Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
64 results
mole preview

mole

GitHubztgrace/mole

Framework for identifying and exploiting out-of-band (OOB) application vulnerabilities with a custom DNS/token server, Burp Suite extension, and…

penetration-testingvulnerability-analysisweb-application-exploitation
586 years ago
Adversarial-Detection-Engineering-Framework preview

Adversarial-Detection-Engineering-Framework

GitHubadversarial-detection-engineering/adversarial-detection-engineering-framework

A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concrete examples…

curated-resourcesdefensive-toolseducation+7
616 months ago
Software-Component-Verification-Standard preview

Software-Component-Verification-Standard

GitHubowasp/software-component-verification-standard

Software Component Verification Standard (SCVS)

configuration-auditingcurated-resourceseducation+2
1672 years ago
recog preview

recog

GitHubrapid7/recog

Pattern recognition for hosts, services, and content

information-gatheringnetwork-mappingosint+4
79118 days ago
raptor preview

raptor

GitHubraptor-audit/raptor

Framework for auditing blockchain ecosystems, identifying smart contract vulnerabilities, and generating structured findings with multi-platform…

code-analysiseducationstatic-analysis+1
19 months ago
VMDragonSlayer preview

VMDragonSlayer

GitHubpoppopjmp/vmdragonslayer

Multi-engine framework for unpacking and analyzing VM-protected binaries using dynamic taint tracking, symbolic execution, pattern classification,…

binary-analysisdebuggersdynamic-analysis-sandboxing+8
43511 months ago
jooby preview

jooby

GitHubepicosy/jooby

Exploit toolkit targeting CVE-2019-15477 in the Jooby micro web framework, enabling vulnerability analysis and exploitation of Java/Kotlin web…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
credcheck preview

credcheck

GitHubsecxena/credcheck

Modular credential validation framework with active and passive (regex-based) checking modes for penetration testers. Supports multiple services via…

password-attackspenetration-testingutilities-frameworks+1
535 years ago
mutiny-fuzzer preview

mutiny-fuzzer

GitHubcisco-talos/mutiny-fuzzer

Network protocol fuzzer that replays PCAP traffic through a mutational engine (Radamsa) to quickly discover vulnerabilities in target hosts via…

fuzzingnetwork-securitypenetration-testing+1
6384 years ago
lightbulb-framework preview

lightbulb-framework

GitHublightbulb-framework/lightbulb-framework

Tools for auditing WAFS

fuzzingpenetration-testingvulnerability-analysis+2
4655 years ago
WS-Attacker preview

WS-Attacker

GitHubrub-nds/ws-attacker

WS-Attacker is a modular framework for web services penetration testing. It is developed by the Chair of Network and Data Security, Ruhr University…

fuzzingpenetration-testingvulnerability-analysis+1
4954 years ago
kitty preview

kitty

GitHubcisco-sas/kitty

Fuzzing framework written in python

fuzzingpenetration-testingutilities-frameworks+1
4347 years ago
DELTA preview

DELTA

GitHubopennetworkingfoundation/delta

PROJECT DELTA: SDN SECURITY EVALUATION FRAMEWORK

network-securitypenetration-testingvulnerability-analysis
2227 years ago
fisy-fuzz preview

fisy-fuzz

GitHub0xricksanchez/fisy-fuzz

This is the full file system fuzzing framework that I presented at the Hack in the Box 2020 Lockdown Edition conference in April.

exploitationfuzzingvulnerability-analysis
1503 years ago
protocol-fuzzer-ce preview

protocol-fuzzer-ce

GitLabgitlab-org/security-products/protocol-fuzzer-ce

This is the community edition of GitLab's protocol fuzzing framework. This framework is based on Peach Fuzzer Professional with some features removed.

devsecopsfuzzingvulnerability-analysis
764 years ago
CVE-2022-36804 preview

CVE-2022-36804

GitHubsh4den/cve-2022-36804

A loader for bitbucket 2022 rce (cve-2022-36804)

exploitationpenetration-testingremote-access-tool+2
122 months ago
Binvariants preview

Binvariants

GitHubfutureslab/binvariants

Register-level invariant-guided fuzzing framework for closed-source binaries, leveraging likely invariant violations to discover crashes and bugs in…

binary-analysisexploitationfuzzing+1
61 month ago
CVE-2019-5825 preview

CVE-2019-5825

GitHubtimwr/cve-2019-5825

Chrome V8 exploit for CVE-2019-5825 targeting version 73.0.3683.86 with --no-sandbox. Includes proof-of-concept code and integration with Metasploit…

binary-exploitationexploitationpenetration-testing+2
76 years ago
Previous1234Next