHubsan-tus/dorkwright

From Dork to Download: Automating Google Dorks with Playwright

captcha-bypasscrawlerinformation-gathering+3
493 months ago
cyanide preview

cyanide

GitHubhorizon3ai/cyanide

Automated NTLM relay attack tool combining Responder poisoning with Impacket relay and secretsdump for credential capture, hash relaying, and lateral…

exploitationinformation-gatheringlateral-movement+6
1625 days ago
Previous1234…13Next