Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
22 results
CVE-2025-68645-Exploiting-Zimbra-Webmail-LFI-Vulnerability preview

CVE-2025-68645-Exploiting-Zimbra-Webmail-LFI-Vulnerability

GitHubfaysalferdous/cve-2025-68645-exploiting-zimbra-webmail-lfi-vulnerability

Defender-focused reference pack for CVE-2025-68645 Zimbra LFI, including Sigma/Splunk detection rules, WAF mitigation snippets, IOC patterns, and…

educationincident-responseioc-management+3
7 months ago
cms-exploitation-campaign preview

cms-exploitation-campaign

GitHubrxerium/cms-exploitation-campaign

Large Scale Exploitation Campaign against CMS devices reported in July 2026

defensive-toolsintrusion-detectionthreat-intelligence+4
32 months ago
CVE-2025-39964 preview

CVE-2025-39964

GitHubsuominen/cve-2025-39964

Patch-status tracker for CVE-2025-39964, a Linux AF_ALG race condition enabling local privilege escalation, recording per-distribution fix…

threat-intelligencevulnerability-analysis
7 days ago
CVE-2026-68138 preview

CVE-2026-68138

GitHubsuominen/cve-2026-68138

Track patch status for CVE-2026-68138, a Linux kernel net/sched qdisc rate-table use-after-free, with affected/fixed versions, upstream commits, and…

curated-resourcesthreat-intelligencevulnerability-analysis
7 days ago
moniorg preview

moniorg

GitHubyousseflahouifi/moniorg

Passive domain monitoring tool leveraging Certificate Transparency logs to discover and track newly issued domains for an organization, with Slack…

dns-subdomain-enumerationinformation-gatheringosint+2
483 years ago
nuclei-cve-analyzer preview

nuclei-cve-analyzer

GitHubsw33ber/nuclei-cve-analyzer

CVE intelligence pipeline that compares public CVEs against Nuclei templates to identify missing vulnerability coverage, classify types, and rank…

curated-resourceseducationthreat-intelligence+2
1 month ago
sorry-ransomware-analysis preview

sorry-ransomware-analysis

GitHubhabibkaratas/sorry-ransomware-analysis

Sorry ransomware (.sorry) IOCs, YARA rules and forensic analysis - CVE-2026-41940 cPanel campaign

cryptographydigital-forensicsforensics+4
65 months ago
BaconSampler preview

BaconSampler

GitHublogisek/baconsampler

Sniffs outbound traffic for suspicious, beacon-like callbacks, because if it keeps coming back on schedule, it's probably not breakfast.

dns-analysisforensicsinformation-gathering+6
208 months ago
CVE-2026-42978-PoC-Research preview

CVE-2026-42978-PoC-Research

GitHubsyntaxmethod/cve-2026-42978-poc-research

CVE-2026-42978 Windows Push Notifications (WpnService) Use-After-Free & Race Condition PoC research, diagnostic scanner, and security audit module…

defensive-toolseducationexploitation+5
6822 days ago
MiniPlasma-Detection preview

MiniPlasma-Detection

GitHubarch1m3d/miniplasma-detection

Sigma detection rule for MiniPlasma (CVE-2020-17103)

exploitationincident-responseprivilege-escalation+2
14 months ago
opencve preview

opencve

GitHubopencve/opencve

Aggregate, filter, and track CVEs from multiple sources with team collaboration, custom dashboards, alerts, and AI-powered analysis for vulnerability…

incident-responseioc-managementthreat-intelligence+2
2.9k3 days ago
buttinsky preview

buttinsky

GitHubmushorg/buttinsky

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

information-gatheringintrusion-detectionmalware-analysis+2
8213 years ago
Kernel-Chaos-Weaponizing-CVE-2025-62215-for-SYSTEM-Privilege-Escalation preview

Kernel-Chaos-Weaponizing-CVE-2025-62215-for-SYSTEM-Privilege-Escalation

GitHubmrk336/kernel-chaos-weaponizing-cve-2025-62215-for-system-privilege-escalation

Hands‑on analysis of CVE‑2025‑62215, a Windows Kernel race condition exploited in the wild. Demonstrates privilege escalation to SYSTEM, detection…

binary-exploitationeducationexploitation+4
310 months ago
GhostTrace preview

GhostTrace

GitHubdevzinh/ghosttrace

Read-only Windows forensic scanner for software traces — persistence, execution artifacts (Prefetch, Shimcache, BAM), user activity and Ghost Tasks…

digital-forensicsforensicsincident-response+3
2 months ago
presentations preview

presentations

GitHubjorgeorchilles/presentations

Slides and materials for conference presentations

command-and-controlcurated-resourceseducation+4
113 years ago
paperweight preview

paperweight

GitHubwslyvh/paperweight

Paperweight scans your inbox to map your digital footprint, then helps you take back control and delete your data. Local-first and open source.

data-exfiltrationemail-securityincident-response+5
4623 days ago
bluehood preview

bluehood

GitHubdannymcc/bluehood

Monitor your local neighbourhood's bluetooth activity

anomaly-detectionbluetooth-securityeducation+8
1.1k22 days ago
qubes-secpack preview

qubes-secpack

GitHubqubesos/qubes-secpack

Curated repository of Qubes OS security bulletins, canaries, PGP keys, and ISO digests, with authenticated verification via git tags and detached…

cryptographycurated-resourceseducation+2
5531 day ago
Previous12Next