Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
236 results
CVE-2022-29072 preview

CVE-2022-29072

GitHubsentinelblue/cve-2022-29072

** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the…

exploitationincident-responselog-analysis+3
8
4 years ago
fetch-broker-conf preview

fetch-broker-conf

GitHubvulncheck-oss/fetch-broker-conf

A go-exploit for fetching the RocketMQ broker configuration in order to discover indicators of compromise for CVE-2023-33246

exploitationincident-responseinformation-gathering+3
51 year ago
citrix-logchecker preview

citrix-logchecker

GitHubcertat/citrix-logchecker

Parse citrix netscaler logs to check for signs of CVE-2023-4966 exploitation

incident-responselog-analysisnetwork-security+3
52 years ago
copyfail2_electric_boogaloo_fix preview

copyfail2_electric_boogaloo_fix

GitHubvorkampfer/copyfail2_electric_boogaloo_fix

A temporary mitigation against copy_fail variant (copyfail2_electric_boogaloo) - Unprivileged Linux LPE via xfrm ESP-in-UDP MSG_SPLICE_PAGES no-COW…

exploitationincident-responseprivilege-escalation+1
3 months ago
SonicWall-SMA1000-Zero-Day-IoC-Check preview

SonicWall-SMA1000-Zero-Day-IoC-Check

GitHubmrrawbit/sonicwall-sma1000-zero-day-ioc-check

Unofficial Bash IoC checker for SonicWall SMA1000 appliances affected by actively exploited CVE-2026-15409 and CVE-2026-15410.

exploitationforensicsincident-response+5
1 month ago
drupal-check preview

drupal-check

GitHubhestat/drupal-check

Tool to dive Apache logs for evidence of exploitation of CVE-2018-7600

forensicsincident-responselog-analysis+2
28 years ago
PAN-OS-CVE-2024-3400-Command-Injection-Investigation preview

PAN-OS-CVE-2024-3400-Command-Injection-Investigation

GitHubzedocun/pan-os-cve-2024-3400-command-injection-investigation

Investigation of a PAN-OS CVE-2024-3400 command injection attempt, analyzing payload delivery, internal processing, and execution validation based on…

digital-forensicsincident-responselog-analysis+3
14 months ago
pulse-meter preview

pulse-meter

GitHubrxwx/pulse-meter

Parses the System Snapshot from an Ivanti Connect Secure applicance to identify possible IOCs related to CVE-2023-46805, CVE-2024-21887 and…

exploitationforensicsincident-response+3
11 year ago
Log4Shell-Attack preview

Log4Shell-Attack

GitHubpinaraltinok/log4shell-attack

Multi-Stage Attack Modeling and Detection of Log4Shell for CVE-2021-44228

exploitationincident-responseintrusion-detection+3
4 months ago
CYBERDUDEBIVASH-Cisco-AsyncOS-CVE-2025-20393-Scanner preview

CYBERDUDEBIVASH-Cisco-AsyncOS-CVE-2025-20393-Scanner

GitHubcyberdudebivash/cyberdudebivash-cisco-asyncos-cve-2025-20393-scanner

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

email-securityexploitationincident-response+4
7 months ago
RAR-Anomaly-Inspector preview

RAR-Anomaly-Inspector

GitHubilhamrzr/rar-anomaly-inspector

Defensive PowerShell tool for static inspection of RAR archives and detection of CVE-2025-8088 path traversal anomalies.

defensive-toolsforensicsincident-response+3
17 months ago
ThreatSentry-AI preview

ThreatSentry-AI

GitHubeclipsemanic/threatsentry-ai

ThreatSentry AI is an intelligent threat hunting dashboard that leverages machine learning to proactively identify and prioritize risks in your…

defensive-toolsincident-responseinformation-gathering+6
16 months ago
CVE-2022-26134-Exploit-Detection preview

CVE-2022-26134-Exploit-Detection

GitHubma1am/cve-2022-26134-exploit-detection

This repository contains Yara rule and the method that a security investigator may want to use for CVE-2022-26134 threat hunting on their Linux…

forensicsincident-responseioc-management+3
14 years ago
ZeroPoint preview

ZeroPoint

GitHubgmh5225/zeropoint

This PowerShell script detects indicators of compromise for CVE-2025-53770 — a critical RCE vulnerability in Microsoft SharePoint. Created by…

defensive-toolsexploitationincident-response+3
1 year ago
detection-tool-cve-2019-13000 preview

detection-tool-cve-2019-13000

GitHubacinq/detection-tool-cve-2019-13000

A tool that detect if your node has been victim of the invalid funding tx attack.

cryptographyforensicsincident-response+1
6 years ago
CVE-2024-3400-Compromise-Checker preview

CVE-2024-3400-Compromise-Checker

GitHubmurrayr0123/cve-2024-3400-compromise-checker

A simple bash script to check for evidence of compromise related to CVE-2024-3400

forensicsincident-responseintrusion-detection+3
2 years ago
honeypot.rs preview

honeypot.rs

GitHubmranv/honeypot.rs

CVE-2023-46604 (Apache ActiveMQ RCE Vulnerability) and focused on getting Indicators of Compromise.

incident-responsemalware-analysisnetwork-security+2
2 years ago
CVE-2023-38831-Exploit-and-Detection preview

CVE-2023-38831-Exploit-and-Detection

GitHubml-k-eng/cve-2023-38831-exploit-and-detection

This repository has both an attack detection tool and a Proof-of-Concept (PoC) Python script for the WinRAR CVE-2023-38831 vulnerability.

defensive-toolsexploitationincident-response+3
2 years ago
Previous1…345…14Next