Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
151 results
vimana-framework preview

vimana-framework

GitHubs4dhulabs/vimana-framework

Vimana is a modular security framework for auditing Python APIs and Web applications. The plugin-based architecture enables security professionals to…

api-securityapi-security-testingcrawler+9
66
1 month ago
semgrep preview

semgrep

GitHubsemgrep/semgrep

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

api-securityapi-security-testingcode-analysis+9
16.5k1 day ago
Smap preview

Smap

GitHubs0md3v/smap

a drop-in replacement for Nmap powered by shodan.io

information-gatheringnetwork-mappingport-scanning+2
3.3k21 days ago
sncscan preview

sncscan

GitHubusdag/sncscan

Tool for analyzing SAP Secure Network Communications (SNC).

configuration-auditingnetwork-securitypenetration-testing+1
612 years ago
SAPKiln preview

SAPKiln

GitHubowasp/sapkiln

OWASP SAPKiln is a graphical user interface (GUI) tool designed to facilitate securing and auditing SAP systems effectively.

configuration-auditinglateral-movementosint+3
303 years ago
api-scanner-docker preview

api-scanner-docker

GitHubcspf-founder/api-scanner-docker

Automated API security testing tool that scans REST and SOAP APIs for vulnerabilities using OpenAPI/Swagger specs and WSDL files. Deploys a full …

api-securityapi-security-testingconfiguration-auditing+5
96 months ago
CVE-2025-31324 preview

CVE-2025-31324

GitHubrxerium/cve-2025-31324

SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially…

exploitationinformation-gatheringpenetration-testing+3
410 months ago
powersap preview

powersap

GitHubairbus-seclab/powersap

Powershell SAP assessment tool

exploitationpassword-attackspenetration-testing+1
2038 years ago
metateta preview

metateta

GitHubsafebuffer/metateta

Automated network protocol scanner and exploiter leveraging Metasploit modules for rapid penetration testing across large networks, supporting SMB,…

exploit-frameworksnetwork-securitypenetration-testing-frameworks+1
848 years ago
CVE-2020-6287_RECON-scanner preview

CVE-2020-6287_RECON-scanner

GitHubonapsis/cve-2020-6287_recon-scanner

Black-box vulnerability scanner and indicator-of-compromise analyzer for CVE-2020-6287 (RECON) in SAP NetWeaver Java applications, enabling rapid…

forensicsincident-responseioc-management+3
284 years ago
cve-2019-7192-check preview

cve-2019-7192-check

GitHubcycraft-corp/cve-2019-7192-check

Checker for QNAP pre-auth root RCE (CVE-2019-7192 ~ CVE-2019-7195)

exploitationpenetration-testingreconnaissance+2
135 years ago
Onapsis_CVE-2025-31324_Scanner_Tools preview

Onapsis_CVE-2025-31324_Scanner_Tools

GitHubonapsis/onapsis_cve-2025-31324_scanner_tools

Python-based scanner for CVE-2025-31324 that identifies vulnerable SAP NetWeaver Visual Composer instances and detects indicators of compromise from…

exploitationforensicsincident-response+3
121 year ago
snmpvlan preview

snmpvlan

GitHubehabhussein/snmpvlan

SNMP scanner and brute-forcer targeting Cisco Nexus switches (5000/6000) to exploit CVE-2014-3341, enumerate VLANs, crack SNMP community strings, and…

configuration-auditingexploitationnetwork-security+2
411 years ago
CVE-2026-58231 preview

CVE-2026-58231

GitHubwildandeveloper/cve-2026-58231

Non-destructive detection and precondition-verification tool for CVE-2026-58231, probing SAP Commerce Cloud Data Hub endpoints, default OAuth…

api-securityauthenticationinformation-gathering+4
14 days ago
CVE-2025-6543_CitrixNetScaler_PoC preview

CVE-2025-6543_CitrixNetScaler_PoC

GitHubabrewer251/cve-2025-6543_citrixnetscaler_poc

Multi-host, multi-port scanner and auditor for CVE-2025-6543-affected NetScaler devices. Supports SNMP and SSH enumeration with optional CSV…

exploitationinformation-gatheringnetwork-security+3
61 year ago
jsp-webshell-scanner preview

jsp-webshell-scanner

GitHubrespondiq/jsp-webshell-scanner

🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.

code-analysisdigital-forensicsforensics+6
12 months ago
CVE-2025-31324-NUCLEI preview

CVE-2025-31324-NUCLEI

GitHubmoften/cve-2025-31324-nuclei

Nuclei template for cve-2025-31324 (SAP)

exploitationpenetration-testingvulnerability-analysis+3
11 year ago
CVE-2025-31324 preview

CVE-2025-31324

GitHubjonathanstross/cve-2025-31324

A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of…

information-gatheringioc-managementpenetration-testing+3
11 year ago
Previous12…9Next