Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
14 results
adversary_emulation_library preview

adversary_emulation_library

GitHubcenter-for-threat-informed-defense/adversary_emulation_library

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

curated-resourcesdata-exfiltrationdefensive-tools+5
2.2k
1 year ago
Reports preview

Reports

GitHubj4ck3lsyn-gen2/reports

Curated collection of cybersecurity research reports covering CVE analysis, exploit research, threat intelligence, and offensive security from…

binary-exploitationcurated-resourcesexploitation+8
21 month ago
CVE-2021-3441-check preview

CVE-2021-3441-check

GitHubtcbutler320/cve-2021-3441-check

CVE-2021-3441 CVE Check is a python script to search targets for indicators of compromise to CVE-2021-3441

exploitationinformation-gatheringioc-management+3
25 years ago
Arbitrary-File-Read-CVE-2024-24919 preview

Arbitrary-File-Read-CVE-2024-24919

GitHubluismateo1/arbitrary-file-read-cve-2024-24919

Walkthrough of detecting, investigating, and responding to a CVE-2024-24919 path traversal attack, including log analysis, threat intel checks, and…

educationexploitationincident-response+3
1 year ago
CVE-2026-2256-Threat-Model----ms-agent-Command-Injection preview

CVE-2026-2256-Threat-Model----ms-agent-Command-Injection

GitHubmelbratic/cve-2026-2256-threat-model----ms-agent-command-injection

Threat model and analysis for CVE-2026-2256, a command injection vulnerability in ms-agent, detailing exploitation vectors and potential impact.

command-and-controlexploitationpenetration-testing+3
2 months ago
CVE-2022-26134 preview

CVE-2022-26134

GitHubofflinehoster/cve-2022-26134

Exploit scripts and threat intelligence indicators for CVE-2022-26134, a critical OGNL injection vulnerability in Atlassian Confluence Server and…

exploitationinformation-gatheringthreat-intelligence+2
84 years ago
mitm-proxy preview

mitm-proxy

GitHubwelfordian/mitm-proxy

Go-based MITM HTTP/HTTPS proxy for intercepting, inspecting, and replaying traffic. Features admin dashboard, AI copilot, threat scanning, caching,…

ai-securityapi-security-testingdebuggers+5
152 months ago
Spring4Shell preview

Spring4Shell

GitHubstrainerart/spring4shell

Threat intelligence repository detailing the Spring4Shell zero-day vulnerability (CVE-2010-1622) with exploit analysis and detection guidance for…

exploitationpenetration-testingthreat-intelligence+2
4 years ago
CVE-2017-4878-Samples preview

CVE-2017-4878-Samples

GitHubbrianwrf/cve-2017-4878-samples

Repository containing samples and analysis related to CVE-2017-4878, a Flash Player zero-day exploit, including malicious files and ROKRAT malware…

binary-exploitationexploitationmalware-analysis+3
178 years ago
CVE-2025-53770-Scanner preview

CVE-2025-53770-Scanner

GitHubzephrfish/cve-2025-53770-scanner

ToolShell scanner - CVE-2025-53770 and detection information

defensive-toolsexploitationincident-response+6
181 year ago
CVE-2024-31848-PoC preview

CVE-2024-31848-PoC

GitHubstuub/cve-2024-31848-poc

PoC for Exploiting CVE-2024-31848/49/50/51 - File Path Traversal

exploitationinformation-gatheringpenetration-testing+3
182 years ago
threatmap preview

threatmap

GitHubbogdanticu88/threatmap

IaC threat modeler with STRIDE, MITRE ATT&CK, and PASTA frameworks. REST API, GraphQL, and Docker support for Terraform, CloudFormation, and…

api-securitycloud-securityconfiguration-auditing+5
611 month ago
CVE-2026-48907 preview

CVE-2026-48907

GitHub0xblackash/cve-2026-48907

Advisory and detection guidance for CVE-2026-48907, a critical unauthenticated RCE in JCE Joomla content editor, with affected versions, IOCs, and…

exploitationincident-responsepenetration-testing+3
32 months ago
CVE-2026-56423-MISP-deleteSelection-BrokenAccessControl preview

CVE-2026-56423-MISP-deleteSelection-BrokenAccessControl

GitHubbiitts/cve-2026-56423-misp-deleteselection-brokenaccesscontrol

PoC for CVE-2026-56423: MISP deleteSelection broken access control (CWE-862, contributor hard-deletes other orgs' Event Reports/Sharing Groups, CVSS…

exploitationmisconfigurationpenetration-testing+3
1 month ago