Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
92 results
CVE-2026-82329-PoC-Exploit preview

CVE-2026-82329-PoC-Exploit

GitHubtc4dy/cve-2026-82329-poc-exploit

Exploit and detection toolkit for CVE-2026-82329, a JFrog Artifactory auth bypass. Forges join JWTs to mint admin tokens; includes a non-intrusive…

authenticationdefensive-toolsexploitation+7
2
18 days ago
CVE-2026-76461-Detection-Kit- preview

CVE-2026-76461-Detection-Kit-

GitHubfevar54/cve-2026-76461-detection-kit-

Defensive detection kit for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway, with Sigma and YARA rules, IOCs, and remediation…

defensive-toolsemail-securityincident-response+6
118 days ago
AgentGuard preview

AgentGuard

GitHubthodoristsampouris/agentguard

Zero-trust sandbox for AI agents with kernel-level filesystem jail, transparent network proxy, and YAML-based policy engine to intercept and control…

ai-securitycontainer-securitydefensive-tools+2
86 months ago
CVE-2026-53365 preview

CVE-2026-53365

GitHubhorkimhab/cve-2026-53365

CVE-2026-53365

binary-exploitationcontainer-escapeeducation+4
1 month ago
CVE-2026-21636 preview

CVE-2026-21636

GitHubpauldechassey/cve-2026-21636

Proof-of-concept demonstrating a Node.js permission model bypass (CVE-2026-21636) that allows network access via undici/fetch to local services,…

container-securityexploitationpenetration-testing+3
5 months ago
kali-linux-docker preview

kali-linux-docker

GitHubnu11secur1ty/kali-linux-docker

kali-linux-docker

cloud-securitycontainer-securitydevsecops+8
16 years ago
external_libcap-Android10_r33_CVE-2023-2603 preview

external_libcap-Android10_r33_CVE-2023-2603

GitHubpazhanivelmani/external_libcap-android10_r33_cve-2023-2603

POSIX.1e capability library for Android 10, addressing CVE-2023-2603 with tools for setting and getting process capabilities to manage privilege…

android-securitybinary-analysisexploitation+3
1 year ago
security-harness preview

security-harness

GitHubdmdhrumilmistry/security-harness

Multi-agent static application-security review harness for AI coding agents: maps codebases, hunts vulnerability classes, chains and verifies…

ai-securitycode-analysisdevsecops+9
226 days ago
Red-Team-GOAD-Lab-Proxmox preview

Red-Team-GOAD-Lab-Proxmox

GitHubpho5nix/red-team-goad-lab-proxmox

Build guide for Red Teaming home lab. GOAD lab setup in Proxmox and pfSense, Operator/C2 and Redirectors.

adversarial-attackcommand-and-controldefensive-tools+7
287 days ago
redStackPRO preview

redStackPRO

GitHubdevzero-security/redstackpro

A canvas for red team infrastructure and cyber ranges. Compose a topology, export runnable Terraform and Ansible, and deploy it yourself. Your cloud…

cloud-infrastructure-securitycloud-securitycommand-and-control+8
614 days ago
ESXiArgs-Recover preview
Archived

ESXiArgs-Recover

GitHubcisagov/esxiargs-recover

A tool to recover from ESXiArgs ransomware

data-recoverydefensive-toolsincident-response+1
3003 years ago
matrix-rs preview
Archived

matrix-rs

GitHubmemn0ps/matrix-rs

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

dynamic-code-analysiseducationids-ips-evasion+3
3584 months ago
HvLoader preview
Archived

HvLoader

GitHubmicrosoft/hvloader

HvLoader.efi is an EFI application for loading an external hypervisor loader

embedded-systems-securityexploitationfirmware-analysis+2
713 years ago
CVE-2026-61500 preview

CVE-2026-61500

GitHubaramosf/cve-2026-61500

Python PoC and Docker lab for CVE-2026-61500: recovers Rejetto HFS V8 PRNG state to forge an admin session cookie and achieve RCE via server_code.

cryptographyeducationexploitation+7
7 days ago
CVE-2026-57836-Confluent_Kafka preview

CVE-2026-57836-Confluent_Kafka

GitHubrahulreddykarne/cve-2026-57836-confluent_kafka

Disabled TLS Certificate Verification for HashiCorp Vault KMS in confluent-kafka

cloud-securitycryptographydefensive-tools+4
8 days ago
CVE-2026-34220 preview

CVE-2026-34220

GitHubyym8538/cve-2026-34220

Proof-of-concept and Docker lab reproducing CVE-2026-43220, a MikroORM SQL injection via unvalidated __raw properties in custom type columns, with…

database-securityexploitationpenetration-testing+4
11 month ago
CVE-2026-40897 preview

CVE-2026-40897

GitHubyym8538/cve-2026-40897

Proof-of-concept exploit for CVE-2026-40897, a Math.js expression parser sandbox bypass enabling remote code execution via crafted payloads and a…

exploitationpayload-developmentremote-access-tool+3
11 month ago
CVE-2026-15583 preview

CVE-2026-15583

GitHubabraxas/cve-2026-15583

Proof-of-concept client and Docker lab reproducing CVE-2026-15583, an unauthenticated confused-deputy SSRF in Grafana MCP Server that leaks…

api-securitydata-exfiltrationexploitation+6
13 days ago
Previous123456Next