Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
46 results
UltraViolet preview

UltraViolet

GitHubyakushstanislav/ultraviolet
dns-analysisincident-responseiot-security+6
4416h 36m ago
thingsboard preview

thingsboard

GitHubthingsboard/thingsboard

Open-source IoT Platform - Device management, data collection, processing and visualization.

anomaly-detectioncloud-infrastructure-securityconfiguration-auditing+3
22.3k1 day ago
nerva preview

nerva

GitHubpraetorian-inc/nerva

Fast service fingerprinting CLI for 170+ protocols (TCP/UDP/SCTP) - built by Praetorian

information-gatheringiot-securitymisconfiguration+4
3524 days ago
Rail-OT-Protector preview

Rail-OT-Protector

GitHubspinfosecurity/rail-ot-protector

Rail-OT-Protector (ROP) — free, open-source cybersecurity scanning tool for rail and transit OT/SCADA networks. PowerShell + Bash scanners for…

defensive-toolsinformation-gatheringnetwork-security+6
14 days ago
0day-Rubbish preview

0day-Rubbish

GitHubexploit-garbage/0day-rubbish

Redefining vulnerability disclosure in the AI era. We mass-produce exploitable 0days and disclose them directly, using event-driven pressure to…

ai-securitycurated-resourcesexploitation+3
1536 days ago
CVE-2026-25938-FUXA-Unauthenticated-RCE preview

CVE-2026-25938-FUXA-Unauthenticated-RCE

GitHubjudgedbykira/cve-2026-25938-fuxa-unauthenticated-rce

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

exploitationiot-securitypayload-development+6
17 days ago
CVE-2026-21018-OPC-UA-Authentication-Bypass-via-None-Security-Policy preview

CVE-2026-21018-OPC-UA-Authentication-Bypass-via-None-Security-Policy

GitHubgeorge0papasotiriou/cve-2026-21018-opc-ua-authentication-bypass-via-none-security-policy
authenticationexploitationmisconfiguration+3
17 days ago
CVE-2026-9090-Modbus-TCP-Write-to-Read-Only-Coils-via-Function-Code-Spoofing preview

CVE-2026-9090-Modbus-TCP-Write-to-Read-Only-Coils-via-Function-Code-Spoofing

GitHubgeorge0papasotiriou/cve-2026-9090-modbus-tcp-write-to-read-only-coils-via-function-code-spoofing
exploitationhardware-iot-securitymisconfiguration+4
18 days ago
recon-skills preview

recon-skills

GitHubuphiago/recon-skills

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

cloud-securitycrawlerexploitation+9
1.2k20 days ago
cset preview

cset

GitHubcisagov/cset

Cybersecurity Evaluation Tool

configuration-auditingscada-ics-securityvulnerability-analysis
1.9k28 days ago
aztarna preview
Archived

aztarna

GitHubaliasrobotics/aztarna

aztarna, a footprinting tool for robots.

embedded-systems-securityhardware-iot-securityinformation-gathering+7
921 month ago
Kamerka-GUI preview

Kamerka-GUI

GitHubwoj-ciech/kamerka-gui

Ultimate Internet of Things/Industrial Control Systems reconnaissance tool.

exploitationinformation-gatheringiot-security+6
8652 months ago
sparkplugFuzzer preview

sparkplugFuzzer

GitHubbishopfox/sparkplugfuzzer

Fuzzer for the Sparkplug B IIoT protocol

authenticationdynamic-analysis-sandboxingfuzzing+5
12 months ago
FUXAPWN preview

FUXAPWN

GitHubhann1bl3l3ct3r/fuxapwn

POC exploit for CVE-2026-25895 FUXA Unauthenticated Path Traversal -> Arbitrary File Write -> RCE

exploitationinformation-gatheringlateral-movement+8
2 months ago
CVE-2026-31156 preview

CVE-2026-31156

GitHubunicorn-hyh/cve-2026-31156

There is a path injection vulnerability in OpenPLC-v3, which arises from the program not performing any validity checks on the file path parameters…

code-analysisexploitationinformation-gathering+3
3 months ago
ICSSecurityScripts preview

ICSSecurityScripts

GitHubtijldeneut/icssecurityscripts

Python scripts for security assessment of industrial PLCs: scanning, enumeration, control, and exploitation of Beckhoff, Siemens, Schneider,…

exploitationnetwork-mappingscada-ics-security+1
1515 months ago
sel4-ics-gateway-demo preview

sel4-ics-gateway-demo

GitHubspanwich/sel4-ics-gateway-demo

Defensive security demo: seL4 microkernel gateway protecting vulnerable ICS from CVE-2019-14462

container-securitydefensive-toolseducation+5
6 months ago
CVE-2021-26828-Ultimate preview

CVE-2021-26828-Ultimate

GitHubridpath/cve-2021-26828-ultimate

ScadaFlare Authenticated RCE Exploit Framework for ScadaBR (CVE-2021-26828) OpenPLC ScadaBR

command-and-controlexploitationinformation-gathering+6
58 months ago
Previous123Next