Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
18 results
erlvulnscan preview

erlvulnscan

GitHubtechnion/erlvulnscan

Concurrent network scanner for CVE-2015-1635

information-gatheringnetwork-securitypenetration-testing+3
108 years ago
Mass-Scanner-CVE-2026-2631 preview

Mass-Scanner-CVE-2026-2631

GitHubanggatechi/mass-scanner-cve-2026-2631

Async mass-checker for authorized internal testing of CVE-2026-2631 exposure.

exploitationinformation-gatheringpenetration-testing+2
25 months ago
CVE-2024-38063-scanner preview

CVE-2024-38063-scanner

GitHubjip-0-0-0-0-0/cve-2024-38063-scanner

A Python tool leveraging Shodan and Scapy to identify and exploit Windows systems vulnerable to CVE-2024-38063, enabling targeted Denial of Service…

exploitationinformation-gatheringpacket-sniffing-analysis+2
11 year ago
geoexplorer preview

geoexplorer

GitHubjustin-p/geoexplorer

Mass vulnerability scanner targeting CVE-2024-36401 in GeoServer, using WFS requests to discover feature types and deliver payloads for automated…

exploitationinformation-gatheringpenetration-testing+3
42 years ago
CVE-2024-46982-NUCLEI preview

CVE-2024-46982-NUCLEI

GitHubmelmathari/cve-2024-46982-nuclei

Nuclei template for CVE-2024-46982, enabling automated detection and exploitation of the vulnerability in web applications.

exploitationinformation-gatheringpenetration-testing+2
1 year ago
freevulnsearch preview

freevulnsearch

GitHubocsaf/freevulnsearch

Free and open NMAP NSE script to query vulnerabilities via the cve-search.org API.

information-gatheringnetwork-securityvulnerability-analysis+1
2496 years ago
gcp_scanner preview

gcp_scanner

GitHubgoogle/gcp_scanner

GCP resource scanner that evaluates access levels of compromised credentials by enumerating cloud services, projects, and IAM permissions across…

cloud-securityinformation-gatheringreconnaissance+1
37010 months ago
cve-2020-0796-scanner preview

cve-2020-0796-scanner

GitHubdickens88/cve-2020-0796-scanner

This project is used for scanning cve-2020-0796 SMB vulnerability

exploitationinformation-gatheringnetwork-security+2
146 years ago
webpwn3r preview

webpwn3r

GitHubzigoo0/webpwn3r

WebPwn3r - Web Applications Security Scanner.

information-gatheringpenetration-testingvulnerability-scanners+3
4594 years ago
RedTeam_toolkit preview

RedTeam_toolkit

GitHubsignorrayan/redteam_toolkit

Red Team Toolkit is an Open-Source Django Offensive Web-App which is keeping the useful offensive tools used in the red-teaming together.

exploitationinformation-gatheringpassword-attacks+5
5753 years ago
kubebot preview

kubebot

GitHubanshumanbh/kubebot

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

cloud-securitydevsecopsinformation-gathering+5
1642 years ago
CVE-2026-48908-by-yora preview

CVE-2026-48908-by-yora

GitHubyora1928/cve-2026-48908-by-yora

Passive security checker for CVE-2026-48908 affecting SP Page Builder.

exploitationinformation-gatheringpayload-generation+7
21 month ago
cve-2026-20127 preview

cve-2026-20127

GitHubgigachadusers/cve-2026-20127

Windows-based C++ network scanner that fingerprints Cisco SD-WAN/vManage services and checks for CVE-2026-20127 exposure via HTTP endpoint analysis.

information-gatheringnetwork-securitypenetration-testing+2
25 months ago
CVE-2014-6271_Test preview

CVE-2014-6271_Test

GitHubryeyao/cve-2014-6271_test

Python-based scanner to detect CVE-2014-6271 (Shellshock) vulnerability in CGI-enabled servers, using Google search to discover potential targets.

exploitationinformation-gatheringreconnaissance+2
112 years ago
Grafxploit preview

Grafxploit

GitHubhxlxmj/grafxploit

Automated Exploit Tool for Grafana CVE-2021-43798: Scanning common files that contain juicy informations and extracting SSH keys from compromised…

exploitationinformation-gatheringpenetration-testing+3
2 years ago
HQLmap preview
Archived

HQLmap

GitHubpaulsec/hqlmap

(Deprecated) HQLmap, Automatic tool to exploit HQL injections

database-securityinformation-gatheringpenetration-testing+2
2286 years ago
jfscan preview
Archived

jfscan

GitHubnullt3r/jfscan

JF⚡can - Super fast port scanning & service discovery using Masscan and Nmap. Scan large networks with Masscan and use Nmap's scripting abilities to…

information-gatheringnetwork-mappingpenetration-testing+3
6687 months ago
nextjs-react2shell-detect preview

nextjs-react2shell-detect

GitHubphilparzer/nextjs-react2shell-detect

chrome extension to detect next.js sites vulnerable to CVE-2025-55182 (react2shell)

information-gatheringreconnaissancevulnerability-scanners+1
210 months ago