Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
295 results
CVE-2021-22986 preview

CVE-2021-22986

GitHubdotslashed/cve-2021-22986

Script to check mass IP addresses for CVE-2021-22986 vulnerability using Shodan or ZoomEye for IP discovery.

exploitationinformation-gatheringpenetration-testing+2
5 years ago
React2Shell-CVE-2025-55182 preview

React2Shell-CVE-2025-55182

GitHubmrmtwoj/react2shell-cve-2025-55182

Educational / research tool related to React / Next.js vulnerability CVE‑2025‑55182 (“React2Shell”).

educationexploitationpapers-research+2
19 months ago
shodan-CVE-2018-15473 preview

shodan-CVE-2018-15473

GitHub66quentin/shodan-cve-2018-15473

Test CVE-2018-15473 exploit on Shodan IP

educationexploitationosint+3
4 years ago
PYDNS-Scanner preview

PYDNS-Scanner

GitHubxullexer/pydns-scanner

A modern, high-performance DNS scanner with a beautiful Terminal User Interface (TUI) built with Textual. This tool can scan millions of IP addresses…

dns-analysisinformation-gatheringnetwork-mapping+3
4085 months ago
Cisco-SNMP-Slap preview

Cisco-SNMP-Slap

GitHubnccgroup/cisco-snmp-slap

IP spoofing and SNMP community string brute-forcing tool to bypass ACLs on Cisco IOS devices, exfiltrate configuration files via TFTP.

exploitationinformation-gatheringnetwork-security+4
5911 years ago
CVE-1999-0524-ICMP-Timestamp-and-Address-Mask-Request-Exploit preview

CVE-1999-0524-ICMP-Timestamp-and-Address-Mask-Request-Exploit

GitHubthreatlabindonesia/cve-1999-0524-icmp-timestamp-and-address-mask-request-exploit

Exploit for CVE-1999-0524 that sends ICMP Timestamp and Address Mask requests to expose network information or trigger denial of service. Supports…

exploitationinformation-gatheringnetwork-security+2
31 year ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubam-eid/cve-2024-24919

Bash script to check for CVE-2024-24919 vulnerability in a list of IP addresses, aiding in security assessments.

exploitationpenetration-testingreconnaissance+2
2 years ago
CVE-2021-34527 preview

CVE-2021-34527

GitHubd0rb/cve-2021-34527

Python PoC for CVE-2021-34527 (PrintNightmare) that sends a hard-coded SMB exploit payload to a target IP and port for educational demonstration.

educationexploitationpayload-generation+2
3 years ago
flowinspect preview

flowinspect

GitHub7h3ram/flowinspect

A Network Inspection Tool

forensicsfuzzingintrusion-detection+5
828 years ago
THERE-IS-A-CVE preview

THERE-IS-A-CVE

GitHubransomwares/there-is-a-cve

Pentesting tool integrating Shodan for IP reconnaissance and CVE identification, with Metasploit and Exploit-DB integration for automated exploit…

exploit-frameworksinformation-gatheringpenetration-testing+1
122 years ago
siemframework preview

siemframework

GitHubelevenpaths/siemframework

Modular Python3 attack framework for automating exploitation of SIEM platforms (Splunk, Graylog, OSSIM, QRadar, McAfee) via credential theft, payload…

exploit-frameworksinformation-gatheringnetwork-mapping+7
426 years ago
Tool_Camera_Exploit_Netwave_CVE-2018-6479 preview

Tool_Camera_Exploit_Netwave_CVE-2018-6479

GitHublequockhanh2k/tool_camera_exploit_netwave_cve-2018-6479

Exploit tool for CVE-2018-6479, a denial-of-service vulnerability in Netwave IP cameras. Targets IoT devices to trigger temporary service disruption…

exploitationhardware-iot-securityiot-security+1
4 years ago
POC-CVE-2021-41773 preview

POC-CVE-2021-41773

GitHubhattan515/poc-cve-2021-41773

Simple Python exploit script for Apache HTTPd 2.4.49 path traversal vulnerability (CVE-2021-41773). Supports single IP and file-based scanning.

exploitationpenetration-testingvulnerability-analysis+2
4 years ago
metabigor preview

metabigor

GitHubj3ssie/metabigor

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

dns-subdomain-enumerationinformation-gatheringnetwork-mapping+6
1.8k1 month ago
XOE preview

XOE

GitHubd4vinci/xoe

Exploit XXE Out-Of-Band Vulnerability Easily

exploitationinformation-gatheringpenetration-testing+2
1610 years ago
cve-lfi-lab preview

cve-lfi-lab

GitHubthecyberfairy/cve-lfi-lab

A hands on lab investigating CVE-2025-39507 from a Tier 1 SOC analyst perspective. Includes log review in Microsoft Sentinel, IP analysis, real world…

ctfeducationincident-response+5
1 year ago
CVE-2022-1388-RCE-checker-and-POC-Exploit preview

CVE-2022-1388-RCE-checker-and-POC-Exploit

GitHubblind-intruder/cve-2022-1388-rce-checker-and-poc-exploit

Bash script to check and exploit CVE-2022-1388 RCE in F5 BIG-IP, with a curl-based POC for command execution.

exploitationpenetration-testingred-teaming+2
84 years ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubhscorpion/cve-2022-30190

Proof-of-concept exploit for CVE-2022-30190 (Follina). Generates malicious docx files and hosts a server to trigger remote code execution via…

exploitationpayload-generationpenetration-testing+2
4 years ago
Previous12…17Next