Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
171 results
test_avb_key preview

test_avb_key

GitHubnccgroup/test_avb_key

Python utility to check if Android verified boot images (vbmeta) are signed with publicly known test keys, identifying misconfigurations in release…

android-securitycryptographyfirmware-analysis+3
9
2 years ago
DirtyCOWTester preview

DirtyCOWTester

GitHubsideeffect42/dirtycowtester

Dirty COW (CVE-2016-5195) vulnerability testing utility for Linux-based systems.

binary-exploitationexploitationpenetration-testing+2
79 years ago
Exploit-Medium-CVE-2021-41184 preview

Exploit-Medium-CVE-2021-41184

GitHubgabrielolivra/exploit-medium-cve-2021-41184

Proof-of-concept exploit for CVE-2021-41184, a cross-site scripting (XSS) vulnerability in jQuery UI's .position() utility, targeting version 1.12.1.

exploitationpenetration-testingvulnerability-analysis+2
64 years ago
ROPE preview

ROPE

GitHubxhowenma/rope

Defense framework enforcing routed origin policy to prevent indirect prompt injection in tool-using LLM agents, with deterministic origin checks and…

ai-securitydefensive-toolseducation+2
20 days ago
YellowKey-Bitlocker-CVE-2026-45585 preview

YellowKey-Bitlocker-CVE-2026-45585

GitHubneccie/yellowkey-bitlocker-cve-2026-45585

Manage BitLocker recovery keys, unlock encrypted drives, and monitor encryption status with this lightweight Windows utility.

data-recoverydigital-forensicsencryption-decryption-tools+1
1 month ago
CVE-2024-3094_xz_check preview

CVE-2024-3094_xz_check

GitHubhackerhermanos/cve-2024-3094_xz_check

This repository contains a Bash script and a one-liner command to verify if a system is running a vulnerable version of the "xz" utility, as…

educationscripting-automationsupply-chain-security+2
92 years ago
CVE-2023-50164 preview

CVE-2023-50164

GitHubbcdannyboy/cve-2023-50164

A scanning utility and PoC for CVE-2023-50164

exploitationpayload-generationpenetration-testing+2
42 years ago
WiseDelete preview

WiseDelete

GitHubskimask1690/wisedelete

Windows utility that uses the vulnerable WiseDelfile64.sys driver affected by CVE-2025-66680 to enable kernel-assisted file deletion.

binary-exploitationeducationexploitation+2
11 month ago
joomla_exploits preview

joomla_exploits

GitHubaramosf/joomla_exploits

Curated collection of validated Joomla exploit artifacts with Docker lab environments. Includes RCE, SQLi, XSS, and privilege escalation scripts…

crawlereducationexploitation+5
12 months ago
Zeek-CVE-Enrichment preview

Zeek-CVE-Enrichment

GitHubcorelight/zeek-cve-enrichment

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…

incident-responseioc-managementlog-analysis+3
11 year ago
JitBit_Helpdesk_Auth_Bypass preview

JitBit_Helpdesk_Auth_Bypass

GitHubkc57/jitbit_helpdesk_auth_bypass

Utility to derive the shared secret on a JitBit Helpdesk install which can be used for authentication bypass (CVE-2017-18486)

authentication-authorizationexploitationpenetration-testing+2
38 years ago
CVE-2025-66678 preview

CVE-2025-66678

GitHubcwjchoi01/cve-2025-66678

Proof-of-concept exploit for CVE-2025-66678 demonstrating arbitrary MSR and physical memory read/write via a vulnerable hardware utility driver to…

binary-exploitationeducationexploitation+3
26 months ago
CVE-2021-3281 preview

CVE-2021-3281

GitHublwzsoviet/cve-2021-3281

Proof-of-concept for CVE-2021-3281: directory traversal vulnerability in Django's TarArchive utility via crafted tar files, with Python tarfile…

educationexploitationpapers-research+2
25 years ago
Binary-Exploitation-and-Kernel-Escalation preview

Binary-Exploitation-and-Kernel-Escalation

GitHubanilkashyap01/binary-exploitation-and-kernel-escalation

Secured root-level access by identifying and exploiting misconfigurations and outdated software. Buffer overflow vulnerability in an outdated version…

binary-exploitationeducationexploitation+7
5 months ago
Winrar-Exploit-CVE-2023-38831 preview

Winrar-Exploit-CVE-2023-38831

GitHublightningspeed221/winrar-exploit-cve-2023-38831

C# utility demonstrating CVE-2023-38831 archive-structure exploitation technique for WinRAR versions below 6.23. Builds proof-of-concept binaries for…

binary-exploitationeducationexploitation+3
4 months ago
CVE-2025-0851 preview

CVE-2025-0851

GitHubskrkcb2/cve-2025-0851

Proof-of-concept exploit for CVE-2025-0851, a file traversal vulnerability in Deep Java Library's tar/zip model extraction utility, enabling…

binary-analysisexploitationfuzzing+3
11 year ago
CVE-2026-23744-RCE preview

CVE-2026-23744-RCE

GitHubalisster00/cve-2026-23744-rce

This utility was created during research involving MCPJam v1.4.2. The application exposes an API endpoint that accepts a server configuration object.…

educationexploitationpenetration-testing+3
13 months ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubamitlttwo/cve-2020-5902

In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface…

exploitationinformation-gatheringpenetration-testing+2
13 years ago
Previous123…10Next