Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
60 results
struts1filter preview

struts1filter

GitHubrgielen/struts1filter

A request parameter filter solution for Struts 1 CVE-2014-0114 based on the work of Alvaro Munoz and the HP Fortify team

code-analysisdevsecopsmisconfiguration+3
12
9 years ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubalberto-galindo/cve-2025-5548

Security research and reproduction of CVE-2025-5548: A stack-based buffer overflow in FreeFloat FTP Server 1.0. Includes binary analysis, crash…

binary-exploitationdebuggerseducation+8
5 months ago
ghidra-emotionengine preview
Archived

ghidra-emotionengine

GitHubbeardypig/ghidra-emotionengine

Ghidra Processor for the Play Station 2's Emotion Engine MIPS based CPU

binary-analysisembedded-systems-securityfirmware-analysis+2
2093 years ago
r2gopclntabParser preview

r2gopclntabParser

GitHubasherdll/r2gopclntabparser

A radare2 script to parse the gopclntab to facilitate Reverse Engineering Go binaries.

binary-analysisdebuggersforensics+3
174 months ago
defending-code-reference-harness preview

defending-code-reference-harness

GitHubanthropics/defending-code-reference-harness

Skills for threat modeling, scanning, triage, patching, plus an autonomous scanning harness you can /customize

ai-securitycode-analysisdevsecops+6
7.3k14 days ago
YARA_Rules preview

YARA_Rules

GitHubmalgamy/yara_rules
curated-resourcesdefensive-toolsincident-response+3
653 years ago
permhash preview

permhash

GitHubgoogle/permhash
android-securitydigital-forensicshash-analysis+3
458 months ago
Adhrit preview
Archived

Adhrit

GitHubabhi-r3v0/adhrit

Android Security Suite for in-depth reconnaissance and static bytecode analysis based on Ghera benchmarks.

android-securitybinary-analysiscode-analysis+6
5433 years ago
mtk_bp preview

mtk_bp

GitHubnccgroup/mtk_bp

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

binary-analysisembedded-systems-securityfirmware-analysis+4
772 months ago
oversight preview

oversight

GitHubrakosn1cek/oversight

A lightweight security auditor and sandbox for shell scripts. Oversight combines a Static Analysis engine (Rust) with Dynamic Enforcement (Linux…

code-analysisdevsecopsdynamic-analysis-sandboxing+7
3925 days ago
alaniz-cipher preview

alaniz-cipher

GitHubquantusync/alaniz-cipher

Encryption from Nonlinear Sheaf Morphisms over Graphs

cryptographyeducationencryption-decryption-tools+2
53 months ago
SusanRTTI preview

SusanRTTI

GitHubnccgroup/susanrtti

Another RTTI Parsing IDA plugin

binary-analysisreverse-engineeringstatic-analysis+1
3113 years ago
grap preview

grap

GitHubquosecgmbh/grap

Define and match user-defined graph patterns against binary control flow graphs using a Capstone-based disassembler, with CLI, Python bindings, and…

binary-analysisdebuggersmalware-analysis+2
1554 years ago
text4shell-tools preview

text4shell-tools

GitHubjfrog/text4shell-tools
binary-analysiscode-analysisdefensive-tools+3
1043 years ago
VulTriage preview

VulTriage

GitHubvinsontang1/vultriage

The code of VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection

ai-securitycode-analysiseducation+4
53 months ago
Sighthound preview

Sighthound

GitHubcorgea/sighthound

Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

code-analysisdevsecopsmisconfiguration+4
2759 days ago
sgxray preview

sgxray

GitHubbaiduxlab/sgxray

Automated reasoning tool based on the SMACK verifier that detects SGX enclave bugs from trusted boundary violations, including invalid pointer…

binary-analysisfuzzinghardware-security+2
435 years ago
xtride preview

xtride

GitHubpr0me/xtride

N-gram-based type recovery tool for binaries, recovering structures and function signatures from decompiled code with high throughput and actionable…

binary-analysisdebuggerseducation+5
261 month ago
Previous1234Next