Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
98 results
WiFi-Pineapple-MK7_REST-Client preview

WiFi-Pineapple-MK7_REST-Client

GitHubtw-d/wifi-pineapple-mk7_rest-client

WiFi Hacking Workflow with WiFi Pineapple Mark VII API

exploitationinformation-gatheringnetwork-mapping+5
92
2 years ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubwjlin0/cve-2024-23897

CVE-2024-23897 - Jenkins 任意文件读取 利用工具

exploitationinformation-gatheringpenetration-testing+3
862 years ago
Xenotix-xBOT preview

Xenotix-xBOT

GitHubajinabraham/xenotix-xbot

Xenotix xBOT is a Cross Platform PoC Bot that abuse certain Google Services to implement it's C&C

command-and-controlexploitationinformation-gathering+4
288 years ago
CVE-2020-6308-PoC preview

CVE-2020-6308-PoC

GitHubinitroot/cve-2020-6308-poc

PoC CVE-2020-6308

exploitationnetwork-mappingpenetration-testing+3
365 years ago
regreSSHion-checker preview

regreSSHion-checker

GitHubxonoxitron/regresshion-checker

Quickly identifies servers vulnerable to OpenSSH 'regreSSHion' (CVE-2024-6387).

exploitationinformation-gatheringnetwork-security+3
102 years ago
ssh_exploiter_CVE-2024-6387 preview

ssh_exploiter_CVE-2024-6387

GitHubaigptcode/ssh_exploiter_cve-2024-6387

CVE-2024-6387 with auto ip scanner and auto expliot

exploitationinformation-gatheringnetwork-security+3
102 years ago
CVE-2025-0133 preview

CVE-2025-0133

GitHubinteleon404/cve-2025-0133

Reflected XSS vulnerability found in Palo Alto GlobalProtect Gateway & Portal. Attackers can inject malicious scripts via crafted requests.

exploitationpenetration-testingreconnaissance+3
101 year ago
CVE-2021-22005 preview

CVE-2021-22005

GitHub1zrr4h/cve-2021-22005
exploitationpenetration-testingreconnaissance+2
84 years ago
ViteVulScan preview

ViteVulScan

GitHubjackieya/vitevulscan

针对CVE-2025-30208和CVE-2025-31125的漏洞利用

exploitationfuzzinginformation-gathering+3
71 year ago
jugular preview

jugular

GitHublkarlslund/jugular

Ultrafast CUPS-browsed scanner (CVE-2024-47176)

exploitationinformation-gatheringnetwork-mapping+3
71 year ago
HTC preview

HTC

GitHubawesome-consumer-iot/htc

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

exploitationpassword-attacksreconnaissance+2
16 years ago
CVE-2023-35078 preview

CVE-2023-35078

GitHub0nsec/cve-2023-35078

CVE-2023-35078 - Ivanti MobileIron Core Remote Unauthenticated API Access Exploit tool

exploitationinformation-gatheringpenetration-testing+3
11 year ago
CVE-2023-36845 preview

CVE-2023-36845

GitHubhalencarjunior/cve-2023-36845
exploitationinformation-gatheringosint+3
12 years ago
CVE-2025-12139-WordPress-Integrate-Google-Drive-Exploit preview

CVE-2025-12139-WordPress-Integrate-Google-Drive-Exploit

GitHubgalaxy-sc/cve-2025-12139-wordpress-integrate-google-drive-exploit
exploitationinformation-gatheringpenetration-testing+3
8 months ago
BlueKeep preview

BlueKeep

GitHuboneoy/bluekeep

CVE-2019-0708 bluekeep 漏洞检测

exploitationinformation-gatheringnetwork-security+3
7 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubl0n3m4n/cve-2024-6387

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

exploitationnetwork-securitypayload-development+6
1102 years ago
AutoWIFI preview

AutoWIFI

GitHubmomenbasel/autowifi

Wireless penetration testing framework. Automates WPA/WPA2/WEP/WPS attacks - recon to exploitation in one command. aircrack-ng + hashcat + PMKID.

exploitationinformation-gatheringpassword-attacks+7
584 months ago
Whisper_Bully preview

Whisper_Bully

GitHubymsniper/whisper_bully

Three-stage Bluetooth BDADDR extraction, DoS & hijack on Fast Pair devices; unpatched primitives outside CVE-2025-36911 scope (no Ubertooth needed)

bluetooth-securityexploitationinformation-gathering+4
351 month ago
Previous123456Next