Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
225 results
Fast-Google-Dorks-Scan preview

Fast-Google-Dorks-Scan

GitHubivanglinkin/fast-google-dorks-scan

The OSINT project, the main idea of which is to collect all the possible Google dorks search combinations and to find the information about the…

information-gatheringosintreconnaissance+2
1.7k
1 year ago
exif-gps-tracer preview

exif-gps-tracer

GitHubm0n1x90/exif-gps-tracer

A python script which allows you to parse GeoLocation data from your Image files stored in a dataset.It also produces output in CSV file and also in…

digital-forensicsforensicsinformation-gathering+2
445 years ago
API-SPY-API-PROBE preview

API-SPY-API-PROBE

GitHubaustinjump-sec/api-spy-api-probe

A powerful directory brute-force tool that's tailored for recursive/multiplex operations, API discovery and enumeration, JS file scraping, and lists…

api-security-testingcrawlerinformation-gathering+4
52 months ago
LFI-Destruction preview

LFI-Destruction

GitHubrevshellxd/lfi-destruction

This program Prompts you for the Local File Inclusion information and will automatically search the /etc/passwd and using the users names found will…

ctfeducationexploitation+8
46 months ago
ReconHound preview

ReconHound

GitLabs_r_e_e_r_a_j/reconhound

ReconHound is a Python-based web reconnaissance tool designed for penetration testers, bug bounty hunters, and ethical hackers. It supports directory…

fuzzinginformation-gatheringpenetration-testing+3
14 months ago
checker-cve2020-3452 preview

checker-cve2020-3452

GitHubmrcl0wnlab/checker-cve2020-3452

Cisco Adaptive Security Appliance and FTD Unauthorized Remote File Reading

exploitationnetwork-securitypenetration-testing+3
176 years ago
grafana-unauth-file-read preview

grafana-unauth-file-read

GitHubvulnmachines/grafana-unauth-file-read

Exploit for Grafana LFI vulnerability CVE-2021-43798 enabling unauthorized file reading via path traversal in plugin endpoints.

exploitationinformation-gatheringpenetration-testing+3
44 years ago
CVE-2006-3392 preview

CVE-2006-3392

GitHubbrosck/cve-2006-3392

Python exploit for CVE-2006-3392, a path traversal in Webmin/Usermin allowing arbitrary file read, demonstrated by retrieving /etc/shadow.

exploitationinformation-gatheringpenetration-testing+3
31 year ago
CVE-2020-3452-PoC preview

CVE-2020-3452-PoC

GitHubxdev05/cve-2020-3452-poc

Automates downloading and running an Nmap NSE script to scan hosts for CVE-2020-3452 vulnerability, using a list of target hosts.

exploitationpenetration-testingreconnaissance+3
26 years ago
CVE-2025-68645 preview

CVE-2025-68645

GitHubcrow5-oss/cve-2025-68645

Proof-of-Concept scanner for CVE-2025-68645, detecting Local File Inclusion (LFI) in Zimbra Collaboration Suite via the /h/printcalendar endpoint…

exploitationinformation-gatheringpenetration-testing+3
6 months ago
CVE-2025-55853 preview

CVE-2025-55853

GitHubvivz13/cve-2025-55853

Local File Inclusion via Server Side Request Forgery

exploitationinformation-gatheringpenetration-testing+3
6 months ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubiris288/cve-2021-41773

Proof-of-concept exploit for Apache HTTP Server path traversal vulnerability (CVE-2021-41773) enabling file disclosure and source code leakage…

exploitationpenetration-testingreconnaissance+2
12 years ago
CVE-2024-23692-RCE preview

CVE-2024-23692-RCE

GitHubwanlichangchengwanlichang/cve-2024-23692-rce

Exploit for CVE-2024-23692, a remote code execution vulnerability in Rejetto HTTP File Server (HFS) 2.3 and below. Includes mass scanning with zmap…

exploitationport-scanningreconnaissance+2
2 years ago
pyWhat preview

pyWhat

GitHubbee-san/pywhat

🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it…

data-exfiltrationeducationforensics+7
7.3k3 years ago
thc-ipv6 preview

thc-ipv6

GitHubvanhauser-thc/thc-ipv6

IPv6 attack toolkit

exploitationfuzzingids-ips-evasion+7
1.2k4 months ago
Parsero preview

Parsero

GitHubbehindthefirewalls/parsero

Parsero | Robots.txt audit tool

crawlerinformation-gatheringosint+3
17311 years ago
device-pharmer preview

device-pharmer

GitHubdanmcinerney/device-pharmer

Opens 1K+ IPs or Shodan search results and attempts to login

authenticationinformation-gatheringnetwork-mapping+5
1497 years ago
CISCO-CVE-2020-3452-Scanner-Exploiter preview

CISCO-CVE-2020-3452-Scanner-Exploiter

GitHubdarklotuskdb/cisco-cve-2020-3452-scanner-exploiter

CISCO CVE-2020-3452 Scanner & Exploiter

exploitationinformation-gatheringpenetration-testing+3
995 years ago
Previous1…789…13Next