Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
0dayex-checker preview

0dayex-checker

GitHubvncert-cc/0dayex-checker

Zeroday Microsoft Exchange Server checker (Virtual Patching checker)

email-securityvulnerability-scannersweb-vulnerability-scanners
693 years ago
OWASSRF preview

OWASSRF

GitHubcrowdstrike/owassrf
email-securityexploitationvulnerability-analysis+3
153 years ago
SpoofcheckSelfTest preview

SpoofcheckSelfTest

GitHubbishopfox/spoofcheckselftest

Web application that lets you test if your domain is vulnerable to email spoofing

configuration-auditingdns-analysisemail-security+1
447 years ago
DepFuzzer preview

DepFuzzer

GitHubsynacktiv/depfuzzer
code-analysisosintreconnaissance+2
948 months ago
exchange-scanner preview

exchange-scanner

GitHubbishopfox/exchange-scanner

Identify public-facing Microsoft Exchange servers and determine their software versions

email-securityinformation-gatheringreconnaissance+3
12 months ago
wp2shell-Hestia-Scanner preview

wp2shell-Hestia-Scanner

GitHubbytespulse-oe/wp2shell-hestia-scanner

Read-only WordPress security scanner for HestiaCP servers. Detects wp2shell compromise indicators (CVE-2026-63030 / CVE-2026-60137) across all hosted…

ai-securitydefensive-toolsforensics+7
217 days ago
CVE-2026-6875-PoC-Exploit preview

CVE-2026-6875-PoC-Exploit

GitHubtc4dy/cve-2026-6875-poc-exploit

CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

exploitationlateral-movementpenetration-testing+7
31 month ago
cve-2026-45185-detection-script preview

cve-2026-45185-detection-script

GitHubmateraj2/cve-2026-45185-detection-script

These detection scripts are property of the SECPlayground Platform. Two safe detection scripts. Neither drives the close_notify-mid-BDAT trigger, so…

email-securityexploitationnetwork-security+3
3 months ago
CVE-2024-39929 preview

CVE-2024-39929

GitHubrxerium/cve-2024-39929

Detection method for Exim vulnerability CVE-2024-39929

email-securityexploitationpenetration-testing+2
310 months ago
CVE-2023-3128 preview

CVE-2023-3128

GitHubspyata123/cve-2023-3128
authentication-authorizationcloud-securityexploitation+3
1 year ago
Cybersecurity-Mastery-Roadmap preview

Cybersecurity-Mastery-Roadmap

GitHubhamed233/cybersecurity-mastery-roadmap

A comprehensive, step-by-step guide to mastering cybersecurity from beginner to expert level with curated resources, tools, and career guidance

cryptographyctfcurated-resources+6
3.3k28 days ago
osintnet-public preview

osintnet-public

GitHubosintnet/osintnet-public

OsintNET is a browser-based OSINT platform for domain intelligence, website risk scanning, SERP discovery, image intelligence and AI image detection.

ai-securitydigital-forensicsdns-analysis+8
12 months ago
CYBERDUDEBIVASH-Cisco-AsyncOS-CVE-2025-20393-Scanner preview

CYBERDUDEBIVASH-Cisco-AsyncOS-CVE-2025-20393-Scanner

GitHubcyberdudebivash/cyberdudebivash-cisco-asyncos-cve-2025-20393-scanner

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

email-securityexploitationincident-response+4
7 months ago
cisco-sa-sma-attack-N9bf4 preview

cisco-sa-sma-attack-N9bf4

GitHubstasonjatham/cisco-sa-sma-attack-n9bf4

Script to detect CVE-2025-20393 for Cisco Secure Email Gateway And Cisco Secure Email and Web Manager

exploitationinformation-gatheringnetwork-security+3
218 months ago
CVE-2024-13513.py preview

CVE-2024-13513.py

GitHub0axz-tools/cve-2024-13513.py
exploitationinformation-gatheringpenetration-testing+3
10 months ago
Argus preview

Argus

GitHubjasonxtn/argus

The Ultimate Information Gathering Toolkit

crawlerdns-analysisemail-harvesting+7
4.1k8 months ago
Striker preview

Striker

GitHubs0md3v/striker

Striker is an offensive information and vulnerability scanner.

information-gatheringport-scanningreconnaissance+3
2.3k7 years ago
mail-security-tester preview

mail-security-tester

GitHubtkcert/mail-security-tester

A testing framework for mail security and filtering solutions.

email-securityids-ips-evasionpenetration-testing+2
2447 years ago
Previous12Next