Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
270 results
stretcher preview

stretcher

GitHubjimywork/stretcher

Tool designed to help identify open Elasticsearch servers that are exposing sensitive information

database-securityinformation-gatheringosint+1
907 years ago
CVE-2025-53770-Scanner preview

CVE-2025-53770-Scanner

GitHubsec-dan/cve-2025-53770-scanner

A Python-based reconnaissance scanner for safely identifying potential exposure to SharePoint vulnerability CVE-2025-53770.

information-gatheringpenetration-testingreconnaissance+3
31 year ago
KubeStalk preview

KubeStalk

GitHubredhuntlabs/kubestalk

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

cloud-securitycontainer-securityinformation-gathering+3
1801 year ago
urgent11-detector preview

urgent11-detector

GitHubarmissecurity/urgent11-detector

URGENT/11 detection tool by Armis

embedded-systems-securityinformation-gatheringiot-security+5
647 years ago
CVE-2023-22515-NSE preview

CVE-2023-22515-NSE

GitHubspareack/cve-2023-22515-nse

Vulnerability checking tool via Nmap Scripting Engine

exploitationinformation-gatheringpenetration-testing+3
41 year ago
CUPS-CVE-2024-47176 preview

CUPS-CVE-2024-47176

GitHubgianlu111/cups-cve-2024-47176

A Mass Scanner designed to detect the CVE-2024-47176 vulnerability across systems running the Common Unix Printing System (CUPS).

exploitationinformation-gatheringnetwork-security+3
11 year ago
CVE-2025-68613_Scanner preview

CVE-2025-68613_Scanner

GitHubmanyaigdtuw/cve-2025-68613_scanner

GUI Shodan-powered scanner to identify n8n instances exposed to CVE-2025-68613 (version range 0.211.0–1.122.0)

exploitationinformation-gatheringosint+4
9 months ago
CVE-2025-10035 preview

CVE-2025-10035

GitHubthemehackers/cve-2025-10035

A deserialization vulnerability in the License Servlet of Fortra's GoAnywhere MFT allows an actor with a validly forged license response signature to…

educationinformation-gatheringreconnaissance+3
11 year ago
Next.JS-CVE-2025-29927 preview

Next.JS-CVE-2025-29927

GitHubamitlttwo/next.js-cve-2025-29927

Scans Next.js applications to detect and verify CVE-2025-29927 authentication bypass vulnerability with high accuracy and concurrent scanning.

exploitationinformation-gatheringpenetration-testing+2
1 year ago
jsleak preview
Archived

jsleak

GitHub0xteles/jsleak

a Go code to detect leaks in JS files via regex patterns

information-gatheringosintreconnaissance+3
1514 years ago
S3Scanner preview

S3Scanner

GitHubsa7mon/s3scanner

Scan for misconfigured S3 buckets across S3-compatible APIs!

cloud-securityinformation-gatheringmisconfiguration+1
3.2k2 months ago
LdapRelayScan preview

LdapRelayScan

GitHubzyn3rgy/ldaprelayscan

Check for LDAP protections regarding the relay of NTLM authentication

authenticationconfiguration-auditinginformation-gathering+5
5311 year ago
Optiva-Framework preview

Optiva-Framework

GitHubjoker25000/optiva-framework

Optiva-Framework 🔎 Web Application Scanner🕵️

encryption-decryption-toolshash-analysisinformation-gathering+6
3148 years ago
wpbf preview

wpbf

GitHubatarantini/wpbf

Remotely test password strength of WordPress bloging software

information-gatheringpassword-attackspenetration-testing+3
10710 years ago
CVE-2024-9166 preview

CVE-2024-9166

GitHubandrysqui/cve-2024-9166

A vulnerability scanner that searches for the CVE-2024-9166 vulnerability on websites, more info about this vulnerability here:…

exploitationinformation-gatheringpenetration-testing+3
42 years ago
cve-2025-5054 preview

cve-2025-5054

GitHubdaryllundy/cve-2025-5054

Python-based vulnerability detector for CVE-2025-5054 (Apport race condition) on Ubuntu. Checks Apport version, core dump configuration, and SUID…

exploitationinformation-gatheringpenetration-testing+2
21 year ago
CVE-2019-12102-Scanner preview

CVE-2019-12102-Scanner

GitHubegi08/cve-2019-12102-scanner

Automated scanner for CVE-2019-12102 unauthenticated file upload vulnerability in Kentico CMS. Checks domains, verifies with hash parameter, and…

exploitationinformation-gatheringpenetration-testing+2
1 year ago
Analysis-of-TomcatKiller---CVE-2025-31650-Exploit-Tool preview

Analysis-of-TomcatKiller---CVE-2025-31650-Exploit-Tool

GitHubsattarbug/analysis-of-tomcatkiller---cve-2025-31650-exploit-tool

Detects CVE-2025-31650 in Apache Tomcat servers with Shodan-based target discovery and CSV/JSON reporting for vulnerability assessment.

exploitationinformation-gatheringreconnaissance+2
1 year ago
Previous1234…15Next