Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
7426 results
EvilNeko preview

EvilNeko

GitHubcorvralabs/evilneko

Automated container orchestration tool for Browser-in-the-Browser (BITB) phishing attacks, enabling red teams to scale multi-target infrastructure…

container-securitypenetration-testingphishing+3
80
8 months ago
Moxy preview

Moxy

GitHubmatank001/moxy

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

ai-securityapi-security-testingdynamic-analysis-sandboxing+9
1247 months ago
TProxer preview

TProxer

GitHubethicalhackingplayground/tproxer

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

api-security-testingpenetration-testingvulnerability-analysis+2
1844 years ago
CVE-2022-42889-Text4Shell-POC preview

CVE-2022-42889-Text4Shell-POC

GitHubalealeluyah/cve-2022-42889-text4shell-poc

This repository contains a Python script to automate the process of testing for a vulnerability known as Text4Shell, referenced under the CVE id:…

exploitationpayload-generationpenetration-testing+2
133 years ago
CVE-2022-0739 preview

CVE-2022-0739

GitHubchris01s/cve-2022-0739

Simple bash script to automate the exploit of cve 2022 0739

exploitationpenetration-testingvulnerability-analysis+1
43 years ago
CVE-2026-23723-POC preview

CVE-2026-23723-POC

GitHubch35h1r3c47/cve-2026-23723-poc

This is a lightweight Python helper script designed to automate the generation of sqlmap-compatible PoC files for the authenticated error-based SQL…

exploitationpenetration-testingvulnerability-analysis+1
37 months ago
CVE-2021-29447 preview

CVE-2021-29447

GitHubthomas-osgood/cve-2021-29447

A Golang program to automate the execution of CVE-2021-29447

educationexploitationpenetration-testing+2
33 years ago
CVE-2023-4220-PoC preview

CVE-2023-4220-PoC

GitHubsn0wbaall/cve-2023-4220-poc

Automated proof-of-concept exploit for CVE-2023-4220 in Chamilo LMS, enabling arbitrary file upload and remote code execution via unauthenticated…

exploitationpayload-generationpenetration-testing+3
7 months ago
CVE-2023-3452-PoC preview

CVE-2023-3452-PoC

GitHubleoanggal1/cve-2023-3452-poc

Wordpress Plugin Canto < 3.0.5 - Remote File Inclusion (RFI) and Remote Code Execution (RCE)

exploitationpayload-generationpenetration-testing+3
172 years ago
CVE-2020-6308 preview

CVE-2020-6308

GitHubthemmmdev/cve-2020-6308

Exploit script for SAP Business Objects SSRF

exploitationpenetration-testingred-teaming+2
15 years ago
CVE-2024-23334-PoC preview

CVE-2024-23334-PoC

GitHubsn0wbaall/cve-2024-23334-poc

Automated proof-of-concept exploit for CVE-2024-23334, a path traversal vulnerability in aiohttp, enabling remote directory traversal and…

ctfeducationexploitation+3
7 months ago
CVE-2019-13063-POC preview

CVE-2019-13063-POC

GitHub0x6b7966/cve-2019-13063-poc

Proof of concept tool to exploit the directory traversal and local file inclusion vulnerability that resides in the Sahi-pro web application…

exploitationinformation-gatheringpenetration-testing+2
7 years ago
jboss-_CVE-2017-12149 preview

jboss-_CVE-2017-12149

GitHubmre-fog/jboss-_cve-2017-12149

Java-based command-line tool to verify the presence of CVE-2017-12149 in JBoss servers by sending crafted requests and checking for a specific…

exploitationpenetration-testingvulnerability-analysis+2
3 years ago
CVE-2022-4616-POC preview

CVE-2022-4616-POC

GitHubahanel13/cve-2022-4616-poc

This Python script aids in exploiting CVE-2022-46169 by automating payload delivery and response handling. It starts an HTTP server, listens for…

educationexploitationpayload-generation+2
3 years ago
wordpress-bf preview

wordpress-bf

GitHubrandomrobbiebf/wordpress-bf

Brute Force Wordpress Blogs.

authentication-authorizationinformation-gatheringpassword-attacks+2
6 years ago
CVE-2024-34327 preview

CVE-2024-34327

GitHub0xsu3ks/cve-2024-34327

Proof-of-concept checker for time-based blind SQL injection in password-reset-token.php; sends crafted POST requests and detects delayed responses…

educationexploitationpenetration-testing+2
1 year ago
NekoBotV1 preview
Archived

NekoBotV1

GitHubtegal1337/nekobotv1

NekoBot | Auto Exploiter With 500+ Exploit 2000+ Shell

exploit-frameworkspenetration-testingred-teaming+2
3965 years ago
pulse-gosecure-rce-poc preview

pulse-gosecure-rce-poc

GitHubwithdk/pulse-gosecure-rce-poc

Tool to test for existence of CVE-2020-8218

command-and-controlexploitationpenetration-testing+3
216 years ago
Previous12…100Next