Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
172 results
CVE-2018-6574 preview

CVE-2018-6574

GitHubeugene24/cve-2018-6574
binary-exploitationexploitationpenetration-testing+2
6 years ago
CVE-2021-31166 preview
Archived

CVE-2021-31166

GitHub0vercl0k/cve-2021-31166

Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.

binary-exploitationexploitationremote-access-tool+2
8265 years ago
CVE-2022-28281 preview
Archived

CVE-2022-28281

GitHub0vercl0k/cve-2022-28281

PoC for CVE-2022-28281 a Mozilla Firefox Out of bounds write.

binary-exploitationexploitationvulnerability-analysis+1
734 years ago
CyberStrikeAI preview

CyberStrikeAI

GitHubed1s0nz/cyberstrikeai

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

ai-securitybinary-analysiscloud-security+9
7.0k2 days ago
CyberStrikeAI preview

CyberStrikeAI

GitHubaipentest/cyberstrikeai

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

ai-securitybinary-analysiscloud-security+8
7.0k9 days ago
numasec preview

numasec

GitHubfrancescostabile/numasec

AI security agent that runs in your terminal, orchestrating local tools, runbooks, and agents for authorized AppSec, pentest, OSINT, and CTF…

ai-securityctfdevsecops+7
7964 months ago
CVE-2021-23017-PoC preview

CVE-2021-23017-PoC

GitHubm507/cve-2021-23017-poc

PoC for Nginx 0.6.18 - 1.20.0 Memory Overwrite Vulnerability CVE-2021-23017

educationexploitationpenetration-testing+2
1362 years ago
openclaw-security-monitor preview

openclaw-security-monitor

GitHubadibirzu/openclaw-security-monitor

Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks.

defensive-toolseducationforensics+9
488 days ago
MemoryShellHunter preview

MemoryShellHunter

GitHubsf197/memoryshellhunter

Java Agent memory horse scanner combined with Call Graph modus

dynamic-analysis-sandboxingmalware-analysismemory-forensics+1
653 years ago
watchTowr-vs-Netscaler-CVE-2026-8451 preview

watchTowr-vs-Netscaler-CVE-2026-8451

GitHubwatchtowrlabs/watchtowr-vs-netscaler-cve-2026-8451

Python exploit tool for CVE-2026-8451 Citrix Netscaler memory overread vulnerability. Generates detection artifacts by leaking memory from target…

exploitationinformation-gatheringmemory-forensics+3
132 months ago
Proof-of-Concept-POC---CVE-2026-49975-HTTP-2-Bomb- preview

Proof-of-Concept-POC---CVE-2026-49975-HTTP-2-Bomb-

GitHubfevar54/proof-of-concept-poc---cve-2026-49975-http-2-bomb-

Proof-of-concept exploit for CVE-2026-49975 (HTTP/2 Bomb), a remote denial-of-service vulnerability affecting major web servers via HPACK bomb and…

exploitationnetwork-securitypenetration-testing+2
63 months ago
CVE-2026-7482-PoC preview

CVE-2026-7482-PoC

GitHub0x0oz/cve-2026-7482-poc

Proof-of-concept exploit for CVE-2026-7482, an unauthenticated heap out-of-bounds read in Ollama's GGUF loader, demonstrating memory exfiltration via…

binary-analysiseducationexploitation+2
64 months ago
CVE-2026-23918-Elite-Auditor preview

CVE-2026-23918-Elite-Auditor

GitHubqassam-315/cve-2026-23918-elite-auditor

Elite reconnaissance script for auditing Apache's HTTP/2 stack against memory corruption (CVE-2026-23918). Features ALPN protocol forcing and…

information-gatheringpenetration-testingreconnaissance+3
64 months ago
cve-2026-49975-http2bomb_reproduction preview

cve-2026-49975-http2bomb_reproduction

GitHubrazureink/cve-2026-49975-http2bomb_reproduction

PoC exploit for CVE-2026-49975 HTTP/2 Bomb DoS vulnerability. Demonstrates HPACK indexed reference bomb combined with flow-control window stall to…

educationexploitationnetwork-security+3
22 months ago
CVE-2026-67183-Unauthenticated-Memory-Leak-Leads-To-Memory-Exhaustion-TinyWeb- preview

CVE-2026-67183-Unauthenticated-Memory-Leak-Leads-To-Memory-Exhaustion-TinyWeb-

GitHubtheopaid/cve-2026-67183-unauthenticated-memory-leak-leads-to-memory-exhaustion-tinyweb-

Security Advisory: Unauthenticated Memory Leak Leads To Memory Exhaustion (TinyWeb)

educationpapers-researchvulnerability-analysis+1
2 months ago
netscaler-saml-memory-disclosure-security-assessment preview

netscaler-saml-memory-disclosure-security-assessment

GitHubamnsecurity/netscaler-saml-memory-disclosure-security-assessment

Professional vulnerability assessment report for NetScaler SAML memory disclosure risk, including technical impact, remediation, and mitigation…

educationpapers-researchvulnerability-analysis+2
22 months ago
Cisco-ASA-vulnerability-research preview

Cisco-ASA-vulnerability-research

GitHubcobbbex/cisco-asa-vulnerability-research

Systematic reverse engineering of Cisco ASA's lina binary to discover and analyze memory corruption vulnerabilities, including CVE-2025-20333 and…

binary-analysisexploitationfuzzing+4
1 month ago
http2-bomb preview

http2-bomb

GitHubmanisso/http2-bomb

Proof of Concept (PoC) for CVE-2026-49975 – HTTP/2 server memory exhaustion attack leveraging HPACK amplification and connection retention (HTTP/2…

educationexploitationpenetration-testing+2
2 months ago
Previous1…78910Next