Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
216 results
CVE-2019-0708-Check-Device-Patch-Status preview

CVE-2019-0708-Check-Device-Patch-Status

GitHubfourtwizzy/cve-2019-0708-check-device-patch-status

PowerShell script to check if a remote device is patched against CVE-2019-0708 by verifying termdd.sys file version against Microsoft's May 2019…

exploitationinformation-gatheringpenetration-testing+3
18
7 years ago
tachyon preview

tachyon

GitHubdelvelabs/tachyon

Fast http dead file finder.

information-gatheringreconnaissancevulnerability-scanners+1
2211 month ago
CVE-2023-27997-Check preview

CVE-2023-27997-Check

GitHubimbas007/cve-2023-27997-check

Lightweight Python script to check Fortinet SSL VPN instances for CVE-2023-27997 vulnerability, supporting single URL and batch file scanning.

exploitationpenetration-testingreconnaissance+2
13 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubcharanvoonna/cve-2021-41773

Nmap NSE script to detect Apache HTTP Server path traversal vulnerability (CVE-2021-41773) by sending crafted requests and analyzing responses for…

exploitationinformation-gatheringpenetration-testing+3
11 year ago
CVE-2025-3102_v2 preview

CVE-2025-3102_v2

GitHubsupraaa-1337/cve-2025-3102_v2

Checks the SureTriggers WordPress plugin's readme.txt file for the Stable tag version. If the version is less than or equal to 1.0.78, it is…

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
GDA-android-reversing-Tool preview

GDA-android-reversing-Tool

GitHubcharles2gan/gda-android-reversing-tool

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which…

android-securityctfdynamic-analysis-sandboxing+9
4.8k4 months ago
checker-cve2020-3452 preview

checker-cve2020-3452

GitHubmrcl0wnlab/checker-cve2020-3452

Cisco Adaptive Security Appliance and FTD Unauthorized Remote File Reading

exploitationnetwork-securitypenetration-testing+3
176 years ago
nmap-CVE-2023-23333-exploit preview

nmap-CVE-2023-23333-exploit

GitHubemanueldosreis/nmap-cve-2023-23333-exploit

Nmap NSE script to dump / test Solarwinds CVE-2023-23333 vulnerability

exploitationpenetration-testingvulnerability-analysis+2
23 years ago
WPKiller preview

WPKiller

GitHubkakamband/wpkiller

CVE-2020-25213 Wordpress File Manager 6.7 Plugin 0day exploit

exploitationpenetration-testingvulnerability-scanners+2
15 years ago
nmap-CVE-2023-35078-Exploit preview

nmap-CVE-2023-35078-Exploit

GitHubemanueldosreis/nmap-cve-2023-35078-exploit

Nmap script to exploit CVE-2023-35078 - Mobile Iron Core

exploitationnetwork-securitypenetration-testing+3
13 years ago
CVE-2025-68645 preview

CVE-2025-68645

GitHubcrow5-oss/cve-2025-68645

Proof-of-Concept scanner for CVE-2025-68645, detecting Local File Inclusion (LFI) in Zimbra Collaboration Suite via the /h/printcalendar endpoint…

exploitationinformation-gatheringpenetration-testing+3
6 months ago
wazuh preview

wazuh

GitHubwazuh/wazuh

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

anomaly-detectionanti-botcloud-security+12
16.7k6 days ago
CISCO-CVE-2020-3452-Scanner-Exploiter preview

CISCO-CVE-2020-3452-Scanner-Exploiter

GitHubdarklotuskdb/cisco-cve-2020-3452-scanner-exploiter

CISCO CVE-2020-3452 Scanner & Exploiter

exploitationinformation-gatheringpenetration-testing+3
995 years ago
sudowp-dropzone-elementor preview

sudowp-dropzone-elementor

GitHubsudo-wp/sudowp-dropzone-elementor

Secure fork of Startklar Elementor Addons. Patched CVE-2024-5153 & File Upload vulnerabilities.

api-securitycode-analysismisconfiguration+3
5 months ago
react2shell preview

react2shell

GitHubcahyod/react2shell

Alat ini mendeteksi potensi kerentanan React2Shell (CVE-2025-55182) dalam proyek React dengan memeriksa: - File `package.json` dan file lock untuk…

code-analysisstatic-analysissupply-chain-security+2
18 months ago
inspec-log4j preview

inspec-log4j

GitHubtrickyearlobe/inspec-log4j

An Inspec profile to check for Log4j CVE-2021-44228 and CVE-2021-45046

cloud-securityconfiguration-auditingdevsecops+2
14 years ago
CVE-2025-7775-vulnerable-lab preview

CVE-2025-7775-vulnerable-lab

GitHubaaqilyousuf/cve-2025-7775-vulnerable-lab

Vulnerable Dockerized web app exposing RCE, path traversal, hardcoded credentials, and insecure file uploads; an isolated lab for testing security…

ctfeducationlabs-practice+3
1 year ago
CVE-2021-44228---detection-with-PowerShell preview

CVE-2021-44228---detection-with-PowerShell

GitHubintel-xeon/cve-2021-44228---detection-with-powershell

PowerShell-based scanner to detect Log4j CVE-2021-44228 vulnerability by searching directories and log files for exploitation indicators.

information-gatheringlog-analysisscripting-automation+2
4 years ago
Previous1…789…12Next