Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
177 results
terminal-bench-2 preview

terminal-bench-2

GitHubharbor-framework/terminal-bench-2

Benchmark for evaluating AI agents on real-world tasks including vulnerability resolution, code debugging, and protein assembly in containerized…

ctfdevsecopseducation+5
419
5 months ago
agentwatch preview

agentwatch

GitHubfarjadahmed/agentwatch

Silent session recorder for Claude Code that logs every action, flags dangerous commands (rm -rf, sudo, curl|sh), and provides timeline review, risk…

forensicsincident-responselog-analysis+2
126 months ago
zclaw preview

zclaw

GitHubtnm/zclaw

Your personal AI assistant at all-in 888KiB (~35KB in app code). Running on an ESP32. GPIO, cron, custom tools, memory, and more.

ai-securityembedded-systems-securitygeneral-purpose-utilities+3
2.2k4 months ago
CVE-2024-3094-check preview

CVE-2024-3094-check

GitHubwgetnz/cve-2024-3094-check

Shell script to detect CVE-2024-3094 (xz-utils backdoor) on Linux and macOS systems, with automated check and fix instructions.

exploitationgeneral-purpose-utilitiesscripting-automation+2
52 years ago
flipper-mcp preview

flipper-mcp

GitHubroostercoopllc/flipper-mcp

AI-powered MCP server for Flipper Zero. Control SubGHz, NFC, RFID, IR, BLE, GPIO, and more over WiFi using Claude or any MCP client.

ai-securitybluetooth-securitycommand-and-control+9
276 months ago
r2ai preview

r2ai

GitHubradareorg/r2ai

Radare2 AI plugin using local or remote LLMs for decompilation, function explanation, vulnerability detection, renaming, and scripted reverse…

ai-assisted-reversingbinary-analysiscode-analysis+5
4811 day ago
jebmcp preview

jebmcp

GitHubflankerhqd/jebmcp

MCP server plugin for JEB Pro that enables AI-assisted decompilation, method/field inspection, and automated renaming during APK reverse engineering.

ai-assisted-reversingandroid-securitymobile-app-pentesting+3
2605 months ago
ceasta preview

ceasta

GitHubngwg/ceasta

disassembler, decompiler and debugger in one, with a built-in mcp server: point an ai at a binary and it can debug it, not just read it. ida-style…

ai-assisted-reversingbinary-analysisbinary-exploitation+6
1387 days ago
ghidra preview

ghidra

GitHubnationalsecurityagency/ghidra

Ghidra is a software reverse engineering (SRE) framework

ai-assisted-reversingandroid-securitybinary-analysis+17
80.5k4 days ago
copy-fail-CVE-2026-31431-Python-Golfing preview

copy-fail-CVE-2026-31431-Python-Golfing

GitHubavprince26/copy-fail-cve-2026-31431-python-golfing

Python golfing challenge for copy.golf, focusing on crafting minimal code to replicate a specific CVE-related behavior.

ctfeducationscripting-automation
15 months ago
loxs-optimized preview

loxs-optimized

GitHubmomika233/loxs-optimized

Web vulnerability scanner focused on automated XSS/CSP bypass payload testing and batch SQL injection detection, using SQLMap and reporting only…

payload-generationpenetration-testingscripting-automation+3
451 year ago
powerob preview

powerob

GitHubcwolff411/powerob

An on-the-fly Powershell script obfuscator meant for red team engagements. Built out of necessity.

payload-generationpenetration-testingred-teaming+1
1454 years ago
renef-skills preview

renef-skills

GitHubvichhka-git/renef-skills

Agent Skill for operating renef.io — Android ARM64 dynamic instrumentation: hook native/Java, patch memory, trace syscalls, bypass SSL pinning/root…

android-securitybinary-analysisctf+9
153 months ago
sshroute preview

sshroute

GitHubthereisnotime/sshroute

Network-aware SSH router - routes connections to different IPs/ports/keys/jump hosts based on active VPN or network

general-purpose-utilitiesnetwork-securityscripting-automation+1
211 month ago
ctf-party preview
Archived

ctf-party

GitHuborange-cyberdefense/ctf-party

🎏 A library to enhance and speed up script/exploit writing for CTF players

ctfeducationencryption-decryption-tools+3
416 years ago
ThreatCheck preview

ThreatCheck

GitHubrasta-mouse/threatcheck

Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.

binary-analysisdefensive-toolsmalware-analysis+1
1.6k6 months ago
imR0T preview

imR0T

GitHubscreetsec/imr0t

imR0T: Send a quick message with simple text encryption to your whatsapp contact and protect your text by encrypting and decrypting, basically in…

cryptographyencryption-decryption-toolsscripting-automation
777 years ago
naabu-action preview

naabu-action

GitHubprojectdiscovery/naabu-action

A fast port scanner written in go with a focus on reliability and simplicity.

devsecopsinformation-gatheringnetwork-mapping+3
211 year ago
Previous12…10Next