Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1551 results
nl-kat-coordination preview

nl-kat-coordination

GitHubssc-ict-innovatie/nl-kat-coordination

Modular network scanning framework that integrates diverse tools and external databases to detect vulnerabilities and configuration errors, producing…

configuration-auditinginformation-gatheringnetwork-security+2
167
3 days ago
hayduk preview

hayduk

GitHubjolovicdev/hayduk

Graphical attack management console for Metasploit: the lineage of Armitage as a single Go binary with a browser UI. Live network topology, campaign…

exploit-frameworksnetwork-mappingpenetration-testing-frameworks+3
2 days ago
CVE-2026-72898-metabase-sqli preview

CVE-2026-72898-metabase-sqli

GitHubd-maggipinto/cve-2026-72898-metabase-sqli

Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated SQLi via reset_password)

exploitationpenetration-testingvulnerability-analysis+2
1 day ago
chrome-vuln-scanner preview

chrome-vuln-scanner

GitHubvirologi-info/chrome-vuln-scanner

Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary code execution inside the sandbox via a malicious Chrome…

defensive-toolseducationstatic-analysis+2
1 day ago
Copy-Fail_Detect_and_mitigate_CVE-2026-31431 preview

Copy-Fail_Detect_and_mitigate_CVE-2026-31431

GitHubwebhosting4u/copy-fail_detect_and_mitigate_cve-2026-31431

Detects exposure to CVE-2026-31431 (Copy Fail) and optionally mitigates by disabling the vulnerable algif_aead kernel module, providing verdicts and…

configuration-auditingdefensive-toolsincident-response+1
23 months ago
CVE-2026-31431-Checker-Mitigator preview

CVE-2026-31431-Checker-Mitigator

GitHubzenzue/cve-2026-31431-checker-mitigator

Detects and mitigates CVE-2026-31431, a Linux kernel local privilege escalation vulnerability, with optional PoC execution for isolated testing.

educationexploitationprivilege-escalation+1
3 months ago
CVE-2026-41940-cPanel-WHM-Verification-Tool preview

CVE-2026-41940-cPanel-WHM-Verification-Tool

GitHubsercanokur/cve-2026-41940-cpanel-whm-verification-tool

Python verification script for CVE-2026-41940, an authentication bypass in cPanel & WHM, enabling authorized defensive validation and patching…

authenticationdefensive-toolseducation+2
3 months ago
CVE-2026-41940 preview

CVE-2026-41940

GitHubsenyx122/cve-2026-41940

A security research tool for detecting and analyzing cPanel/WHM services and their authentication behavior. Designed for authorized testing and…

educationinformation-gatheringpenetration-testing+3
73 months ago
copyfail preview

copyfail

GitHubkwilck/copyfail

Copy Fail (CVE-2026-31431) is a logic flaw in the Linux kernel's algif_aead module — part of the AF_ALG userspace crypto API. It was disclosed on…

configuration-auditingdefensive-toolsprivilege-escalation+2
13 months ago
cve-2026-31431-ansible preview

cve-2026-31431-ansible

GitHubaestechno/cve-2026-31431-ansible

Ansible playbook to detect and apply kernel cmdline mitigation for CVE-2026-31431 (Copy Fail) across Debian/Ubuntu/RHEL fleets, with read-only…

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
33 months ago
cve-2026-41940-tool preview

cve-2026-41940-tool

GitHubnull200ok/cve-2026-41940-tool

A comprehensive Python utility to **detect**, **scan in bulk**, and **exploit** the critical authentication bypass vulnerability (CVE-2026-41940) in…

exploitationinformation-gatheringpayload-development+5
43 months ago
cve-2026-31431-check preview

cve-2026-31431-check

GitHubforensicfoundry/cve-2026-31431-check

Check local Linux mitigation/exposure status for CVE-2026-31431 "Copy Fail"

configuration-auditingincident-responseprivilege-escalation+2
3 months ago
CVE-2026-58073-check preview

CVE-2026-58073-check

GitHubbishopfox/cve-2026-58073-check

Safely detect Veeam Service Provider Console auth bypass CVE-2026-58073

cloud-infrastructure-securitynetwork-securitypenetration-testing+2
2 days ago
yLog4j preview

yLog4j

GitHuby-security/ylog4j

PortSwigger Burp Plugin for the Log4j (CVE-2021-44228)

api-security-testingexploitationpenetration-testing+2
24 years ago
CVE-2026-0740 preview

CVE-2026-0740

GitHubxshadow-here/cve-2026-0740

Automated mass exploiter for CVE-2026-0740, an unauthenticated arbitrary file upload in Ninja Forms File Uploads plugin, enabling remote code…

exploitationpayload-generationpenetration-testing+3
34 months ago
CVE-2026-5281-Research-Toolkit preview

CVE-2026-5281-Research-Toolkit

GitHubumair-aziz025/cve-2026-5281-research-toolkit

Chrome WebGPU Use-After-Free (CWE-416) This toolkit is for security research and defensive verification around CVE-2026-5281. Patched Chrome…

defensive-toolseducationexploitation+3
44 months ago
Se7enSlip preview

Se7enSlip

GitHubshalevo13/se7enslip

A scanner and testter of the CVE-2025-11001 of 7-zip

curated-resourceseducationexploitation+3
410 months ago
cpanel-cve-2026-41940-fix preview

cpanel-cve-2026-41940-fix

GitHubshahidmallaofficial/cpanel-cve-2026-41940-fix

One-shot detection and remediation for cPanel/WHM servers compromised via CVE-2026-41940, including IOC checks, malware cleanup, C2 blocking, and…

cloud-infrastructure-securityconfiguration-auditingdigital-forensics+5
53 months ago
Previous12…87Next