Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
47 results
p2p preview

p2p

GitHubmiroslavpejic85/p2p

🖥️ P2P Remote Desktop - Portable peer-to-peer remote desktop with no installation required.

network-securityremote-access-toolutilities-frameworks
4.1k2 years ago
warpgate preview

warpgate

GitHubwarp-tech/warpgate

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

authentication-authorizationcloud-infrastructure-securitydatabase-security+4
7.9k10 hours ago
pcileech preview

pcileech

GitHubufrisk/pcileech

Direct Memory Access (DMA) Attack Software

digital-forensicsexploitationhardware-security+7
7.9k1 month ago
RATel preview

RATel

GitHubfrenchcisco/ratel

RAT-el is an open source penetration test tool that allows you to take control of a windows machine. It works on the client-server model, the server…

command-and-controlencryption-decryption-toolspayload-generation+6
2775 years ago
modsecurity-backdoor preview

modsecurity-backdoor

GitHubazurit/modsecurity-backdoor

This is a proof-of-concept of malicious software running inside of ModSecurity WAF.

command-and-controlids-ips-evasionpost-exploitation+3
341 year ago
teamview preview

teamview

GitHubianxtianxt/teamview

Generates TeamViewer ID and password payloads for remote access to target machines. Combines executable generation with third-party remote control…

payload-generationremote-access-toolremote-access-trojan
116 years ago
CVE-2023-4220-Chamilo-LMS preview

CVE-2023-4220-Chamilo-LMS

GitHubrai2en/cve-2023-4220-chamilo-lms

This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220

exploitationpayload-generationpenetration-testing+3
57 months ago
CVE-2023-28343 preview

CVE-2023-28343

GitHubgobysec/cve-2023-28343

Altenergy Power System Control Software set_timezone RCE Vulnerability (CVE-2023-28343)

command-and-controlexploitationpenetration-testing+3
63 years ago
cve-2022-28944 preview

cve-2022-28944

GitHubgar-re/cve-2022-28944

Proof-of-concept exploit for unauthenticated remote code execution in EMCO Software products via DNS spoofing and malicious update injection.

command-and-controlexploitationpayload-development+3
43 years ago
metabase-pre-auth-rce-poc preview

metabase-pre-auth-rce-poc

GitHubm3m0o/metabase-pre-auth-rce-poc

This is a script written in Python that allows the exploitation of the Metabase's software security flaw described in CVE-2023-38646.

exploitationpenetration-testingred-teaming+3
22 years ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubjoshuavanderpoll/cve-2025-69985

Python exploit for CVE-2025-69985 targeting FUXA SCADA software. Sends crafted JSON payload to /api/runscript endpoint to bypass authentication and…

authenticationexploitationremote-access-tool+3
36 months ago
cve_2025_20265 preview

cve_2025_20265

GitHubsaruman9/cve_2025_20265

PoC for CVE-2025-20265 Cisco Secure FMC Software RADIUS Remote Code Execution Vulnerability

command-and-controlexploitationpenetration-testing+3
1 year ago
CVE-2023-38646 preview

CVE-2023-38646

GitHubbirdm4nw/cve-2023-38646

This script is designed to exploit vulnerable Metabase software versions by providing you as attacker a shell.

exploitationpenetration-testingremote-access-tool+2
2 years ago
oni-framework preview
Archived

oni-framework

GitHubkiwidoggie/oni-framework

Embedded systems C2 software written in C/C#

command-and-controldebuggersembedded-systems-security+3
198 years ago
-CVE-2017-7494-Samba-Exploit-POC preview

-CVE-2017-7494-Samba-Exploit-POC

GitHubadjaliya/-cve-2017-7494-samba-exploit-poc

According to researchers with Rapid7, over 110,000 devices appear on internet, which run stable Samba versions, while 92,500 seem to run unstable…

exploitationpenetration-testingred-teaming+3
4 years ago
iodine preview

iodine

GitHubyarrick/iodine

Tunnel IPv4 data through DNS servers to bypass firewall restrictions and provide covert network access for penetration testing.

command-and-controldata-exfiltrationids-ips-evasion+4
8.0k10h 10m ago
Ares preview

Ares

GitHubsweetsoftware/ares

Python botnet and backdoor

command-and-controlpayload-generationpersistence-mechanisms+2
1.6k8 years ago
exploit-CVE-2017-7494 preview

exploit-CVE-2017-7494

GitHubopsxcq/exploit-cve-2017-7494

SambaCry exploit and vulnerable container (CVE-2017-7494)

container-securityexploitationpayload-development+3
3803 years ago
Previous123Next