Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
171 results
Hybrid Submit preview

Hybrid Submit

GitLabkaysec/hybrid-submit

A script that automatically submits files to Hybrid Analysis (API)

api-securitymalware-analysisscripting-automation
2 months ago
log4j-cve-2021-44228 preview

log4j-cve-2021-44228

GitHubpmontesd/log4j-cve-2021-44228

Very simple Ansible playbook that scan filesystem for JAR files vulnerable to Log4Shell

configuration-auditingdevsecopsscripting-automation+2
34 years ago
Script-For-CVE-2024-20666 preview

Script-For-CVE-2024-20666

GitHubnnotwen/script-for-cve-2024-20666

PowerShell script that can help you automate updating the Windows Recovery Environment (WinRE) on deployed devices to address the security…

configuration-auditingscripting-automationvulnerability-analysis
42 years ago
CVE-2024-3094-Vulnerabity-Checker preview

CVE-2024-3094-Vulnerabity-Checker

GitHublypd0/cve-2024-3094-vulnerabity-checker

Verify that your XZ Utils version is not vulnerable to CVE-2024-3094

information-gatheringreconnaissancescripting-automation+2
42 years ago
debian11-dirty_pipe-patcher preview

debian11-dirty_pipe-patcher

GitHubihenakaarachchi/debian11-dirty_pipe-patcher

A Simple bash script that patches the CVE-2022-0847 (dirty pipe) kernel vulnerability on Debian 11

exploitationprivilege-escalationscripting-automation+1
23 years ago
BurpSuite-Grand-Master-Tools preview

BurpSuite-Grand-Master-Tools

GitHubnu11secur1ty/burpsuite-grand-master-tools

Modular toolkit for pentesters that converts Burp Suite captured HTTP requests into browsable URLs and automates workflow actions with auditable…

penetration-testingreconnaissancescripting-automation+3
29 months ago
Sitecore.Solr-log4j-mitigation preview

Sitecore.Solr-log4j-mitigation

GitHubavwolferen/sitecore.solr-log4j-mitigation

This repository contains a script that you can run on your (windows) machine to mitigate CVE-2021-44228

configuration-auditingincident-responsescripting-automation+2
23 years ago
Linux-Kernel-Vulnerabilities-CVE-2026-23111 preview

Linux-Kernel-Vulnerabilities-CVE-2026-23111

GitHubvrtlbob/linux-kernel-vulnerabilities-cve-2026-23111

High Severity LPE vulnerability in Linux Kernel, with a CVS score of 7.8. An inverted check from user enables a process inside the container to break…

container-escapeeducationexploitation+3
11 month ago
PENeL preview

PENeL

GitHubguibacellar/penel

[Powershell with Embedded .NET Library] Program that prepares a .NET DLL Library to run embedded in Powershell Script

payload-generationscripting-automationutilities-frameworks
37 years ago
PS-CVE-2021-21551 preview

PS-CVE-2021-21551

GitHubarnaudluti/ps-cve-2021-21551

Script to patch your domain computers about the CVE-2021-21551. Privesc on machines that have the driver dbutil_2_3.sys, installed by some DELL tools…

configuration-auditingexploitationincident-response+3
15 years ago
CVE-2013-3900-WinTrustVerify preview

CVE-2013-3900-WinTrustVerify

GitHubotissymbos/cve-2013-3900-wintrustverify

Powershell script that checks for cert padding in the Windows Registry and adds it if it does not exist. Meant to resolve the WinTrustVerify…

configuration-auditingscripting-automationvulnerability-analysis
11 year ago
Automate_Exploit_CVE-2022-44268 preview

Automate_Exploit_CVE-2022-44268

GitHubj0ey17/automate_exploit_cve-2022-44268

An exploit automation script that builds upon the work of Voidzone security.

data-exfiltrationexploitationpenetration-testing+3
1 year ago
ilk-toolkit preview

ilk-toolkit

GitLabilk-toolkit/ilk-toolkit

A ToolKit that automatically installs & configures all the Tools needed to turn your Daily Driver Linux Distro into a Pentesting Machine

information-gatheringnetwork-securitypassword-cracking+5
4 years ago
puppet-shellshock preview

puppet-shellshock

GitHubrenanvicente/puppet-shellshock

This module determine the vulnerability of a bash binary to the shellshock exploits (CVE-2014-6271 or CVE-2014-7169) and then patch that where…

configuration-auditingdevsecopsscripting-automation+2
11 years ago
ds-cve-plugin preview

ds-cve-plugin

GitHubdatasurgeon-ds/ds-cve-plugin

A plugin for DataSurgeon that Extracts CVE Numbers From Text (e.g: CVE-2021-56789)

information-gatheringscripting-automationthreat-intelligence+2
3 years ago
cookbook-bash-CVE-2014-6271 preview

cookbook-bash-CVE-2014-6271

GitHubjblaine/cookbook-bash-cve-2014-6271

Chef cookbook that will fail if bash vulnerability found per CVE-2014-6271

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
11 years ago
CVE-2024-3094-Checker preview

CVE-2024-3094-Checker

GitHubthetorjancaptain/cve-2024-3094-checker

The repository consists of a checker file that confirms if your xz version and xz-utils package is vulnerable to CVE-2024-3094.

configuration-auditinggeneral-purpose-utilitiesscripting-automation+2
2 years ago
ralph preview

ralph

GitHubalonisser/ralph

Ralph Wiggum plugin implementation that works after the CVE-2025-54795 security patch

educationgeneral-purpose-utilitiesscripting-automation+1
7 months ago
Previous1234…10Next