Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
25 results
routersploit preview

routersploit

GitHubthreat9/routersploit

Exploitation Framework for Embedded Devices

bluetooth-securityembedded-systems-securityexploitation+7
13.2k3 months ago
GDA-android-reversing-Tool preview

GDA-android-reversing-Tool

GitHubcharles2gan/gda-android-reversing-tool

Native C++ Dalvik bytecode decompiler for APK/DEX/ODEX/OAT/JAR/AAR/CLASS files. Performs malicious behavior detection, privacy leak scanning,…

android-securityctfdynamic-analysis-sandboxing+9
4.8k4 months ago
ssh-audit preview

ssh-audit

GitHubjtesta/ssh-audit

SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

configuration-auditingcryptographyinformation-gathering+6
4.3k1 month ago
ssh-audit preview

ssh-audit

GitHubarthepsy/ssh-audit

SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

configuration-auditingnetwork-securitypenetration-testing+1
3.0k2 years ago
evilwaf preview

evilwaf

GitHubmatrixleons/evilwaf

Authorized WAF bypass proxy that rotates TCP/TLS/HTTP2 fingerprints, hunts origin IPs behind firewalls, and scans WAF defenses across 10 layers for…

fingerprint-spoofinginformation-gatheringosint+6
88618 days ago
hakkuframework preview

hakkuframework

GitHub4shadoww/hakkuframework

Modular penetration testing framework with 24 built-in modules for network attacks, information gathering, Wi-Fi auditing, password cracking, and…

bluetooth-securityexploitationinformation-gathering+7
3625 years ago
HikPwn preview

HikPwn

GitHub4n4nk3/hikpwn

Passive and active scanner for Hikvision devices with ICSA-17-124-01 vulnerability detection and exploitation, enabling device enumeration and admin…

exploitationinformation-gatheringiot-security+2
1294 years ago
urgent11-detector preview

urgent11-detector

GitHubarmissecurity/urgent11-detector

Network-based scanner that identifies devices running Interpeak IPnet TCP/IP stack to detect URGENT/11 vulnerabilities using TCP and ICMP…

embedded-systems-securityinformation-gatheringiot-security+5
646 years ago
CVE-2019-0708-Check-Device-Patch-Status preview

CVE-2019-0708-Check-Device-Patch-Status

GitHubfourtwizzy/cve-2019-0708-check-device-patch-status

PowerShell script to check if a remote device is patched against CVE-2019-0708 by verifying termdd.sys file version against Microsoft's May 2019…

exploitationinformation-gatheringpenetration-testing+3
186 years ago
cve-2019-7192-check preview

cve-2019-7192-check

GitHubcycraft-corp/cve-2019-7192-check

Checker for QNAP pre-auth root RCE (CVE-2019-7192 ~ CVE-2019-7195)

exploitationpenetration-testingreconnaissance+2
135 years ago
f5-waf-enforce-sig-CVE-2021-44228 preview

f5-waf-enforce-sig-CVE-2021-44228

GitHubirgoncalves/f5-waf-enforce-sig-cve-2021-44228

This enforces signatures for CVE-2021-44228 across all policies on a BIG-IP ASM device

api-securityconfiguration-auditingdevsecops+3
64 years ago
mikrotik0dayScanner preview

mikrotik0dayScanner

GitHubm1tn1ck/mikrotik0dayscanner

Scanner for Mikrotik RouterOS 0day credential disclosure via Winbox interface. Exploits improper authentication on port 8291/TCP to download user…

authenticationexploitationinformation-gathering+2
67 years ago
A2SV--SSL-VUL-Scan preview

A2SV--SSL-VUL-Scan

GitHubanthophilee/a2sv--ssl-vul-scan

Automated SSL/TLS vulnerability scanner that detects Heartbleed, POODLE, FREAK, DROWN, and other known CVEs, with a simple command-line interface for…

encryption-decryption-toolsexploitationnetwork-security+3
55 years ago
CVE-2025-36911_scan preview

CVE-2025-36911_scan

GitHubcedric-martz/cve-2025-36911_scan

This script can be used to check if a Bluetooth device is vulnerable to CVE-2025-36911.

bluetooth-securityexploitationinformation-gathering+3
47 months ago
conscryptchecker preview

conscryptchecker

GitHubroeeh/conscryptchecker

This app verifies if your device is still vulnerable to CVE-2015-3825 / CVE-2015-3837, aka "One Class to Rule Them All", by checking if it contains…

android-securitymobile-securityvulnerability-analysis+1
410 years ago
snmpvlan preview

snmpvlan

GitHubehabhussein/snmpvlan

SNMP scanner and brute-forcer targeting Cisco Nexus switches (5000/6000) to exploit CVE-2014-3341, enumerate VLANs, crack SNMP community strings, and…

configuration-auditingexploitationnetwork-security+2
411 years ago
sunsetscan preview

sunsetscan

GitHubnocoderrandom/sunsetscan

Local-network security auditing with EOL, CVE, device identity, and HTML reports

configuration-auditinginformation-gatheringiot-security+4
32 months ago
whisper-pair preview

whisper-pair

GitHubap425q/whisper-pair

Scans Bluetooth Low Energy devices for Fast Pair vulnerabilities (CVE-2025-36911), testing if accessories accept unencrypted Key-Based Pairing…

bluetooth-securityexploitationhardware-iot-security+3
27 months ago
Previous12Next