Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
250 results
react preview

react

GitHubjanhalendk/react

A OSINT project that explores how to dump data from React

educationinformation-gatheringosint+2
821 year ago
PCWT preview

PCWT

GitHubascr0b/pcwt

Web-based project management interface for penetration testing and bug bounty workflows, automating port scanning with Nmap/Masscan and subdomain…

information-gatheringpenetration-testingpenetration-testing-frameworks+5
455 years ago
static-code-analysis-helper preview

static-code-analysis-helper

GitHubosmankandemir/static-code-analysis-helper

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

code-analysisstatic-code-analysisvulnerability-analysis+1
337 months ago
OWASP-Learning-Gateway preview

OWASP-Learning-Gateway

GitHubowasp/owasp-learning-gateway

OWASP Learning Gateway Project

ctfcurated-resourceseducation+3
143 years ago
GitLabSniper preview

GitLabSniper

GitHubynsmroztas/gitlabsniper

Single-file Python scanner and exploit for CVE-2026-85706, an unauthenticated arbitrary file read in self-managed GitLab CE/EE, with project…

data-exfiltrationexploitationinformation-gathering+6
714 days ago
browser-security-project preview

browser-security-project

GitHubowasp/browser-security-project

Community-driven project providing guidance and resources to improve browser security, including best practices and educational materials for…

curated-resourceseducationweb-security
516 days ago
CVE-2026-19478 preview

CVE-2026-19478

GitHubeqstlab/cve-2026-19478

Proof-of-concept exploit for CVE-2026-19478, an unauthenticated GraphQL injection in GitLab CE/EE allowing arbitrary method invocation and project…

exploitationpenetration-testingred-teaming+3
41 month ago
at-doom-fortigate preview

at-doom-fortigate

GitHubjpiechowka/at-doom-fortigate

Fortigate CVE-2018-13379 - Tool to search for vulnerable Fortigate hosts in Rapid7 Project Sonar data anonymously through The Tor network.

exploitationinformation-gatheringnetwork-security+3
52 years ago
pdfjs-vuln-demo preview

pdfjs-vuln-demo

GitHubclarkio/pdfjs-vuln-demo

This project is intended to serve as a proof of concept to demonstrate exploiting the vulnerability in the PDF.js (pdfjs-dist) library reported in…

educationexploitationlabs-practice+3
41 year ago
A-xex preview

A-xex

GitHubfarinap5/a-xex

This project is part of a school work focusing on network security.

educationinformation-gatheringpassword-cracking+5
75 years ago
CVE-2026-26211 preview

CVE-2026-26211

GitHublindhunt/cve-2026-26211

Public disclosure and proof-of-concept for CVE-2026-26211, a stored XSS vulnerability in Ekushey Project Manager CRM v5.0, including technical…

educationexploitationpapers-research+2
115 days ago
POC-CVE-2026-58048 preview

POC-CVE-2026-58048

GitHubimbas007/poc-cve-2026-58048

Security research project

database-securityexploitationlabs-practice+4
21 month ago
cs50-cybersecurity preview

cs50-cybersecurity

GitHubbalochkainat160-cyber/cs50-cybersecurity

CS50's Introduction to Cybersecurity final project on React2Shell (CVE-2025-55182)

educationexploitationvulnerability-analysis+2
1 month ago
CVE-2018-7600-Drupalgeddon2-RCE preview

CVE-2018-7600-Drupalgeddon2-RCE

GitHubshams-ul-mehmood/cve-2018-7600-drupalgeddon2-rce

Educational CVE-2018-7600 exploit project combining a Python RCE PoC, isolated Docker Drupal lab, payload research, and mitigation documentation for…

educationexploitationlabs-practice+5
1 month ago
Cybersecurity-Capstone-Project preview

Cybersecurity-Capstone-Project

GitHubshahdawadfallah-sys/cybersecurity-capstone-project

Cybersecurity Capstone Project completed during the NCSC Nashama CyberCamp 11, delivered in collaboration with IT Security C&T. The project…

educationexploitationlabs-practice+5
2 months ago
CVE-2025-45778 preview

CVE-2025-45778

GitHubsmarttfoxx/cve-2025-45778

A stored cross-site scripting (XSS) vulnerability in The Language Sloth Web Application v1.0 allows attackers to execute arbitrary javascript or HTML…

exploitationpenetration-testingvulnerability-analysis+2
21 year ago
dmz-security-monitoring-hardening preview

dmz-security-monitoring-hardening

GitHubfreeguy-6/dmz-security-monitoring-hardening

CY376 Blue Team project — pfSense DMZ, Suricata IDS/IPS, and automated host hardening against CVE-2014-6271

configuration-auditingdefensive-toolseducation+5
11 month ago
CVE-2026-37067 preview

CVE-2026-37067

GitHubjfs-jfs/cve-2026-37067

Incorrect access control in /vfm-admin/admin-panel/view/save-cvs.php in Veno File Manager Project 4.4.9 allows an unauthenticated attacker to extract…

exploitationinformation-gatheringmisconfiguration+2
3 months ago
Previous1234…14Next