Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
50 results
airecon preview

airecon

GitHubpikpikcu/airecon

AIRecon is an autonomous cybersecurity agent that combines a self-hosted Large Language Model (Ollama) with a Kali Linux Docker sandbox and a Textual…

ai-securityeducationexploitation+6
971
4 months ago
pollyscan preview

pollyscan

GitHubpadayali-jd/pollyscan

A specialized vulnerability scanner designed to detect CVE-2024-38526, the Polyfill.io Supply Chain Attack, helping organizations identify and…

misconfigurationsupply-chain-securitythreat-intelligence+2
61 year ago
React2shell-ultimate-scanner preview

React2shell-ultimate-scanner

GitHubcyberprince-hub/react2shell-ultimate-scanner

CVE-2025-55182-Advanced-Scanner is an automated security tool designed to detect and validate the CVE-2025-55182 vulnerability efficiently. it helps…

educationexploitationpenetration-testing+3
8 months ago
cve-reproduction-lab preview

cve-reproduction-lab

GitHubtsiddiquea/cve-reproduction-lab

Cybersecurity lab demonstrating Apache CVE-2021-41773 path traversal vulnerability with vulnerable server simulation, scanner, and security reporting.

educationexploitationlabs-practice+5
5 months ago
CVE-2025-55182-Terminal preview

CVE-2025-55182-Terminal

GitHubmrsol0/cve-2025-55182-terminal

This is a POC for testing your projects that are vulnerable to CVE-2025-55182 with a terminal and ability to scan a list

exploitationpayload-generationpenetration-testing+3
8 months ago
CVE-2025-55182-scanner preview

CVE-2025-55182-scanner

GitHubyaupunal/cve-2025-55182-scanner

CVE-2025-55182-scanner with 2 different method

defensive-toolsids-ips-evasionmisconfiguration+3
8 months ago
CVE-2025-68645 preview

CVE-2025-68645

GitHubcrow5-oss/cve-2025-68645

Proof-of-Concept scanner for CVE-2025-68645, detecting Local File Inclusion (LFI) in Zimbra Collaboration Suite via the /h/printcalendar endpoint…

exploitationinformation-gatheringpenetration-testing+3
6 months ago
woocommerce_scanner preview

woocommerce_scanner

GitHubtdawg506/woocommerce_scanner

A Python script designed to scan a list of WordPress sites to identify those with WooCommerce installed and check if they are vulnerable to…

information-gatheringreconnaissancevulnerability-scanners+1
11 months ago
CVE-2022-3590-WordPress-Vulnerability-Scanner preview

CVE-2022-3590-WordPress-Vulnerability-Scanner

GitHubhuynhvanphuc/cve-2022-3590-wordpress-vulnerability-scanner

Python script to detect unauthenticated blind SSRF (CVE-2022-3590) in WordPress pingback feature. Supports single URL and batch scanning with…

exploitationinformation-gatheringpenetration-testing+3
3 years ago
CVE-2024-6387_Check preview

CVE-2024-6387_Check

GitHubedsonjt81/cve-2024-6387_check

Lightweight Python scanner that identifies servers vulnerable to OpenSSH regreSSHion (CVE-2024-6387) via rapid banner retrieval across IPs, domains,…

information-gatheringnetwork-securitypenetration-testing+3
2 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubgrupooruss/cve-2024-6387

Python script to scan and secure SSH configurations against the CVE-2024-6387 race condition vulnerability, with automated LoginGraceTime adjustment…

configuration-auditingnetwork-securitypenetration-testing+3
22 years ago
cve-2019-9184 preview

cve-2019-9184

GitHubcved-sources/cve-2019-9184

Docker container with a pre-configured vulnerable environment for CVE-2019-9184, designed for security testing and educational exploitation practice.

container-securityeducationexploitation+3
5 years ago
CVE-2024-3094-checker preview

CVE-2024-3094-checker

GitHubhazemkya/cve-2024-3094-checker

Bash script to detect and remediate CVE-2024-3094, a critical supply-chain vulnerability in the XZ Utils library, with automatic safe version…

misconfigurationscripting-automationsupply-chain-security+2
2 years ago
OpenSSH-CVE-2024-6387-Fix preview

OpenSSH-CVE-2024-6387-Fix

GitHubalmogopp/openssh-cve-2024-6387-fix

A Bash script to mitigate the CVE-2024-6387 vulnerability in OpenSSH by providing an option to upgrade to a secure version or apply a temporary…

cloud-securityconfiguration-auditingdevsecops+3
2 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubtam-k592/cve-2024-6387

Recently, the OpenSSH maintainers released security updates to fix a critical vulnerability that could lead to unauthenticated remote code execution…

exploitationinformation-gatheringnetwork-security+3
142 years ago
RscScan-cve-2025-55182 preview

RscScan-cve-2025-55182

GitHubveilvulp/rscscan-cve-2025-55182

RscScan: Professional cross-platform vulnerability scanner for Next.js Server Actions (CVE-2025-55182). Detects critical RCE flaws with…

educationexploitationpenetration-testing+3
38 months ago
CVE-2017-9841 preview

CVE-2017-9841

GitHubjoelindra/cve-2017-9841

Tool designed to scan a list of websites for a known vulnerability in the PHPUnit framework, specifically the CVE-2017-9841 vulnerability.

exploitationinformation-gatheringpenetration-testing+3
12 months ago
CVE-2025-55182-Scanner preview

CVE-2025-55182-Scanner

GitHubcaptain4554/cve-2025-55182-scanner

🛡️ Scan and assess vulnerabilities in Next.js/Waku with the CVE-2025-55182-Scanner, combining static and dynamic analysis for robust security.

code-analysisdevsecopsdynamic-analysis-sandboxing+4
14 days ago
Previous123Next