Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
124 results
Cl0neMast3r preview

Cl0neMast3r

GitHubabdulrah33m/cl0nemast3r

Git all your favorite tools in one click

penetration-testingscripting-automationutilities-frameworks
2698 years ago
Hacknetics preview

Hacknetics

GitHubice-wzl/hacknetics

Contained is all my reference material for my OSCP / Red Teaming. Designed to be a one stop shop for code, guides, command syntax, and high level…

curated-resourceseducationlearning-paths-courses+3
1161 month ago
BYOSI preview

BYOSI

GitHuboldkingcone/byosi

Evade EDR's the simple way, by not touching any of the API's they hook.

payload-generationpenetration-testingred-teaming+1
1962 months ago
Shortcut-Payload-Generator preview

Shortcut-Payload-Generator

GitHub9aylas/shortcut-payload-generator

AutoIt HackTool, Shortcuts .lnk Payloads Generator As LNK-KISSER.

exploitationmalware-analysispayload-generation+1
1038 years ago
PowerExfil preview

PowerExfil

GitHub1n3/powerexfil

A collection of data exfiltration scripts for Red Team assessments.

data-exfiltrationdns-analysiseducation+3
966 years ago
burp-exporter preview

burp-exporter

GitHubartssec/burp-exporter

Exporter is a Burp Suite extension to copy a request to a file or the clipboard as multiple programming languages functions.

scripting-automationutilities-frameworksweb-proxies-interception
1794 years ago
larac2shell preview

larac2shell

GitHubakefallonitis/larac2shell

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response

authenticationcommand-and-controlincident-response+6
164 months ago
CVE-2023-36884-Checker preview

CVE-2023-36884-Checker

GitHubtarraschk/cve-2023-36884-checker

Script to check for CVE-2023-36884 hardening

configuration-auditingmisconfigurationscripting-automation+1
153 years ago
ElectronVulnerableVersion preview

ElectronVulnerableVersion

GitHubgtgalaxi/electronvulnerableversion

Find Electron Apps Vulnerable to CVE-2023-4863 / CVE-2023-5129

binary-analysisinformation-gatheringreconnaissance+3
72 years ago
Fix-WinVerifyTrustSignatureValidationVuln preview

Fix-WinVerifyTrustSignatureValidationVuln

GitHubcybercondor/fix-winverifytrustsignaturevalidationvuln

Fix WinVerifyTrust Signature Validation Vulnerability, CVE-2013-3900, QID-378332

configuration-auditinggeneral-purpose-utilitiesmisconfiguration+2
33 years ago
SharePointSecurityMonitor preview

SharePointSecurityMonitor

GitHubpaolokappa/sharepointsecuritymonitor

A comprehensive PowerShell-based SharePoint security monitoring solution with CVE-2025-53770 protection, advanced DLL analysis, threat detection, and…

cloud-securityconfiguration-auditingforensics+8
11 year ago
cve-2017-8529 preview

cve-2017-8529

GitHubsfitpro/cve-2017-8529

My CVE-2017-8529 files

configuration-auditingmisconfigurationscripting-automation+1
16 years ago
CVE-2023-23397 preview

CVE-2023-23397

GitHubsecctechs/cve-2023-23397

Patch for MS Outlook Critical Vulnerability - CVSS 9.8

configuration-auditingscripting-automationvulnerability-analysis+1
13 years ago
Orchestrated-Powershell-for-CVE-2023-24932-en preview

Orchestrated-Powershell-for-CVE-2023-24932-en

GitHubv1ckxy/orchestrated-powershell-for-cve-2023-24932-en

English translation

configuration-auditingexploitationhardware-security+3
8 months ago
Search-log4Jvuln-AppScanSTD preview

Search-log4Jvuln-AppScanSTD

GitHubjrocia/search-log4jvuln-appscanstd

This Pwsh script run AppScan Standard scans against a list of web sites (URLs.txt) checking for Log4J (CVE-2021-44228) vulnerability

scripting-automationvulnerability-analysisvulnerability-scanners+1
4 years ago
CVE-2021-44228---detection-with-PowerShell preview

CVE-2021-44228---detection-with-PowerShell

GitHubintel-xeon/cve-2021-44228---detection-with-powershell

PowerShell-based scanner to detect Log4j CVE-2021-44228 vulnerability by searching directories and log files for exploitation indicators.

information-gatheringlog-analysisscripting-automation+2
4 years ago
Scan_GhostScript preview

Scan_GhostScript

GitHubwinkler-winsen/scan_ghostscript

Scan for GhostScript files affected to CVE-2023-36664

exploitationgeneral-purpose-utilitiesscripting-automation+2
3 years ago
Microsoft-2024-December-Update-Control preview

Microsoft-2024-December-Update-Control

GitHubmutkus/microsoft-2024-december-update-control

Microsoft Windows işletim sistemlerinde ki CVE-2024-49117, CVE-2024-49118, CVE-2024-49122 ve CVE-2024-49124 açıkları için KB kontrolü

configuration-auditingscripting-automationvulnerability-analysis+1
1 year ago
Previous1234567Next