Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
250 results
Prober preview

Prober

GitLabisnic/prober

Automated, reproducible network security testing framework using Ansible and BATS to verify DNS, host availability, open ports, and TLS configuration…

configuration-auditingdns-analysisnetwork-security+3
1
5 years ago
dns_amplification_scanner preview

dns_amplification_scanner

GitHubpcastagnaro/dns_amplification_scanner

This script checks if each domain from a given domain list is vulnerable to CVE-2006-0987

dns-analysisinformation-gatheringnetwork-security+3
11 year ago
CVE-2024-2997 preview

CVE-2024-2997

GitHubo9-9/cve-2024-2997

The tool helps in quickly identifying vulnerabilities by examining a comprehensive list of potential paths on a website, making it useful for…

command-and-controlexploitationpenetration-testing+3
1 year ago
woocommerce_scanner preview

woocommerce_scanner

GitHubtdawg506/woocommerce_scanner

A Python script designed to scan a list of WordPress sites to identify those with WooCommerce installed and check if they are vulnerable to…

information-gatheringreconnaissancevulnerability-scanners+1
11 months ago
enumpossible preview

enumpossible

GitHuban0nym0u5101/enumpossible

Checks a list of SSH servers for password-based auth availability and for the existence of SSH user enumeration vulnerability (CVE-2018-15473) in…

exploitationinformation-gatheringpenetration-testing+2
6 years ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubmrp4nda1337/cve-2023-23752

simple program for joomla scanner CVE-2023-23752 with target list

educationexploitationinformation-gathering+3
3 years ago
Symfony-CVE-Scanner-PoC- preview

Symfony-CVE-Scanner-PoC-

GitHubmoften/symfony-cve-scanner-poc-

CVE-2021-21424 - CRLF Injection - CVE-2021-41268 - Host Header Injection - CVE-2022-24894 - WebProfiler abierto - CVE-2019-10909 - Directory Traversal

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2020-5902-F5-BIGIP preview

CVE-2020-5902-F5-BIGIP

GitHubinho28/cve-2020-5902-f5-bigip

Scan from a given list for F5 BIG-IP and check for CVE-2020-5902

exploitationpenetration-testingreconnaissance+2
6 years ago
CVE-2024-23113 preview

CVE-2024-23113

GitHubiambrayden/cve-2024-23113

This python scripts searches a client list to see if their FortiGate device is vulnerable to this CVE.

exploitationinformation-gatheringnetwork-security+2
1 year ago
CVE-2023-34992-Checker preview

CVE-2023-34992-Checker

GitHubd0rb/cve-2023-34992-checker

This script checks if a target host is vulnerable to CVE-2023-34992 by sending a crafted payload to the FortiSIEM appliance. It then analyzes the…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
scan4log4j preview
Archived

scan4log4j

GitHubssl/scan4log4j

Python script that sends CVE-2021-44228 log4j payload requests to url list

exploitationpayload-generationpenetration-testing+2
64 years ago
check-cve-2019-19781 preview
Archived

check-cve-2019-19781

GitHubcisagov/check-cve-2019-19781

Test a host for susceptibility to CVE-2019-19781

exploitationpenetration-testingvulnerability-analysis+2
1095 years ago
3klCon preview
Archived

3klCon

GitHubeslam3kl/3klcon

Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files.

information-gatheringpenetration-testingport-scanning+3
6892 years ago
Pentest-Tools-Framework preview
Archived

Pentest-Tools-Framework

GitHubpikpikcu/pentest-tools-framework

Pentest Tools Framework is a database of exploits, Scanners and tools for penetration testing. Pentest is a powerful framework includes a lot of…

educationexploitationexploit-frameworks+6
4631 year ago
awesome-nodejs-security preview

awesome-nodejs-security

GitHublirantal/awesome-nodejs-security

Curated directory of Node.js security tools, static analyzers, vulnerability scanners, and educational resources covering OWASP Top 10, supply chain…

code-analysiscurated-resourceseducation+5
3.0k6 days ago
awesome-attack-surface-management preview

awesome-attack-surface-management

GitHubescape-technologies/awesome-attack-surface-management

A curated collection of tools, techniques, frameworks, and learning resources focused on Attack Surface Management (ASM).

cloud-securitycurated-resourcesdns-analysis+7
397 months ago
How-To-Secure-A-Linux-Server preview

How-To-Secure-A-Linux-Server

GitHubimthenachoman/how-to-secure-a-linux-server

Step-by-step guide for hardening a Linux server, covering SSH security, firewalls, intrusion detection, auditing, and system configuration to reduce…

authenticationconfiguration-auditingcurated-resources+7
30.3k1 month ago
zaproxy preview

zaproxy

GitHubzaproxy/zaproxy

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

api-security-testingdevsecopsdynamic-analysis-sandboxing+5
15.6k1 day ago
Previous1…456…14Next