Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
59 results
REC2 preview

REC2

GitHubg0h4n/rec2

REC2 (Rusty External Command and Control) is client and server tool allowing auditor to execute command from VirusTotal and Mastodon APIs written in…

command-and-controlpayload-developmentpenetration-testing+3
162
2 years ago
DarkAgent preview

DarkAgent

GitHubilikenwf/darkagent

DarkAgent Remote Administration Tool RAT by DragonHunter

command-and-controlpenetration-testingpost-exploitation+3
14213 years ago
rdesktop preview

rdesktop

GitHubrdesktop/rdesktop

Open-source RDP client for connecting to Windows Terminal Services from Unix-like systems, supporting RDP versions 4 and 5 with smart-card…

general-purpose-utilitiesnetwork-securityremote-access-tool
1.4k3 months ago
CVE-2023-24489-ShareFile preview

CVE-2023-24489-ShareFile

GitHubadhikara13/cve-2023-24489-sharefile

This project is a Python script that exploits the CVE-2023-24489 vulnerability in ShareFile. It allows remote command execution on the target server.…

command-and-controlexploitationpenetration-testing+3
133 years ago
CVE-2022-1329 preview

CVE-2022-1329

GitHubdexit/cve-2022-1329

The Elementor Website Builder plugin for WordPress is vulnerable to unauthorized execution of several AJAX actions due to a missing capability check…

code-analysisexploitationpayload-development+3
3 years ago
sshuttle preview

sshuttle

GitHubapenwarr/sshuttle

Wrong project! You should head over to http://github.com/sshuttle/sshuttle

network-securitypenetration-testingred-teaming+2
8.9k8 years ago
socks5 preview

socks5

GitHubwzshiming/socks5

Socks5/Socks5h server and client. Full TCP/Bind/UDP and IPv4/IPv6 support

general-purpose-utilitiesnetwork-securitypenetration-testing+2
13213 days ago
MalvexC2 preview

MalvexC2

GitHuberarnitox/malvexc2

A simple C2 Framework written in modern C++

command-and-controleducationexploit-frameworks+6
321 month ago
Malicious-MCP preview

Malicious-MCP

GitHubquinnbast/malicious-mcp

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

ai-securitycommand-and-controldata-exfiltration+8
84 months ago
Lime-RAT preview
Archived

Lime-RAT

GitHubnyan-x-cat/lime-rat

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

command-and-controlcryptographydata-exfiltration+7
1.1k7 years ago
TeamsImplant preview

TeamsImplant

GitHuballevon412/teamsimplant
command-and-controlexploit-frameworkspayload-development+5
2084 years ago
CVE-2021-44228-Apache-Log4j-Rce-main preview

CVE-2021-44228-Apache-Log4j-Rce-main

GitHubravid-checkmarx/cve-2021-44228-apache-log4j-rce-main
exploitationpayload-generationpenetration-testing+4
4 years ago
GC2-sheet preview

GC2-sheet

GitHubloociprian/gc2-sheet

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

command-and-controldata-exfiltrationmalware-analysis+2
6491 month ago
gdog preview

gdog

GitHubmaldevel/gdog

A fully featured Windows backdoor that uses Gmail as a C&C server

command-and-controlpayload-generationpost-exploitation+2
5079 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubmrmtwoj/cve-2024-6387

regreSSHion is a security tool designed to test for vulnerabilities related to CVE-2024-6387, specifically focusing on SSH and remote access…

exploitationnetwork-securitypenetration-testing+3
2 years ago
twittor preview

twittor

GitHubpaulsec/twittor

A fully featured backdoor that uses Twitter as a C&C server

command-and-controlexploitationpayload-development+4
80910 years ago
CVE-2022-46080 preview

CVE-2022-46080

GitHubgeniuszly/cve-2022-46080

it is script that enables Telnet on routers by sending a specially crafted request. The script allows users to specify the router's URL, Telnet port,…

educationexploitationpenetration-testing+3
72 years ago
LocalNet_Attacker preview

LocalNet_Attacker

GitHubdhesitheking/localnet_attacker

This is a project about attacking and gathering information of the windows machines which is connected in the same network by using java programs

information-gatheringpenetration-testingremote-access-tool+1
32 years ago
Previous1234Next