Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
47 results
iodine preview

iodine

GitHubyarrick/iodine

Tunnel IPv4 data through DNS servers to bypass firewall restrictions and provide covert network access for penetration testing.

command-and-controldata-exfiltrationids-ips-evasion+4
8.0k10h 51m ago
exploit-CVE-2017-7494 preview

exploit-CVE-2017-7494

GitHubopsxcq/exploit-cve-2017-7494

SambaCry exploit and vulnerable container (CVE-2017-7494)

container-securityexploitationpayload-development+3
3803 years ago
CVE-2023-27842 preview

CVE-2023-27842

GitHubcowsecurity/cve-2023-27842

Authenticated remote code execution exploit for eXtplorer 2.1.15 on Joomla. Python-based tool targeting insecure permissions to gain shell access.

exploitationpenetration-testingremote-access-tool+2
23 years ago
RATel preview

RATel

GitHubfrenchcisco/ratel

RAT-el is an open source penetration test tool that allows you to take control of a windows machine. It works on the client-server model, the server…

command-and-controlencryption-decryption-toolspayload-generation+6
2775 years ago
CVE-2023-28343 preview

CVE-2023-28343

GitHubgobysec/cve-2023-28343

Altenergy Power System Control Software set_timezone RCE Vulnerability (CVE-2023-28343)

command-and-controlexploitationpenetration-testing+3
63 years ago
warpgate preview

warpgate

GitHubwarp-tech/warpgate

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

authentication-authorizationcloud-infrastructure-securitydatabase-security+4
7.9k10h 42m ago
CVE-2022-46169 preview

CVE-2022-46169

GitHubantisecc/cve-2022-46169

Exploit for CVE-2022-46169 in Cacti, enabling unauthenticated remote code execution via crafted HTTP requests to remote_agent.php.

command-and-controlexploitationremote-access-tool+2
3 years ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubjoshuavanderpoll/cve-2025-69985

Python exploit for CVE-2025-69985 targeting FUXA SCADA software. Sends crafted JSON payload to /api/runscript endpoint to bypass authentication and…

authenticationexploitationremote-access-tool+3
36 months ago
pcileech preview

pcileech

GitHubufrisk/pcileech

Direct Memory Access (DMA) Attack Software

digital-forensicsexploitationhardware-security+7
7.9k1 month ago
oni-framework preview
Archived

oni-framework

GitHubkiwidoggie/oni-framework

Embedded systems C2 software written in C/C#

command-and-controldebuggersembedded-systems-security+3
198 years ago
Ares preview

Ares

GitHubsweetsoftware/ares

Python botnet and backdoor

command-and-controlpayload-generationpersistence-mechanisms+2
1.6k8 years ago
p2p preview

p2p

GitHubmiroslavpejic85/p2p

🖥️ P2P Remote Desktop - Portable peer-to-peer remote desktop with no installation required.

network-securityremote-access-toolutilities-frameworks
4.1k2 years ago
BPFDoor-controller-source preview

BPFDoor-controller-source

GitHubhaxrob/bpfdoor-controller-source

Source code for a BPFDoor backdoor controller supporting TCP, UDP, ICMP, and HTTPS covert communication channels with magic packet activation,…

command-and-controlexploitationmalware-analysis+4
155 months ago
teamview preview

teamview

GitHubianxtianxt/teamview

Generates TeamViewer ID and password payloads for remote access to target machines. Combines executable generation with third-party remote control…

payload-generationremote-access-toolremote-access-trojan
116 years ago
Exploiting-Stagefright-Vulnerability-CVE-2015-3864 preview

Exploiting-Stagefright-Vulnerability-CVE-2015-3864

GitHubbhathiya404/exploiting-stagefright-vulnerability-cve-2015-3864

Exploit implementation for Android Stagefright vulnerability CVE-2015-3864, enabling remote code execution and privilege escalation on Android 5.1.1…

android-securitybinary-exploitationexploitation+5
3 years ago
CVE-2025-31161 preview

CVE-2025-31161

GitHubdairrow/cve-2025-31161

PoC Authentication Bypass to RCE to Exploit CVE-2025-31161

authenticationexploitationpayload-development+5
18 months ago
CVE-2022-36446 preview

CVE-2022-36446

GitHubemirpolatt/cve-2022-36446

CVE-2022-36446 - Webmin 1.996 Remote Code Execution

command-and-controlexploitationpenetration-testing+3
34 years ago
grc2 preview

grc2

GitHubandreiverse/grc2

Lightweight C2 framework written in Nim for generating implants, managing listeners, and executing tasks via TCP/HTTP with a loot system for…

command-and-controlpayload-generationred-teaming+1
3454 years ago
Previous123Next