Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
190 results
OmniScan preview

OmniScan

GitHubd3ckx1/omniscan
dynamic-analysis-sandboxingexploit-frameworksfuzzing+6
96 months ago
CVE-2026-63223 preview

CVE-2026-63223

GitHubshinthink/cve-2026-63223

CVE-2026-63223 — CI4RCE: CodeIgniter 4 is_image/mime_in File Upload RCE. Magic bytes bypass (getExtension vs getClientExtension). CVSS 9.8 | CWE-434…

exploitationpayload-generationpenetration-testing+3
216 days ago
CVE-2026-48908-by-yora preview

CVE-2026-48908-by-yora

GitHubyora1928/cve-2026-48908-by-yora

Passive security checker for CVE-2026-48908 affecting SP Page Builder.

exploitationinformation-gatheringpayload-generation+7
28 days ago
CVE-2024-9047-PoC preview

CVE-2024-9047-PoC

GitHubisee857/cve-2024-9047-poc

WordPress File Upload插件任意文件读取漏洞(CVE-2024-9047)批量检测脚本

exploitationinformation-gatheringpenetration-testing+3
51 year ago
CVE-2025-55182-burpscanner preview

CVE-2025-55182-burpscanner

GitHubpizz33/cve-2025-55182-burpscanner

基于 CVE-2025-55182 漏洞检测 burpsuite 被动扫描插件

exploitationpenetration-testingvulnerability-scanners+3
88 months ago
CVE-2025-24799 preview

CVE-2025-24799

GitHubmuhammadwaseem29/cve-2025-24799

CVE-2025-24799 SQLi Scanner

exploitationpenetration-testingvulnerability-scanners+2
41 year ago
log4jcheck preview

log4jcheck

GitHubolafhaalstra/log4jcheck

Check list of URLs against Log4j vulnerability CVE-2021-44228

exploitationinformation-gatheringpenetration-testing+3
54 years ago
meowEye preview

meowEye

GitHubeslam3kl/meoweye

MeowEye is a real-time scanner for identifying multiple web vulnerabilities in live applications.

dynamic-analysis-sandboxingfuzzingpenetration-testing+3
41 year ago
WebPort-v1.19.1-Reflected-XSS preview

WebPort-v1.19.1-Reflected-XSS

GitHubemreovunc/webport-v1.19.1-reflected-xss

CVE-2019-12460|Reflected XSS in WebPort-v1.19.1 impacts users who open a maliciously crafted link or third-party web page.

exploitationpenetration-testingvulnerability-analysis+2
37 years ago
Apache-Lua-Buffer-Overflow-Exploit-CVE-2021-44790 preview

Apache-Lua-Buffer-Overflow-Exploit-CVE-2021-44790

GitHubcerberusmrxi/apache-lua-buffer-overflow-exploit-cve-2021-44790

Apache HTTP Server 2.4.x mod_lua Buffer Overflow (CVE-2021-44790) - Advanced exploitation framework with fingerprinting, multi-stage scanning, plugin…

exploitationexploit-frameworksinformation-gathering+3
113 days ago
p4wned preview

p4wned

GitHubflyingllama87/p4wned

Perforce security research and tools - CVE-2026-6043

exploitationexploit-frameworksinformation-gathering+6
22 months ago
XSS2Shell-CVE-2026-64638 preview

XSS2Shell-CVE-2026-64638

GitHubmr-leonardogomes/xss2shell-cve-2026-64638

WordPress security scanner that fingerprints versions, detects reflected XSS across multiple targets concurrently, and supports an authenticated…

exploitationpenetration-testingreconnaissance+3
112 days ago
CVE-2025-12101-Scanner-PoC preview

CVE-2025-12101-Scanner-PoC

GitHubboneys/cve-2025-12101-scanner-poc
exploitationinformation-gatheringpenetration-testing+3
1 month ago
CVE-2025-37164 preview

CVE-2025-37164

GitHubrxerium/cve-2025-37164

Detection for CVE-2025-37164

exploitationpenetration-testingvulnerability-analysis+3
38 months ago
CVE-2025-66470 preview

CVE-2025-66470

GitHubjmehta10/cve-2025-66470

A fast, simple scanner for detecting CVE-2025-66470 - XSS vulnerability in NiceGUI's ui.interactive_image component.

exploitationinformation-gatheringpenetration-testing+4
28 months ago
Vehicle-Service-Management-System-Service-List-Stored-Cross-Site-Scripting-XSS preview

Vehicle-Service-Management-System-Service-List-Stored-Cross-Site-Scripting-XSS

GitHubsanupl/vehicle-service-management-system-service-list-stored-cross-site-scripting-xss

CVE-2021-46072 - A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Service List Section in…

exploitationpenetration-testingvulnerability-analysis+3
13 months ago
CVE-2024-25202 preview

CVE-2024-25202

GitHubagampreet-singh/cve-2024-25202

A vulnerability was found in PHPgurukul visitor management system 1.0. it has been rated as problemic. Affected by the issue is some unknown…

exploitationinformation-gatheringpenetration-testing+3
12 years ago
Log4j_scan_Advance preview

Log4j_scan_Advance

GitHubrk-000/log4j_scan_advance

A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228

exploitationfuzzingvulnerability-scanners+3
14 years ago
Previous1…91011Next