Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
61 results
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
39.0k
3h 53m ago
zeek preview

zeek

GitHubzeek/zeek

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

anomaly-detectionanti-botdefensive-tools+14
8.0k14h 29m ago
conpot preview

conpot

GitHubmushorg/conpot

ICS/SCADA honeypot

information-gatheringnetwork-securityscada-ics-security+1
1.5k16h 37m ago
thingsboard preview

thingsboard

GitHubthingsboard/thingsboard

Open-source IoT Platform - Device management, data collection, processing and visualization.

anomaly-detectioncloud-infrastructure-securityconfiguration-auditing+3
22.4k5 days ago
0day-Rubbish preview

0day-Rubbish

GitHubexploit-garbage/0day-rubbish

Redefining vulnerability disclosure in the AI era. We mass-produce exploitable 0days and disclose them directly, using event-driven pressure to…

ai-securitycurated-resourcesexploitation+3
2097 days ago
awesome-connected-things-sec preview

awesome-connected-things-sec

GitHubv33ru/awesome-connected-things-sec

A Curated list of Security Resources for all connected things

ctfcurated-resourceseducation+9
3.5k17 days ago
CVE-2026-9645-ScadaBR-Analysis preview

CVE-2026-9645-ScadaBR-Analysis

GitHub0xmhany/cve-2026-9645-scadabr-analysis

Technical vulnerability analysis and CVE briefing for CVE-2026-9645 affecting ScadaBR.

educationpapers-researchscada-ics-security+1
1 month ago
suricata preview

suricata

GitHuboisf/suricata

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

anomaly-detectionanti-botdefensive-tools+9
6.6k1 month ago
boofuzz preview

boofuzz

GitHubjtpereyda/boofuzz

A fork and successor of the Sulley Fuzzing Framework

dns-fuzzingfuzzingnetwork-security+3
2.4k1 month ago
DeTTECT preview

DeTTECT

GitHubrabobank-cdc/dettect

Detect Tactics, Techniques & Combat Threats

defensive-toolsincident-responseintrusion-detection+4
2.3k1 month ago
attack-stix-data preview

attack-stix-data

GitHubmitre-attack/attack-stix-data

STIX 2.1 collections of the MITRE ATT&CK knowledge base, providing adversary tactics and techniques for enterprise, mobile, and ICS threat…

curated-resourcesioc-managementmobile-security+4
6631 month ago
CVE-2026-21018-OPC-UA-Authentication-Bypass-via-None-Security-Policy preview

CVE-2026-21018-OPC-UA-Authentication-Bypass-via-None-Security-Policy

GitHubgeorge0papasotiriou/cve-2026-21018-opc-ua-authentication-bypass-via-none-security-policy

Proof-of-concept exploit for OPC UA authentication bypass using None security policy, including a simulated server to demonstrate unauthorized…

authenticationexploitationmisconfiguration+3
1 month ago
CVE-2026-9090-Modbus-TCP-Write-to-Read-Only-Coils-via-Function-Code-Spoofing preview

CVE-2026-9090-Modbus-TCP-Write-to-Read-Only-Coils-via-Function-Code-Spoofing

GitHubgeorge0papasotiriou/cve-2026-9090-modbus-tcp-write-to-read-only-coils-via-function-code-spoofing

PoC Modbus TCP exploit demonstrating spoofed writes to read-only coils in simulated PLCs, highlighting SCADA/ICS access control flaws.

exploitationhardware-iot-securitymisconfiguration+4
1 month ago
cset preview

cset

GitHubcisagov/cset

Cybersecurity Evaluation Tool

configuration-auditingscada-ics-securityvulnerability-analysis
1.9k1 month ago
sparkplugFuzzer preview

sparkplugFuzzer

GitHubbishopfox/sparkplugfuzzer

Fuzzer for the Sparkplug B IIoT protocol

authenticationdynamic-analysis-sandboxingfuzzing+5
12 months ago
CVE-2012-1803 preview

CVE-2012-1803

GitHubx3roxismygood/cve-2012-1803

Critical vulnerability in Siemens RuggedCom ROS devices allowing attackers to derive a hidden factory account password from the device MAC address…

exploitationhardware-iot-securitynetwork-security+3
3 months ago
CVE-2026-36226 preview

CVE-2026-36226

GitHubnullbyte8080/cve-2026-36226

Benign proof-of-concept for CVE-2026-36226, a cross-site scripting vulnerability in Advantech WebAccess/SCADA 8.0-2015.08.16 Admin Dashboard Create…

educationexploitationpenetration-testing+3
3 months ago
CVE-2026-22553-InSAT-MasterSCADA-BUK-TS-MMadmServ preview

CVE-2026-22553-InSAT-MasterSCADA-BUK-TS-MMadmServ

GitHubmbanyamer/cve-2026-22553-insat-masterscada-buk-ts-mmadmserv

Unauthenticated OS command injection exploit for InSAT MasterSCADA BUK-TS MMadmServ web interface. Delivers reverse shell with root privileges via…

command-and-controlexploitationpayload-generation+3
4 months ago
Previous1234Next