Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
31 results
Polkit-exploit preview

Polkit-exploit

GitHubalmorabea/polkit-exploit

Privilege escalation with polkit - CVE-2021-3560

exploitationpenetration-testingpost-exploitation+3
1255 years ago
vPrioritizer preview

vPrioritizer

GitHubvarchashva/vprioritizer

vPrioritizer enables us to understand the contextualized risk (vPRisk) on asset-vulnerability relationship level across the organization, for teams…

information-gatheringthreat-intelligencevulnerability-analysis+1
691 year ago
zerologon preview

zerologon

GitHubcarlos55ml/zerologon

Scripts to test and exploit the Zerologon vulnerability (CVE-2020-1472) in Active Directory, enabling password reset and hash dumping of domain…

exploitationlateral-movementpassword-attacks+3
4 years ago
awesome-hacking-lists preview

awesome-hacking-lists

GitHubtaielab/awesome-hacking-lists

A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and…

curated-resourceseducationexploit-frameworks+6
1.4k9 months ago
WindowsProtocolTestSuites preview

WindowsProtocolTestSuites

GitHubmicrosoft/windowsprotocoltestsuites

⭐⭐ Join us at SNIA SDC for the SMB3 IO Lab (September 28 - October 1, 2026), see upcoming Interoperability Events

authenticationcloud-securityconfiguration-auditing+6
56713 days ago
CVE-2019-6447 preview

CVE-2019-6447

GitHubosuni-99/cve-2019-6447

The above investigation of the ES file browser security weakness allows us to see the issue in its entirety

android-securityexploitationinformation-gathering+2
4 years ago
Serious-Sam---CVE-2021-36934-Mitigation-for-Datto-RMM preview

Serious-Sam---CVE-2021-36934-Mitigation-for-Datto-RMM

GitHubjmaddington/serious-sam---cve-2021-36934-mitigation-for-datto-rmm

PowerShell script to apply Microsoft and US CERT mitigation measures for CVE-2021-36934 (Serious SAM) via Datto RMM, with UDF-based status tracking.

configuration-auditingeducationmisconfiguration+2
5 years ago
SUDO_KILLER preview

SUDO_KILLER

GitHubth3xace/sudo_killer

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific…

ctfeducationexploitation+5
2.5k6 months ago
google-dorks preview

google-dorks

GitHubproviesec/google-dorks

Useful Google Dorks for WebSecurity and Bug Bounty

curated-resourcesinformation-gatheringmisconfiguration+5
1.4k2 months ago
iam-vulnerable preview

iam-vulnerable

GitHubbishopfox/iam-vulnerable

Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

cloud-securityeducationidentity-access-management+4
5901 year ago
vortex preview

vortex

GitHubklezvirus/vortex

VPN Overall Reconnaissance, Testing, Enumeration and eXploitation Toolkit

information-gatheringosintpassword-attacks+7
4504 years ago
Kali-Linux preview

Kali-Linux

GitHubnu11secur1ty/kali-linux

Kali Linux advanced setup

educationexploitationinformation-gathering+5
1611 month ago
CVE-2022-34265 preview

CVE-2022-34265

GitHubaeyesec/cve-2022-34265

PoC for CVE-2022-34265 (Django)

database-securityexploitationpenetration-testing+2
1244 years ago
nvd preview

nvd

GitHubdaehee/nvd

Fast, simple library in Go to fetch CVEs from the National Vulnerability Database feeds

information-gatheringthreat-intelligenceutilities-frameworks+1
335 years ago
ansible-role-log4shell preview

ansible-role-log4shell

GitHubclaranet/ansible-role-log4shell

Ansible role to detect Log4Shell (CVE-2021-44228) by scanning filesystem and open files for vulnerable JAR/WAR files, reporting version and…

cloud-securityconfiguration-auditingdevsecops+2
112 years ago
cve-2011-3026-firefox preview

cve-2011-3026-firefox

GitHubargp/cve-2011-3026-firefox

Example of exploiting CVE-2011-3026 on Firefox (Linux/x86)

binary-exploitationeducationexploitation+3
614 years ago
CVE-2020-7200 preview

CVE-2020-7200

GitHubalexfrancow/cve-2020-7200

CVE-2020-7200: HPE Systems Insight Manager (SIM) RCE PoC

exploitationpenetration-testingremote-access-tool+2
65 years ago
Apache-Struts-2-CVE-2017-5638-Exploit- preview

Apache-Struts-2-CVE-2017-5638-Exploit-

GitHubr4v3nbl4ck/apache-struts-2-cve-2017-5638-exploit-

Exploit created by: R4v3nBl4ck end Pacman

command-and-controlexploitationpenetration-testing+3
39 years ago
Previous12Next