Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
f5-waf-enforce-sig-CVE-2021-44228 preview

f5-waf-enforce-sig-CVE-2021-44228

GitHubirgoncalves/f5-waf-enforce-sig-cve-2021-44228

This enforces signatures for CVE-2021-44228 across all policies on a BIG-IP ASM device

api-securityconfiguration-auditingdevsecops+3
6
4 years ago
CVE-2025-36911_scan preview

CVE-2025-36911_scan

GitHubcedric-martz/cve-2025-36911_scan

This script can be used to check if a Bluetooth device is vulnerable to CVE-2025-36911.

bluetooth-securityexploitationinformation-gathering+3
47 months ago
whisper-pair preview

whisper-pair

GitHubap425q/whisper-pair

Scans Bluetooth Low Energy devices for Fast Pair vulnerabilities (CVE-2025-36911), testing if accessories accept unencrypted Key-Based Pairing…

bluetooth-securityexploitationhardware-iot-security+3
27 months ago
HikPwn preview

HikPwn

GitHub4n4nk3/hikpwn

Passive and active scanner for Hikvision devices with ICSA-17-124-01 vulnerability detection and exploitation, enabling device enumeration and admin…

exploitationinformation-gatheringiot-security+2
1294 years ago
CVE-2019-0708-Check-Device-Patch-Status preview

CVE-2019-0708-Check-Device-Patch-Status

GitHubfourtwizzy/cve-2019-0708-check-device-patch-status

PowerShell script to check if a remote device is patched against CVE-2019-0708 by verifying termdd.sys file version against Microsoft's May 2019…

exploitationinformation-gatheringpenetration-testing+3
186 years ago
mikrotik0dayScanner preview

mikrotik0dayScanner

GitHubm1tn1ck/mikrotik0dayscanner

Scanner for Mikrotik RouterOS 0day credential disclosure via Winbox interface. Exploits improper authentication on port 8291/TCP to download user…

authenticationexploitationinformation-gathering+2
67 years ago
conscryptchecker preview

conscryptchecker

GitHubroeeh/conscryptchecker

This app verifies if your device is still vulnerable to CVE-2015-3825 / CVE-2015-3837, aka "One Class to Rule Them All", by checking if it contains…

android-securitymobile-securityvulnerability-analysis+1
410 years ago
snmpvlan preview

snmpvlan

GitHubehabhussein/snmpvlan

SNMP scanner and brute-forcer targeting Cisco Nexus switches (5000/6000) to exploit CVE-2014-3341, enumerate VLANs, crack SNMP community strings, and…

configuration-auditingexploitationnetwork-security+2
411 years ago
sunsetscan preview

sunsetscan

GitHubnocoderrandom/sunsetscan

Local-network security auditing with EOL, CVE, device identity, and HTML reports

configuration-auditinginformation-gatheringiot-security+4
32 months ago
-CVE-2025-8088 preview

-CVE-2025-8088

GitHubpescada-dev/-cve-2025-8088

POWERSHEL script to check if your device is affected or no

educationexploitationscripting-automation+2
10 years ago
Mobile-Drop-Device-SOC-Detection preview

Mobile-Drop-Device-SOC-Detection

GitHubv3ng4mxv1p3r/mobile-drop-device-soc-detection

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

educationexploitationincident-response+6
14 months ago
Microsoft-Defender-for-Endpoint-Deployment-on-Windows-10-11-device preview

Microsoft-Defender-for-Endpoint-Deployment-on-Windows-10-11-device

GitHubkamalideenak/microsoft-defender-for-endpoint-deployment-on-windows-10-11-device

Step-by-step guide for deploying Microsoft Defender for Endpoint on Windows 10/11, including local script onboarding, device discovery, Log4j2…

configuration-auditingdefensive-toolseducation+4
11 months ago
CVE-2023-20198-Fix preview

CVE-2023-20198-Fix

GitHubnetbell/cve-2023-20198-fix

Check for and remediate conditions that make an IOS-XE device vulnerable to CVE-2023-20198

configuration-auditingdevsecopsexploitation+3
2 years ago
CVE-2024-23113 preview

CVE-2024-23113

GitHubiambrayden/cve-2024-23113

This python scripts searches a client list to see if their FortiGate device is vulnerable to this CVE.

exploitationinformation-gatheringnetwork-security+2
1 year ago
GDA-android-reversing-Tool preview

GDA-android-reversing-Tool

GitHubcharles2gan/gda-android-reversing-tool

Native C++ Dalvik bytecode decompiler for APK/DEX/ODEX/OAT/JAR/AAR/CLASS files. Performs malicious behavior detection, privacy leak scanning,…

android-securityctfdynamic-analysis-sandboxing+9
4.8k4 months ago
A2SV--SSL-VUL-Scan preview

A2SV--SSL-VUL-Scan

GitHubanthophilee/a2sv--ssl-vul-scan

Automated SSL/TLS vulnerability scanner that detects Heartbleed, POODLE, FREAK, DROWN, and other known CVEs, with a simple command-line interface for…

encryption-decryption-toolsexploitationnetwork-security+3
55 years ago
ssh-audit preview

ssh-audit

GitHubarthepsy/ssh-audit

SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

configuration-auditingnetwork-securitypenetration-testing+1
3.0k2 years ago
urgent11-detector preview

urgent11-detector

GitHubarmissecurity/urgent11-detector

Network-based scanner that identifies devices running Interpeak IPnet TCP/IP stack to detect URGENT/11 vulnerabilities using TCP and ICMP…

embedded-systems-securityinformation-gatheringiot-security+5
646 years ago
Previous12Next