Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
58 results
vbscan preview
Archived

vbscan

GitHubowasp/vbscan

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

exploitationinformation-gatheringpenetration-testing+3
326
7 years ago
hwbp4mw preview

hwbp4mw

GitHubrad9800/hwbp4mw

Hardware breakpoint hooking engine for Windows that uses debug registers to hook functions, bypass ETW/AMSI, and evade user-land EDR monitoring.

adversarial-attackdebuggersids-ips-evasion+2
2743 years ago
joomlavs preview
Archived

joomlavs

GitHubrastating/joomlavs

A black box, Ruby powered, Joomla vulnerability scanner

information-gatheringpenetration-testingreconnaissance+3
2748 years ago
presentations preview

presentations

GitHubedwardzpeng/presentations

Slides and conference talks from security research covering Windows, virtualization, web, and blockchain exploit techniques, presented at Black Hat,…

binary-exploitationcryptographycurated-resources+5
2721 year ago
drAFL preview

drAFL

GitHubmxmssh/drafl

AFL + DynamoRIO = fuzzing binaries with no source code on Linux

binary-analysisdynamic-analysis-sandboxingexploitation+1
2496 years ago
black-widow preview

black-widow

GitHuboffensive-hub/black-widow

GUI based offensive penetration testing tool (Open Source)

crawlerinformation-gatheringpacket-sniffing-analysis+2
2234 years ago
KubeStalk preview

KubeStalk

GitHubredhuntlabs/kubestalk

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

cloud-securitycontainer-securityinformation-gathering+3
1801 year ago
inficere preview

inficere

GitHubenzolovesbacon/inficere

Mac OS X rootkit - for learning purposes

educationpersistence-mechanismsprivilege-escalation
12912 years ago
dns-black-cat preview

dns-black-cat

GitHubzux0x3a/dns-black-cat

Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode…

command-and-controldata-exfiltrationdns-analysis+3
1123 years ago
napper-for-tpm preview

napper-for-tpm

GitHubkkamagui/napper-for-tpm

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

embedded-systems-securityexploitationfirmware-analysis+3
1074 years ago
cisco_asa_research preview

cisco_asa_research

GitHubjbaines-r7/cisco_asa_research

Cisco ASA Software and ASDM Security Research

exploitationexploit-frameworksinformation-gathering+7
873 years ago
ShadeBIOS preview

ShadeBIOS

GitHubffri/shadebios

PoC code of Shade BIOS (stripped) presented at Black Hat USA 2025

binary-analysiseducationembedded-systems-security+5
681 year ago
am335xbootrom preview

am335xbootrom

GitHubsjgallagher2/am335xbootrom

Reverse engineering the TI AM3358 boot ROM

binary-analysisdebuggerseducation+4
642 years ago
Blackhat-USA-2022-Materials preview

Blackhat-USA-2022-Materials

GitHubh4wkst3r/blackhat-usa-2022-materials

Presentation materials for my Black Hat USA 2022 Briefing and Arsenal talks

curated-resourceseducationexploitation+3
644 years ago
autoresponder preview

autoresponder

GitHublawiet47/autoresponder

Automates incident response tasks via Carbon Black Response API: file/registry deletion, process killing, sensor isolation, binary collection, and…

forensicsincident-response
565 years ago
swapgs-attack-poc preview

swapgs-attack-poc

GitHubbitdefender/swapgs-attack-poc

This repository contains the sources and documentation for the SWAPGS attack PoC (CVE-2019-1125)

binary-exploitationeducationexploitation+2
416 years ago
css-the-bomb-inside-your-inbox preview

css-the-bomb-inside-your-inbox

GitHubportswigger/css-the-bomb-inside-your-inbox

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

ai-securitycurated-resourcesdata-exfiltration+7
3411 days ago
PoC-public preview

PoC-public

GitHubffri/poc-public

Curated collection of proof-of-concept vulnerability exploits and research presented at security conferences such as Black Hat and CODE BLUE.

curated-resourcesexploitationvulnerability-analysis
3210 months ago
Previous1234Next