Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
Triage-CVE-2017-0144 preview

Triage-CVE-2017-0144

GitHubprobablysecure/triage-cve-2017-0144

Goal is to triage well known attacks and learn how security teams quickly respond.

educationincident-responselabs-practice+1
2 months ago
CVE-2024-30851-jasmin-ransomware-path-traversal-poc preview

CVE-2024-30851-jasmin-ransomware-path-traversal-poc

GitHubchebuya/cve-2024-30851-jasmin-ransomware-path-traversal-poc

Jasmin ransomware web panel path traversal PoC

educationexploitationinformation-gathering+3
212 years ago
CVE-2024-4577 preview

CVE-2024-4577

GitHubahmetramazank/cve-2024-4577

Demonstrates exploitation of CVE-2024-4577, a PHP CGI RCE on Windows, including attack steps, reverse shell deployment, and ransomware simulation…

educationexploitationforensics+5
1 year ago
LockBit-Ransomware-Analysis preview

LockBit-Ransomware-Analysis

GitHubvignesh-hp/lockbit-ransomware-analysis

Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).

data-exfiltrationdigital-forensicseducation+8
6 months ago
CVE-2026-20131-Post-Incident-Written-Report preview

CVE-2026-20131-Post-Incident-Written-Report

GitHubjwa7470/cve-2026-20131-post-incident-written-report

Post-incident report on CVE-2026-20131 (CVSS 10.0), a Cisco FMC insecure deserialization vulnerability exploited by Interlock ransomware. Details…

curated-resourcesdigital-forensicseducation+2
11 days ago
ransomwatch preview
Archived

ransomwatch

GitHubcaptaingeech42/ransomwatch

Ransomware leak site monitoring

crawlerincident-responseinformation-gathering+3
3124 years ago
ThreatActors-TTPs preview

ThreatActors-TTPs

GitHubessexrich/threatactors-ttps

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

curated-resourcesdigital-forensicseducation+6
481 month ago
EternalBlue-Exploit-Demonstration preview

EternalBlue-Exploit-Demonstration

GitHubdannic145/eternalblue-exploit-demonstration

Educational lab demonstrating EternalBlue (MS17-010) exploitation against Windows 7 using Metasploit, including post-exploitation, WannaCry…

ctfeducationexploitation+8
4 months ago
activemq-lockbit-analysis preview

activemq-lockbit-analysis

GitHubmkdemir/activemq-lockbit-analysis

Apache ActiveMQ (CVE-2023-46604) zafiyetinden LockBit ransomware aşamasına uzanan 419 saatlik sızma vakasının uçtan uca analizi, SIEM korelasyon…

digital-forensicseducationincident-response+4
5 months ago
Security_incident_report preview

Security_incident_report

GitHubkevin9480/security_incident_report

React2Shell(CVE-2025-55182) 취약점 기반 침해 시나리오를 재현하고, Wazuh/Sysmon/Coraza WAF 로그로 침해사고를 분석·대응한 DFIR 프로젝트

digital-forensicsincident-responseintrusion-detection+5
22 days ago
ransomwatch preview
Archived

ransomwatch

GitHubjoshhighet/ransomwatch

the transparent ransomware claim tracker 🥷🏼🧅🖥️

curated-resourcesinformation-gatheringosint+2
1.1k6 months ago
ThreatActors-TTPs preview

ThreatActors-TTPs

GitHubcrocodyli/threatactors-ttps

Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving…

curated-resourcesdigital-forensicseducation+5
4147 months ago
gentlemen-decryptor preview

gentlemen-decryptor

GitHubbedrock-safeguard/gentlemen-decryptor

First-ever decryptor for The Gentlemen ransomware — recovers encryption keys from process memory dumps using X25519 ephemeral key extraction. 35/35…

cryptographydigital-forensicseducation+7
313 months ago
Rootsmart-v2.0 preview

Rootsmart-v2.0

GitHubcrackercat/rootsmart-v2.0

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration

android-securitycommand-and-controldata-exfiltration+8
24 years ago
TryHack3M-Bricks-Heist preview

TryHack3M-Bricks-Heist

GitHubanjai7/tryhack3m-bricks-heist

TryHackMe CTF writeup — WordPress RCE via CVE-2024-25600, crypto miner forensics, and LockBit ransomware group identification

ctfdigital-forensicseducation+5
11 months ago
protections-artifacts preview

protections-artifacts

GitHubelastic/protections-artifacts

Elastic Security detection content for Endpoint

intrusion-detectionmalware-analysisthreat-intelligence+1
1.5k4 days ago
CVE-2023-28252 preview

CVE-2023-28252

GitHubfortra/cve-2023-28252

Technical analysis and proof-of-concept exploit for CVE-2023-28252, a Windows Common Log File System (CLFS) driver privilege escalation vulnerability…

binary-exploitationdebuggersexploitation+4
1833 years ago
CLFS preview

CLFS

GitHubbyt3n33dl3/clfs

it's a CVE-2023-28252 (Patched), but feel free to use it for check any outdated software or reseach

binary-exploitationeducationexploitation+2
62 years ago
Previous12Next