Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
44 results
cve-2026-15748 preview

cve-2026-15748

GitHubyora1928/cve-2026-15748

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

crawlerexploitationinformation-gathering+4
3
11 days ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubdream434/cve-2024-6387

Proof-of-concept exploit script for CVE-2024-6387, a critical unauthenticated remote code execution vulnerability in OpenSSH. Designed for security…

educationexploitationpenetration-testing+2
1 year ago
CVE-2017-5487 preview

CVE-2017-5487

GitHubdream434/cve-2017-5487

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

information-gatheringosintreconnaissance+2
1 year ago
wpbullet preview

wpbullet

GitHubwebarx-security/wpbullet

A static code analysis for WordPress (and PHP)

code-analysisstatic-code-analysisvulnerability-analysis+1
2407 years ago
dirsearch preview

dirsearch

GitHubmaurosoria/dirsearch

Web path scanner

api-securityapi-security-testingcrawler+11
14.7k3 days ago
cve-2023-2745 preview

cve-2023-2745

GitHubfofovicfof-ai/cve-2023-2745

Python script to check for CVE-2023-2745 vulnerability by sending crafted HTTP requests to a target URL and analyzing responses.

exploitationinformation-gatheringpenetration-testing+2
10 months ago
dirhunt preview

dirhunt

GitHubnekmo/dirhunt

Find web directories without bruteforce

crawlerinformation-gatheringpenetration-testing+2
2.0k3 years ago
badsecrets preview

badsecrets

GitHubblacklanternsecurity/badsecrets

A library for detecting known secrets across many web frameworks

cryptographypenetration-testingsecret-detection+2
8212 months ago
Phisher-man preview

Phisher-man

GitHubfdx100/phisher-man

Samples Phishing tools made for Linux it contains 30 different type of Phishing Pages made with flask

phishing-toolssocial-engineeringweb-security
1084 years ago
webtech preview

webtech

GitHubshieldersec/webtech

Identify technologies used on websites.

information-gatheringreconnaissanceweb-security
2972 months ago
URLextractor preview

URLextractor

GitHubeschultze/urlextractor

Information gathering & website reconnaissance | https://phishstats.info/

dns-analysisinformation-gatheringosint+3
4547 years ago
Admin-Scanner preview

Admin-Scanner

GitHubalienwhatever/admin-scanner

This tool is design to find admin panel of any website by using custom wordlist or default wordlist easily and allow you to find admin panel trough a…

information-gatheringpenetration-testingreconnaissance+1
1695 years ago
mass_cve-2021-41773 preview

mass_cve-2021-41773

GitHubjustakazh/mass_cve-2021-41773

MASS CVE-2021-41773

exploitationvulnerability-scannersweb-application-exploitation+1
294 years ago
crlfi preview

crlfi

GitHubcappricio-securities/crlfi

This is a tool used by several security researchers to find Carriage Return Line Feed Injection Bug

information-gatheringpenetration-testingvulnerability-analysis+2
52 years ago
CVE-2021-20323 preview

CVE-2021-20323

GitHubcappricio-securities/cve-2021-20323

A POST based reflected Cross Site Scripting vulnerability on has been identified in Keycloak.

educationinformation-gatheringpenetration-testing+3
22 years ago
openredirect preview

openredirect

GitHubcappricio-securities/openredirect

This is a tool used by several security researchers to find Open Redirect Bug

penetration-testingvulnerability-scannersweb-security+1
32 years ago
CVE-2021-24917 preview

CVE-2021-24917

GitHubcappricio-securities/cve-2021-24917

WordPress WPS Hide Login <1.9.1 - Information Disclosure

exploitationinformation-gatheringpenetration-testing+3
32 years ago
CVE-2020-35489 preview

CVE-2020-35489

GitHubcappricio-securities/cve-2020-35489

WordPress Contact Form 7 - Unrestricted File Upload

exploitationinformation-gatheringpenetration-testing+3
22 years ago
Previous123Next