Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
3433 results
zeroscan preview

zeroscan

GitHubb34mr/zeroscan

Zeroscan is a Domain Controller vulnerability scanner, that currently includes checks for Zerologon (CVE-2020-1472), MS-PAR/MS-RPRN and SMBv2 Signing.

exploitationnetwork-securitypenetration-testing+2
11
4 years ago
CVE-2020-16898 preview

CVE-2020-16898

GitHubcorelight/cve-2020-16898

A network detection package for CVE-2020-16898 (Windows TCP/IP Remote Code Execution Vulnerability)

exploitationintrusion-detectionnetwork-security+3
91 year ago
CVE-2017-5638_struts preview

CVE-2017-5638_struts

GitHubinitconf/cve-2017-5638_struts

detection for Apache Struts recon and compromise

exploitationintrusion-detectionmalware-analysis+3
88 years ago
CVE-2020-5902-F5BigIP preview

CVE-2020-5902-F5BigIP

GitHubcorelight/cve-2020-5902-f5bigip

A network detection package for CVE-2020-5902, a CVE10.0 vulnerability affecting F5 Networks, Inc BIG-IP devices.

exploitationincident-responseintrusion-detection+3
45 years ago
MadeYouReset_Tester preview

MadeYouReset_Tester

GitHubayushghatkar8080/madeyoureset_tester

A Python script that checks if a web server is vulnerable to MadeYouReset (CVE-2025-8671) — an HTTP/2 DoS attack that bypasses Rapid Reset…

exploitationnetwork-securitypenetration-testing+2
42 months ago
CVE-2026-0257 preview

CVE-2026-0257

GitHubtushargurav28/cve-2026-0257

Palo Alto Networks PAN-OS contains an authentication bypass caused by flaws in the GlobalProtect portal and gateway, letting attackers establish…

authenticationcryptographyexploitation+5
32 months ago
Apple-Remote-Crash-Tool-CVE-2018-4407 preview

Apple-Remote-Crash-Tool-CVE-2018-4407

GitHubanonymouz4/apple-remote-crash-tool-cve-2018-4407

Crashes any macOS High Sierra or iOS 11 device that is on the same WiFi network

exploitationnetwork-securitypenetration-testing+3
47 years ago
CVE-2025-26466 preview

CVE-2025-26466

GitHubrxerium/cve-2025-26466

The OpenSSH client and server are vulnerable to a pre-authentication DoS attack between versions 9.5p1 to 9.9p1 (inclusive) that causes memory and…

exploitationnetwork-securityvulnerability-analysis+1
510 months ago
bash-tls-reneg-attack preview

bash-tls-reneg-attack

GitHubxdldcg/bash-tls-reneg-attack

A bash script that attempts to flood a server with TLS renegotiations by using the openssl client. See CVE-2011-1473 and CVE-2011-1473 for details.

exploitationnetwork-securitypenetration-testing+1
411 years ago
bro-shellshock preview

bro-shellshock

GitHubcorelight/bro-shellshock

ShellShock attack and exploit detector for Bro.

intrusion-detectionnetwork-securityvulnerability-analysis+1
28 years ago
CVE-2026-41285-OpenBSD-v6daemons-go-brrr preview

CVE-2026-41285-OpenBSD-v6daemons-go-brrr

GitHubrat5ak/cve-2026-41285-openbsd-v6daemons-go-brrr

One IPv6 ND option with length zero. One missing check. Daemon walks backward and lives in the loop. Reported to OpenBSD, fixed, CVE assigned.

exploitationfuzzingnetwork-security+2
3 months ago
CVE-2012-1803 preview

CVE-2012-1803

GitHubx3roxismygood/cve-2012-1803

Critical vulnerability in Siemens RuggedCom ROS devices allowing attackers to derive a hidden factory account password from the device MAC address…

exploitationhardware-iot-securitynetwork-security+3
2 months ago
CVE-2021-26258 preview

CVE-2021-26258

GitHubzwclose/cve-2021-26258

Files and tools for CVE-2021-26258

exploitationfirmware-analysismalware-analysis+3
33 years ago
CUPS-CVE-2024-47176 preview

CUPS-CVE-2024-47176

GitHubrhyru9/cups-cve-2024-47176

Exploit for CVE-2024-47176 targeting CUPS printing service vulnerability. Enables remote code execution and privilege escalation on affected…

exploitationnetwork-securitypenetration-testing+3
2 months ago
CVE_2023_44487-Rapid_Reset preview

CVE_2023_44487-Rapid_Reset

GitHubmadhusudhan-in/cve_2023_44487-rapid_reset

A comprehensive Python testing tool for CVE-2023-44487, the HTTP/2 Rapid Reset vulnerability. This enhanced version provides granular control over…

exploitationnetwork-securitypenetration-testing+3
116 days ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubcorelight/cve-2021-41773

A Zeek package which raises notices for Path Traversal/RCE in Apache HTTP Server 2.4.49 (CVE-2021-41773) and 2.4.50 (CVE-2021-42013)

exploitationincident-responseintrusion-detection+3
14 years ago
CVE-2017-3143 preview

CVE-2017-3143

GitHubsaaph/cve-2017-3143

Exploit for TSIG bypass vulnerabilities in Bind (CVE-2017-3143) and Knot DNS (CVE-2017-11104)

dns-analysisexploitationnetwork-security+2
17 years ago
CVE-2020-0796 preview

CVE-2020-0796

GitHubran-sama/cve-2020-0796

Lightweight PoC and Scanner for CVE-2020-0796 without authentication.

exploitationnetwork-securitypenetration-testing+2
17 months ago
Previous1234…191Next