Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
21 results
DeTTECT preview

DeTTECT

GitHubrabobank-cdc/dettect

Detect Tactics, Techniques & Combat Threats

defensive-toolsincident-responseintrusion-detection+4
2.3k
17 days ago
kamerka preview
Archived

kamerka

GitHubwoj-ciech/kamerka

Build interactive map of cameras from Shodan

dns-subdomain-enumerationinformation-gatheringiot-security+5
1.3k6 years ago
isf preview
Archived

isf

GitHubdark-lbp/isf

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

exploitationexploit-frameworksfuzzing+6
1.1k2 years ago
ics-forensics-tools preview

ics-forensics-tools

GitHubmicrosoft/ics-forensics-tools

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

digital-forensicsforensicsincident-response+2
3721 year ago
ICSSecurityScripts preview

ICSSecurityScripts

GitHubtijldeneut/icssecurityscripts

Python scripts for security assessment of industrial PLCs: scanning, enumeration, control, and exploitation of Beckhoff, Siemens, Schneider,…

exploitationnetwork-mappingscada-ics-security+1
1515 months ago
paracosme preview
Archived

paracosme

GitHub0vercl0k/paracosme

Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stage during the…

binary-exploitationexploitationpayload-development+3
902 years ago
on-the-fly preview

on-the-fly

GitHubtelefonica/on-the-fly

on-the-fly

exploitationinformation-gatheringiot-security+4
862 years ago
bof preview

bof

GitHuborange-cyberdefense/bof

BOF (Boiboite Opener Framework) is a testing framework for industrial protocols implementations and devices.

exploitationfuzzinginformation-gathering+6
533 years ago
APOLOGEE preview
Archived

APOLOGEE

GitHubrosesecurity/apologee

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

authenticationexploitationexploit-frameworks+8
501 year ago
ripple20 preview

ripple20

GitHubcorelight/ripple20

A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.

anomaly-detectionintrusion-detectioniot-security+3
324 years ago
CVE-2021-26828_ScadaBR_RCE preview

CVE-2021-26828_ScadaBR_RCE

GitHubhev0x/cve-2021-26828_scadabr_rce
exploitationpenetration-testingremote-access-tool+3
95 years ago
Industrial Security Auditing Framework preview

Industrial Security Auditing Framework

GitLabd0ubl3g/industrial-security-auditing-framework

ISAF aims to be a framework that provides the necessary tools for the correct security audit of industrial (OT) environments.

exploit-frameworksnetwork-securitypenetration-testing+2
75 years ago
CVE-2021-26828-Ultimate preview

CVE-2021-26828-Ultimate

GitHubridpath/cve-2021-26828-ultimate

ScadaFlare Authenticated RCE Exploit Framework for ScadaBR (CVE-2021-26828) OpenPLC ScadaBR

command-and-controlexploitationinformation-gathering+6
58 months ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubjoshuavanderpoll/cve-2025-69985

CVE-2025-69985: FUXA ≤1.2.8 Auth Bypass + RCE via /api/runscript

authenticationexploitationremote-access-tool+3
35 months ago
CVE-2023-30459 preview

CVE-2023-30459

GitHubtoxich4/cve-2023-30459

CVE-2023-30459

exploitationpayload-generationremote-access-tool+2
33 years ago
CVE-2009-0473-check preview

CVE-2009-0473-check

GitHubakbarq/cve-2009-0473-check

Simple script to exploit open redirection vulnerability in Rockwell ControlLogix 1756-ENBT/A

exploitationpenetration-testingscada-ics-security+2
33 years ago
CVE-2025-41656 preview

CVE-2025-41656

GitHubwallyschag/cve-2025-41656

This repository includes the code and files needed to test and execute a PoC for CVE-2025-41656

educationexploitationiot-security+3
29 months ago
CVE-2015-8299 preview

CVE-2015-8299

GitHubkernoelpanic/cve-2015-8299

CVE-2015-8299 Advisory and PoC

binary-exploitationembedded-systems-securityexploitation+4
10 years ago
Previous12Next