Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
243 results
external_libexif_AOSP10_r33_CVE-2020-0198 preview

external_libexif_AOSP10_r33_CVE-2020-0198

GitHubtrinadh465/external_libexif_aosp10_r33_cve-2020-0198

C library for parsing, editing, and saving EXIF metadata, with a focus on addressing CVE-2020-0198 in AOSP10.

binary-analysiscode-analysisexploitation+3
4 years ago
external_expat_2.1.0_CVE-2022-43680 preview

external_expat_2.1.0_CVE-2022-43680

GitHubnidhihcl/external_expat_2.1.0_cve-2022-43680

C library for stream-oriented XML parsing with a focus on vulnerability analysis and exploitation of CVE-2022-43680, enabling fuzzing and…

binary-analysiscode-analysisexploitation+3
3 years ago
webp_Android10_r33_CVE-2023-1999 preview

webp_Android10_r33_CVE-2023-1999

GitHubpazhanivelmani/webp_android10_r33_cve-2023-1999

Proof-of-concept exploit for CVE-2023-1999 targeting the WebP codec library on Android 10 (r33). Demonstrates a heap buffer overflow vulnerability in…

binary-analysiscode-analysisexploitation+3
1 year ago
external_libexif_AOSP10_CVE-2020-0452 preview

external_libexif_AOSP10_CVE-2020-0452

GitHubshaikusaf/external_libexif_aosp10_cve-2020-0452

C library for parsing, editing, and saving EXIF data, with a focus on addressing CVE-2020-0452 in AOSP10. Provides API for metadata extraction and…

binary-analysiscode-analysisexploitation+3
4 years ago
jenkinsci__workflow-cps-plugin_CVE-2022-25173_2646-v6ed3b5b01ff1 preview

jenkinsci__workflow-cps-plugin_CVE-2022-25173_2646-v6ed3b5b01ff1

GitHubshoucheng3/jenkinsci__workflow-cps-plugin_cve-2022-25173_2646-v6ed3b5b01ff1

Exploit for CVE-2022-25173 targeting Jenkins Pipeline Groovy Plugin's CPS interpreter sandbox bypass, enabling arbitrary code execution within…

code-analysisdevsecopsdynamic-analysis-sandboxing+3
11 months ago
expat_2_1_0_CVE-2024-28757 preview

expat_2_1_0_CVE-2024-28757

GitHubsaurabh2088/expat_2_1_0_cve-2024-28757

C library for stream-oriented XML parsing, with a focus on analyzing and reproducing CVE-2024-28757 vulnerability in Expat 2.1.0.

binary-analysiscode-analysisexploitation+3
2 years ago
duo-agentflow-auditor preview

duo-agentflow-auditor

GitLabcentisgood/duo-agentflow-auditor

AI Code Security — four agents that catch what SAST misses in AI-generated code. Built on GitLab Duo Agent Platform.

ai-securitycode-analysisdevsecops+8
7 months ago
platform_external_libvpx_v1.4.0_CVE-2023-5217 preview

platform_external_libvpx_v1.4.0_CVE-2023-5217

GitHubtrinadh465/platform_external_libvpx_v1.4.0_cve-2023-5217

C library for VP8/VP9 video encoding and decoding, with a focus on security patching for CVE-2023-5217.

binary-analysiscode-analysisexploitation+3
2 years ago
XStream-1 preview

XStream-1

GitHubepicosy/xstream-1

Java library for XML serialization and deserialization, with a focus on CVE-2020-26217 exploitation. Enables converting Java objects to XML and back,…

code-analysisexploitationstatic-analysis+2
2 years ago
fastjson-tp1fn1 preview

fastjson-tp1fn1

GitHubscabench/fastjson-tp1fn1

a scenario based on CVE-2022-25845 yielding a TP for metadata based SCA but a FN if the callgraph is used

code-analysiseducationpapers-research+3
2 years ago
log4jhound preview

log4jhound

GitHubmebibite/log4jhound

Created after the disclosure of CVE-2021-44228. Bash script that detects Log4j occurrences in your projects and systems, allowing you to get insight…

code-analysisdevsecopsstatic-analysis+2
4 years ago
springhound preview

springhound

GitHubmebibite/springhound

Created after the disclosure of CVE-2022-22965 and CVE-2022-22963. Bash script that detects Spring Framework occurrences in your projects and…

code-analysismisconfigurationstatic-analysis+2
4 years ago
3007Project preview

3007Project

GitHubtimon-l/3007project

Secure coding project, research on CVE-2019-17498 and implement a player score function written in C.

binary-analysiscode-analysiseducation+2
3 years ago
xerces-3.2.3-DTD-hotfix preview

xerces-3.2.3-DTD-hotfix

GitHubjohnjamesmccann/xerces-3.2.3-dtd-hotfix

// SPDX-FileCopyrightText: Portions Copyright 2021 Siemens // Modified on 15-Jul-2021 by Siemens and/or its affiliates to fix CVE-2018-1311: Apache…

code-analysisgeneral-purpose-utilitiesstatic-analysis+1
4 years ago
CVE-2011-1475 preview

CVE-2011-1475

GitHubsamaujs/cve-2011-1475

Check with Maven on CVE-2011-1475

code-analysisdevsecopsstatic-analysis+3
7 years ago
defending-code-reference-harness preview

defending-code-reference-harness

GitHubanthropics/defending-code-reference-harness

Skills for threat modeling, scanning, triage, patching, plus an autonomous scanning harness you can /customize

ai-securitycode-analysisdevsecops+6
7.5k1 month ago
railsgoat preview

railsgoat

GitHubowasp/railsgoat

A vulnerable version of Rails that follows the OWASP Top 10

code-analysisctfeducation+5
92726 days ago
Dna preview

Dna

GitHubcolton1skees/dna

LLVM based static binary analysis framework

binary-analysiscode-analysisdebuggers+5
3805 months ago
Previous1…345…14Next