Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
76 results
snmpvlan preview

snmpvlan

GitHubehabhussein/snmpvlan

CVE-2014-3341 exploit

configuration-auditingexploitationnetwork-security+2
411 years ago
SecurityManageFramwork preview

SecurityManageFramwork

GitHubwe1h0/securitymanageframwork

Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management,…

configuration-auditingnetwork-mappingpassword-cracking+4
4306 years ago
pocsploit preview

pocsploit

GitHubcckuailong/pocsploit

a lightweight, flexible and novel open source poc verification framework

exploit-frameworkspenetration-testingvulnerability-analysis+2
2374 years ago
OSINT-SPY preview

OSINT-SPY

GitHubsharadkumar97/osint-spy

Performs OSINT scan on email/domain/ip_address/organization using OSINT-SPY. It can be used by Data Miners, Infosec Researchers, Penetration Testers…

cryptographydns-subdomain-enumerationemail-harvesting+5
1.5k6 years ago
Check-Point-Trusted-Access-Review preview

Check-Point-Trusted-Access-Review

GitHubwadesweaponshed/check-point-trusted-access-review

Local web app for conducting a Check Point Trusted Access Review. This scanner is built specifically to look for configuration issues around…

cloud-securityconfiguration-auditingmisconfiguration+3
29 days ago
NoSQLMap preview

NoSQLMap

GitHubcodingo/nosqlmap

Automated NoSQL database enumeration and web application exploitation tool.

database-securityexploitationinformation-gathering+3
3.3k6 months ago
catsploit preview

catsploit

GitHubcatsploit/catsploit

Automated penetration testing tool using Cyber Attack Techniques Scoring (CATS) to select and execute optimal attack scenarios via Metasploit, Nmap,…

exploit-frameworksinformation-gatheringpenetration-testing+3
3212 years ago
goGetBucket preview

goGetBucket

GitHubglem0/gogetbucket

A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.

cloud-securityinformation-gatheringpenetration-testing+2
1167 years ago
Mobile-Drop-Device-SOC-Detection preview

Mobile-Drop-Device-SOC-Detection

GitHubv3ng4mxv1p3r/mobile-drop-device-soc-detection

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

educationexploitationincident-response+6
14 months ago
CVE-2025-6440 preview

CVE-2025-6440

GitHubanothersec/cve-2025-6440

WooCommerce Designer Pro 1.9.26 - Arbitrary File Upload

code-analysisexploitationpayload-generation+3
18 months ago
php-malware-finder preview

php-malware-finder

GitHubnbs-system/php-malware-finder

YARA-based scanner that detects obfuscated PHP malware and webshells using semantic pattern matching instead of file hashes, with a whitelist system…

malware-analysisstatic-analysisvulnerability-scanners+1
3424 years ago
php-malware-finder preview
Archived

php-malware-finder

GitHubjvoisin/php-malware-finder

Detect potentially malicious PHP files

code-analysismalware-analysisstatic-analysis+2
1.5k2 years ago
RedTeam_toolkit preview

RedTeam_toolkit

GitHubsignorrayan/redteam_toolkit

Red Team Toolkit is an Open-Source Django Offensive Web-App which is keeping the useful offensive tools used in the red-teaming together.

exploitationinformation-gatheringpassword-attacks+5
5726 months ago
INtrack preview

INtrack

GitHubk3ystr0k3r/intrack

A flexible internet crawler used for scanning technologies, instances and vulnerabilities worldwide across the internet.

crawlerexploitationinformation-gathering+7
6023 days ago
cve-2020-0796-scanner preview

cve-2020-0796-scanner

GitHubdickens88/cve-2020-0796-scanner

This project is used for scanning cve-2020-0796 SMB vulnerability

exploitationinformation-gatheringnetwork-security+2
146 years ago
rust-cve-2025-55182-scanner preview

rust-cve-2025-55182-scanner

GitHubkaxm23/rust-cve-2025-55182-scanner

powerfull rust cve-2025-55182-scanner used for ctf & ethical purpose only

ctfexploitationpenetration-testing+3
4 months ago
ccs-eval preview

ccs-eval

GitHubdroptables/ccs-eval

Used for evaluating hosts for CVE-2014-0224

exploitationnetwork-securitypenetration-testing+2
12 years ago
SkillSpector preview

SkillSpector

GitHubnvidia/skillspector

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

ai-securitycode-analysisdevsecops+8
14.8k7h 50m ago
Previous12345Next