Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
222 results
CVE-2018-14847 preview

CVE-2018-14847

GitHubtausifzaman/cve-2018-14847

This is a proof of concept of the critical WinBox vulnerability (CVE-2018-14847) which allows for arbitrary file read of plain text passwords. The…

exploitationinformation-gatheringnetwork-security+3
1
1 year ago
CVE-2025-22381 preview

CVE-2025-22381

GitHubpescada-dev/cve-2025-22381

Discovering CVE-2025-22381: Host Header Injection in the Aggie Open-Source Project

educationexploitationpassword-attacks+3
16 months ago
firewall preview

firewall

GitHubsalo-404/firewall

🔒 Spring4Shell Firewall Defense — Cybersecurity Incident Simulation This project is part of a Cybersecurity Job Simulation I completed in August…

educationincident-responseintrusion-detection+3
111 months ago
CVE-2025-56807 preview

CVE-2025-56807

GitHubaqwainfosec/cve-2025-56807

CVE-2025-56807: A Stored Cross Site Scripting (XSS) vulnerability was discovered in FairSketch RISE Ultimate Project Manager & CRM (v3.9.4) in the…

exploitationinformation-gatheringpenetration-testing+3
10 months ago
fire-wall-server preview

fire-wall-server

GitHubnosie12/fire-wall-server

Python-based simulated firewall to detect and block Spring4Shell (CVE-2022-22965) exploit attempts. This project filters HTTP requests by identifying…

defensive-toolseducationintrusion-detection+3
1 year ago
CVE-2006-20001 preview

CVE-2006-20001

GitHubr1az4r/cve-2006-20001

A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header…

curated-resourceseducationexploitation+2
3 years ago
log4shell-example preview

log4shell-example

GitHubchilit-nl/log4shell-example

The goal of this project is to demonstrate the log4j cve-2021-44228 exploit vulnerability in a spring-boot setup, and to show how to fix it.

code-analysiseducationexploitation+3
4 years ago
detect-CVE-2019-15107-by-pyshark preview

detect-CVE-2019-15107-by-pyshark

GitHubgozn/detect-cve-2019-15107-by-pyshark

school project

educationexploitationintrusion-detection+4
2 years ago
f-for-java preview

f-for-java

GitHubtotallynotahaxxer/f-for-java

a project written in go and java i abandoned for CVE-2021-44228 try to fix it if you can XD

code-analysisexploitationpenetration-testing+2
4 years ago
l4j-tp1 preview

l4j-tp1

GitHubscabench/l4j-tp1

jee web project with log4shell (CVE-2021-44228) vulnerability

educationexploitationlabs-practice+3
2 years ago
l4j-fp1 preview

l4j-fp1

GitHubscabench/l4j-fp1

jee web project with sanitised log4shell (CVE-2021-44228) vulnerability

code-analysiseducationexploitation+3
2 years ago
CVE-2023-32309 preview

CVE-2023-32309

GitHubitlabbet/cve-2023-32309

Example project illustrating CVE-2023-32309 vulnerability

educationexploitationpapers-research+2
3 years ago
easy_security preview

easy_security

GitHubmoon1705/easy_security

Project with sublist3r, massan, CVE-2018-15473, ssh bruteforce, ftp bruteforce and nikto.

exploitationinformation-gatheringnetwork-security+5
2 years ago
cs50-cybersecurity preview

cs50-cybersecurity

GitHubbalochkainat160-cyber/cs50-cybersecurity

CS50's Introduction to Cybersecurity final project on React2Shell (CVE-2025-55182)

educationexploitationvulnerability-analysis+2
6 days ago
owasp-modsecurity-crs preview
Archived

owasp-modsecurity-crs

GitHubspiderlabs/owasp-modsecurity-crs

OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)

api-securitydefensive-toolsintrusion-detection+3
2.5k6 years ago
CVE-2022-3464 preview

CVE-2022-3464

GitHubgylq/cve-2022-3464

A vulnerability classified as problematic has been found in puppyCMS up to 5.1. This affects an unknown part of the file /admin/settings.php. The…

curated-resourceseducationinformation-gathering+2
3 years ago
CVE-2021-40113 preview

CVE-2021-40113

GitHubkarammahmad/cve-2021-40113

Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network…

authenticationconfiguration-auditingexploitation+3
3 years ago
CheatSheetSeries preview

CheatSheetSeries

GitHubowasp/cheatsheetseries

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

api-securityauthenticationcloud-security+6
32.9k3 days ago
Previous1…567…13Next