Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
247 results
Apache-Authentication-Flaw-Research-CVE-2024-38476- preview

Apache-Authentication-Flaw-Research-CVE-2024-38476-

GitHubabanop22333/apache-authentication-flaw-research-cve-2024-38476-

Technical research paper analyzing CVE-2024-38476, a critical Apache HTTP Server vulnerability enabling SSRF, information disclosure, and potential…

educationincident-responsepapers-research+3
7 months ago
Malware-Analysis-Follina-CVE-2022-30190 preview

Malware-Analysis-Follina-CVE-2022-30190

GitHubnimesh895/malware-analysis-follina-cve-2022-30190

Step-by-step static malware analysis of a Follina (CVE-2022-30190) exploit document, covering file extraction, VirusTotal correlation, MITRE ATT&CK…

educationforensicsmalware-analysis+3
7 months ago
Patch-the-Path-CVE-2025-55234-Detection-Defense preview

Patch-the-Path-CVE-2025-55234-Detection-Defense

GitHubmrk336/patch-the-path-cve-2025-55234-detection-defense

This playbook outlines detection, containment, and remediation strategies for CVE-2025-55234, a critical Windows SMB privilege escalation flaw.

educationexploitationincident-response+4
11 months ago
From-EternalBlue-to-CVE-2025-2776-The-Evolution-of-an-SMB-Attack preview

From-EternalBlue-to-CVE-2025-2776-The-Evolution-of-an-SMB-Attack

GitHubmrk336/from-eternalblue-to-cve-2025-2776-the-evolution-of-an-smb-attack

It shook the world in 2017 and has evolved into today’s CVE‑2025‑2776. Microsoft still relies on SMBv1, this article will explain how attackers have…

educationexploitationincident-response+4
0 years ago
CVE-2024-4577-rayng preview

CVE-2024-4577-rayng

GitHubrayngnpc/cve-2024-4577-rayng

CVE-2024-4577 PHP CGI Argument Injection - Detection Lab with Vagrant VMs and Wazuh SIEM rules

educationexploitationincident-response+6
7 months ago
LetsDefend-SOC173-Follina-0-Day-Detected preview

LetsDefend-SOC173-Follina-0-Day-Detected

GitHubarkha-corvus/letsdefend-soc173-follina-0-day-detected

We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered…

digital-forensicseducationincident-response+5
10 months ago
CVE-2025-68645-Exploiting-Zimbra-Webmail-LFI-Vulnerability preview

CVE-2025-68645-Exploiting-Zimbra-Webmail-LFI-Vulnerability

GitHubfaysalferdous/cve-2025-68645-exploiting-zimbra-webmail-lfi-vulnerability

Defender-focused reference pack for CVE-2025-68645 Zimbra LFI, including Sigma/Splunk detection rules, WAF mitigation snippets, IOC patterns, and…

educationincident-responseioc-management+3
6 months ago
vulnerability-assessment preview

vulnerability-assessment

GitHubabdirisaq-ali-aynab/vulnerability-assessment

Professional cybersecurity assessment demonstrating vulnerability identification, CVSS severity scoring, MITRE ATT&CK framework application, and…

educationpenetration-testingthreat-intelligence+2
9 months ago
moveit-transfer-2023-breach preview

moveit-transfer-2023-breach

GitHubkhengar9274-web/moveit-transfer-2023-breach

Educational case study of the MOVEit Transfer SQL injection breach (CVE-2023-34362) by Cl0p ransomware group, covering attack timeline, exploitation,…

database-securityeducationincident-response+3
7 months ago
xz-cve-2024-3094 preview

xz-cve-2024-3094

GitHubhackura/xz-cve-2024-3094

Python demo simulating CVE-2024-3094: a supply chain backdoor in XZ Utils with a trigger-based stealth activation.

digital-forensicseducationforensics+6
7 months ago
Aninda-security-advisories preview

Aninda-security-advisories

GitHubanonaninda/aninda-security-advisories

Security advisories published by Aninda , including CVE-2025-56608 and future findings.

educationioc-managementpapers-research+2
11 months ago
CVE-2025-32463 preview

CVE-2025-32463

GitHubdaryllundy/cve-2025-32463

Detection framework for CVE-2025-32463 sudo privilege escalation vulnerability. Provides real-time monitoring, forensic analysis, and SIEM…

educationexploitationforensics+8
1 year ago
Event-ID-263-Arbitrary-File-Read-on-Checkpoint-Security-Gateway-CVE-2024-24919- preview

Event-ID-263-Arbitrary-File-Read-on-Checkpoint-Security-Gateway-CVE-2024-24919-

GitHubcyberbibs/event-id-263-arbitrary-file-read-on-checkpoint-security-gateway-cve-2024-24919-

Step-by-step SOC incident response walkthrough for CVE-2024-24919 arbitrary file read on Check Point gateways, covering detection, analysis,…

educationforensicsincident-response+3
1 year ago
cve-lfi-lab preview

cve-lfi-lab

GitHubthecyberfairy/cve-lfi-lab

A hands on lab investigating CVE-2025-39507 from a Tier 1 SOC analyst perspective. Includes log review in Microsoft Sentinel, IP analysis, real world…

ctfeducationincident-response+5
1 year ago
SOC274---Palo-Alto-Networks-PAN-OS-Command-Injection-Vulnerability-Exploitation-CVE-2024-3400- preview

SOC274---Palo-Alto-Networks-PAN-OS-Command-Injection-Vulnerability-Exploitation-CVE-2024-3400-

GitHubcyberbibs/soc274---palo-alto-networks-pan-os-command-injection-vulnerability-exploitation-cve-2024-3400-

Step-by-step SOC analyst walkthrough for investigating and remediating CVE-2024-3400 (PAN-OS command injection). Covers detection, log analysis,…

digital-forensicseducationincident-response+6
1 year ago
CVE-2025-27558_Patching preview

CVE-2025-27558_Patching

GitHubatlas-ghostshell/cve-2025-27558_patching

Patching CVE-2025-27558 vulnerability that had affected my linux image.

educationforensicsincident-response+3
1 year ago
LetsDefend--SOC-342-CVE-2025-53770-SharePoint-Exploit-ToolShell preview

LetsDefend--SOC-342-CVE-2025-53770-SharePoint-Exploit-ToolShell

GitHubmichaael01/letsdefend--soc-342-cve-2025-53770-sharepoint-exploit-toolshell

Detailed walkthrough of CVE-2025-53770 (ToolShell) SharePoint zero-day exploitation, including RCE analysis, MachineKey exfiltration, payload…

digital-forensicseducationexploitation+8
11 months ago
CVE-2025-492026 preview

CVE-2025-492026

GitHubimthecopilotnow/cve-2025-492026

Security advisory detailing CVE-2025-492026: a hyperlink injection vulnerability in Copilot AI causing unintended navigation. Includes CWE-451…

educationpapers-researchthreat-intelligence+2
1 year ago
Previous1…121314Next