Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
39 results
Ironsquirrel preview

Ironsquirrel

GitHubmrgeffitas/ironsquirrel

Encrypted exploit delivery for the masses

encryption-decryption-toolsexploit-frameworksweb-application-exploitation
2726 years ago
padding-oracle-attacker preview

padding-oracle-attacker

GitHubkishanbagaria/padding-oracle-attacker

🔓 CLI tool and library to execute padding oracle attacks easily, with support for concurrent network requests and an elegant UI.

cryptographyencryption-decryption-toolsexploitation+1
2174 years ago
RAU_crypto preview

RAU_crypto

GitHubbao7uo/rau_crypto

Telerik UI for ASP.NET AJAX File upload and .NET deserialisation exploit (CVE-2017-11317, CVE-2017-11357, CVE-2019-18935)

encryption-decryption-toolsexploitationpayload-generation+3
1806 years ago
dp_crypto preview

dp_crypto

GitHubbao7uo/dp_crypto

Base64-based encryption oracle exploit for CVE-2017-9248 (Telerik UI for ASP.NET AJAX dialog handler)

cryptographyencryption-decryption-toolsexploitation+3
1785 years ago
cve-2019-2618 preview

cve-2019-2618

GitHubjas502n/cve-2019-2618

Exploit script for CVE-2019-2618, a Weblogic arbitrary file upload vulnerability, with JSP webshell deployment and encrypted credential decryption.

encryption-decryption-toolsexploitationpassword-attacks+3
1737 years ago
grafanaExp preview

grafanaExp

GitHuba-d-team/grafanaexp

A exploit tool for Grafana Unauthorized arbitrary file reading vulnerability (CVE-2021-43798), it can burst plugins / extract secret_key / decrypt…

encryption-decryption-toolsexploitationinformation-gathering+3
27010 months ago
Burp_AES_Plugin preview

Burp_AES_Plugin

GitHubjas502n/burp_aes_plugin

Burpsuite Plugin For AES Crack

cryptographyencryption-decryption-toolsfuzzing+4
386 years ago
laravel_cookie_killer preview

laravel_cookie_killer

GitHubsynacktiv/laravel_cookie_killer

Decrypt and re-encrypt Laravel session cookies to exploit insecure PHP deserialization for remote code execution.

encryption-decryption-toolsexploitationpayload-development+4
283 years ago
CVE-2021-43798 preview

CVE-2021-43798

GitHubokymi-x/cve-2021-43798

Python toolkit for authorized testing of CVE-2021-43798 Grafana path traversal, with arbitrary file read PoC, secret decryption, and user hash export…

encryption-decryption-toolsexploitationinformation-gathering+3
3 months ago
CVE-2018-0114 preview

CVE-2018-0114

GitHuberemiel/cve-2018-0114

python2.7 script for JWT generation

authenticationencryption-decryption-toolsexploitation+3
25 years ago
CVE_2019_18935 preview

CVE_2019_18935

GitHubthanhuutuan/cve_2019_18935

This project for CVE-2019-18935

encryption-decryption-toolsexploitationpayload-generation+3
26 years ago
CVE-2020-2733 preview

CVE-2020-2733

GitHubanmolksachan/cve-2020-2733

Exploit for CVE-2020-2733 in JD Edwards EnterpriseOne Tools, demonstrating unauthenticated admin password decryption and authentication bypass to…

encryption-decryption-toolsexploitationinformation-gathering+5
12 years ago
UI_CVE-2017-9248 preview

UI_CVE-2017-9248

GitHubcehamod/ui_cve-2017-9248

Base64-based encryption oracle exploit for CVE-2017-9248 (Telerik UI for ASP.NET AJAX dialog handler)

encryption-decryption-toolsexploitationpenetration-testing+2
3 years ago
CVE-2018-0114 preview

CVE-2018-0114

GitHubstarry-lord/cve-2018-0114

Proof-of-concept for CVE-2018-0114, demonstrating unauthenticated remote token re-signing vulnerability in versions before 0.11.0.

authenticationencryption-decryption-toolsexploitation+2
5 years ago
CVE-2024-43044-jenkins-creds preview

CVE-2024-43044-jenkins-creds

GitHubdacc4/cve-2024-43044-jenkins-creds

Exploit for CVE-2024-43044 enabling arbitrary file read from Jenkins controller to extract and decrypt credentials.xml using secret keys.

encryption-decryption-toolsexploitationpenetration-testing+2
1 year ago
CVE-2019-5420 preview

CVE-2019-5420

GitHuberemiel/cve-2019-5420

Python exploit script for CVE-2019-5420, targeting Ruby on Rails signed-session AES GCM key brute-forcing to achieve remote code execution in…

encryption-decryption-toolsexploitationpassword-attacks+3
5 years ago
python-paddingoracle preview

python-paddingoracle

GitHubmwielgoszewski/python-paddingoracle

A portable, padding oracle exploit API

cryptographyencryption-decryption-toolsexploitation+2
3313 years ago
CVE-2022-35513 preview

CVE-2022-35513

GitHubp1ckzi/cve-2022-35513

CVE-2022-35513 | blink1-pass-decrypt

cryptographyencryption-decryption-toolsexploitation+3
24 years ago
Previous123Next