Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
355 results
Yasso preview

Yasso

GitHubsairson/yasso

强大的内网渗透辅助工具集-让Yasso像风一样 支持rdp,ssh,redis,postgres,mongodb,mssql,mysql,winrm等服务爆破,快速的端口扫描,强大的web指纹识别,各种内置服务的一键利用(包括ssh完全交互式登陆,mssql提权,redis一键利用,mysql数据库…

exploitationlateral-movementpassword-attacks+5
1.6k
4 years ago
MalSeclogon preview

MalSeclogon

GitHubantoniococo/malseclogon

A little tool to play with the Seclogon service

exploitationlateral-movementmemory-forensics+3
3264 years ago
printix-CVE-2022-29551 preview

printix-CVE-2022-29551

GitHubcomparedarray/printix-cve-2022-29551

A "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version…

exploitationlateral-movementpenetration-testing+3
14 years ago
Spoof_AnyMail preview

Spoof_AnyMail

GitHubhackerxphantom/spoof_anymail

Most Powerful Send Fake Mail Using Any Mail I'd undetectable

email-securityimpersonation-toolspenetration-testing+3
1874 years ago
CnC-Botnet-in-Python preview

CnC-Botnet-in-Python

GitHubmarcorosa/cnc-botnet-in-python

C&C Botnet written in Python with fabric

command-and-controllateral-movementpayload-development+4
344 years ago
PoC-CVE-2022-30190 preview

PoC-CVE-2022-30190

GitHubjmousqueton/poc-cve-2022-30190

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina

command-and-controlexploitationlateral-movement+4
1584 years ago
SharpNoPSExec preview

SharpNoPSExec

GitHubjuliourena/sharpnopsexec

Get file less command execution for lateral movement.

lateral-movementpenetration-testingpost-exploitation+1
6394 years ago
pivotool preview

pivotool

GitHubartusec/pivotool

Bash-based post-exploitation tool for semi-automated network pivoting, enabling lateral movement through compromised systems during penetration tests.

lateral-movementpenetration-testingpost-exploitation+1
94 years ago
MS-MSDT-Office-RCE-Follina preview

MS-MSDT-Office-RCE-Follina

GitHub0xflagplz/ms-msdt-office-rce-follina

CVE-2022-30190 | MS-MSDT Follina One Click

command-and-controlexploitationlateral-movement+3
204 years ago
SharpNamedPipePTH preview

SharpNamedPipePTH

GitHubs3cur3th1ssh1t/sharpnamedpipepth

Pass the Hash to a named pipe for token Impersonation

authenticationimpersonation-toolslateral-movement+5
3074 years ago
KrbRelay preview

KrbRelay

GitHubcube0x0/krbrelay

Kerberos relay framework for Windows environments enabling authentication relay, privilege escalation, and lateral movement via LDAP, SMB, HTTP, and…

authenticationexploitationlateral-movement+2
9554 years ago
SharpImpersonation preview

SharpImpersonation

GitHubs3cur3th1ssh1t/sharpimpersonation

A User Impersonation tool - via Token or Shellcode injection

impersonation-toolspost-exploitationprivilege-escalation+1
4194 years ago
shai_hulud preview

shai_hulud

GitHubpresentdaypresenttime/shai_hulud

Worm written in python, abuses CVE-2020-7247

command-and-controlexploitationlateral-movement+3
24 years ago
CVE-2019-6329 preview

CVE-2019-6329

GitHubmanhndd/cve-2019-6329

Local Privilege Escalation in HP Support Assistant

binary-exploitationexploitationlateral-movement+4
44 years ago
SharpWSUS preview

SharpWSUS

GitHubnettitude/sharpwsus

C# tool for lateral movement through WSUS by creating, approving, and deploying malicious updates to target Windows clients in Active Directory…

lateral-movementpenetration-testingred-teaming
5044 years ago
MalSCCM preview

MalSCCM

GitHubnettitude/malsccm

Abuse SCCM servers to deploy malicious applications to managed hosts for lateral movement and red team operations.

exploitationlateral-movementpenetration-testing+1
2554 years ago
oxide_hive preview

oxide_hive

GitHubchron1k/oxide_hive

Exploit for CVE-2021-36934

exploitationlateral-movementpassword-cracking+3
34 years ago
CVE-2022-26809 preview

CVE-2022-26809

GitHubauduongxuan/cve-2022-26809

Impacket-based exploit for PrintNightmare (CVE-2021-1675/CVE-2021-34527) enabling remote DLL execution via SMB, with scanning and mitigation guidance.

exploitationlateral-movementpenetration-testing+3
74 years ago
Previous1…121314…20Next