Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
746 results
CVE-2023-6401 preview

CVE-2023-6401

GitHubmekitoci/cve-2023-6401

CVE-2023-6401 is a DLL hijacking vulnerability that allows attackers to execute arbitrary code by placing a malicious `dbghelp.dll` file in the…

binary-exploitationeducationexploitation+2
1 year ago
cve-2021-42013-apache preview

cve-2021-42013-apache

GitHubdream434/cve-2021-42013-apache

On October 4, 2021, Apache HTTP Server Project released Security advisory on a Path traversal and File disclosure vulnerability in Apache HTTP Server…

educationexploitationpenetration-testing+2
1 year ago
weblogic-cve-2020-14882 preview

weblogic-cve-2020-14882

GitHubkkc73/weblogic-cve-2020-14882

This is a repository that aims to provide research material on CVE-2020-14882 as part of a project in partial fullfilment of ACS EDU Program.

educationexploitationpapers-research+2
1 year ago
OWASP-GoatDroid-Project preview
Archived

OWASP-GoatDroid-Project

GitHubnvisium-jack-mannino/owasp-goatdroid-project

*This project is no longer maintained* OWASP GoatDroid is a fully functional and self-contained training environment for educating developers and…

android-securityeducationlabs-practice+3
25612 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubmrmtwoj/cve-2024-6387

regreSSHion is a security tool designed to test for vulnerabilities related to CVE-2024-6387, specifically focusing on SSH and remote access…

exploitationnetwork-securitypenetration-testing+3
2 years ago
semgrep preview

semgrep

GitHubsemgrep/semgrep

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

code-analysisdevsecopseducation+4
16.3k19h 44m ago
mdk4 preview

mdk4

GitHubaircrack-ng/mdk4

IEEE 802.11 Wi-Fi testing tool for protocol weakness exploitation, including beacon flooding, deauthentication, packet fuzzing, and IDS evasion.…

exploitationfuzzingids-ips-evasion+5
8012 months ago
APTRS preview

APTRS

GitHubaptrs/aptrs

Automated pentest reporting with custom templates, project tracking, customer dashboard and client management tools. Streamline your security…

penetration-testingvulnerability-analysis
1.1k4 months ago
ics-forensics-tools preview

ics-forensics-tools

GitHubmicrosoft/ics-forensics-tools

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

digital-forensicsforensicsincident-response+2
3721 year ago
cnappgoat preview

cnappgoat

GitHubtenable/cnappgoat

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

cloud-infrastructure-securitycloud-securityctf+5
2962 years ago
DELTA preview

DELTA

GitHubseungsoo-lee/delta

PROJECT DELTA: SDN SECURITY EVALUATION FRAMEWORK

exploit-frameworksfuzzingnetwork-security+2
923 years ago
topera preview

topera

GitHubtoperaproject/topera

IPv6 analysis tool: the other side

ids-ips-evasionnetwork-securitypenetration-testing+3
3612 years ago
apxutil preview

apxutil

GitHubfinngineering/apxutil

A tool to manipulate Schneider Electric PLC archive files

binary-analysisembedded-systems-securityexploitation+5
116 months ago
CVE-2022-46080 preview

CVE-2022-46080

GitHubgeniuszly/cve-2022-46080

it is script that enables Telnet on routers by sending a specially crafted request. The script allows users to specify the router's URL, Telnet port,…

educationexploitationpenetration-testing+3
72 years ago
CVE-2018-9995-DVR-Credentials-Extractor preview

CVE-2018-9995-DVR-Credentials-Extractor

GitHubf7p-h4nn1b4l/cve-2018-9995-dvr-credentials-extractor

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

authenticationembedded-systems-securityexploitation+5
119 days ago
CVE-2018-16763 preview

CVE-2018-16763

GitHubsome-1hing/cve-2018-16763

Python tool for analyzing CVE-2018-16763 in FUEL CMS with cleaner response parsing and interactive vulnerability checking.

code-analysisexploitationpenetration-testing+3
2 months ago
debian11-dirty_pipe-patcher preview

debian11-dirty_pipe-patcher

GitHubihenakaarachchi/debian11-dirty_pipe-patcher

A Simple bash script that patches the CVE-2022-0847 (dirty pipe) kernel vulnerability on Debian 11

exploitationprivilege-escalationscripting-automation+1
23 years ago
CS4277-CVE-Path-Traversal-Apache-HTTP-Server preview

CS4277-CVE-Path-Traversal-Apache-HTTP-Server

GitHubjkim72403/cs4277-cve-path-traversal-apache-http-server

We hope to reproduce CVE-2021-41773 to deepen our understanding of real-world cybersecurity vulnerabilities so that we can be knowledgeable about…

educationexploitationpenetration-testing+3
3 months ago
Previous1…456…42Next