Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
343 results
vss-fr2system preview

vss-fr2system

GitHubsailay1996/vss-fr2system

test

exploitationpassword-crackingpenetration-testing+4
1075 months ago
ZipRarHunter preview

ZipRarHunter

GitLabs_r_e_e_r_a_j/ziprarhunter

ZipRarHunter is a powerful command-line ethical hacking tool designed to crack passwords of ZIP and RAR archive files using a wordlist.

password-attackspassword-crackingpenetration-testing+1
15 months ago
FTPBuster preview

FTPBuster

GitLabs_r_e_e_r_a_j/ftpbuster

FTPBuster is a powerful command-line brute-forcing tool designed to brute-force FTP, SFTP, and explicit FTPS servers by performing dictionary-based…

information-gatheringpassword-attackspenetration-testing
15 months ago
SSHBuster preview

SSHBuster

GitLabs_r_e_e_r_a_j/sshbuster

SSHBuster is a powerful command-line SSH brute-forcing tool designed for ethical hacking and penetration testing. It performs dictionary-based…

password-attackspenetration-testing
15 months ago
CVE-2019-9053-CMS-Made-Simple-2.2.10---SQL-Injection-Exploit preview

CVE-2019-9053-CMS-Made-Simple-2.2.10---SQL-Injection-Exploit

GitHubelizeuopain/cve-2019-9053-cms-made-simple-2.2.10---sql-injection-exploit

Python exploit for CVE-2019-9053 SQL injection in CMS Made Simple 2.2.10 with password hash cracking and user enumeration capabilities.

exploitationpassword-crackingpenetration-testing+2
55 months ago
PortEx preview

PortEx

GitHubstruppigel/portex

Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness

anomaly-detectionbinary-analysisforensics+3
5386 months ago
ubuntu-privesc-lab preview

ubuntu-privesc-lab

GitHubvaibhavkrishna12004/ubuntu-privesc-lab

Full penetration testing workflow: credential brute force, SSH access and privilege escalation (CVE-2021-4034)

educationexploitationlabs-practice+8
6 months ago
Pikachu-SMTP preview

Pikachu-SMTP

GitHubemrekybs/pikachu-smtp

Simple python script for brute force attack to smtp users

password-attackspenetration-testing
156 months ago
certReport preview

certReport

GitHubsquiblydoo/certreport

A tool to support the reporting of Authenticode Certificates by reducing the effort on individuals to report.

hash-analysismalware-analysisthreat-intelligence
406 months ago
RegPwnBRc4BOF preview

RegPwnBRc4BOF

GitHubn0isegat3/regpwnbrc4bof

Brute Ratel C4 BOF that exploits a registry symlink race condition in Windows Accessibility ATConfig to escalate privileges to SYSTEM by writing…

binary-exploitationexploitationpost-exploitation+2
36 months ago
knockpy preview

knockpy

GitHubguelfoweb/knockpy

Knock Subdomain Scan

dns-analysisdns-subdomain-enumerationinformation-gathering+4
4.2k7 months ago
Hash-Eye preview

Hash-Eye

GitHubishaklaz/hash-eye

**HashEye** is a powerful Python CLI tool for instantly detecting and analyzing hash types. It provides detailed information about hash formats,…

cryptographyhash-analysispassword-cracking+3
7 months ago
dotnetfile preview

dotnetfile

GitHubpan-unit42/dotnetfile

Python library for parsing CLR/PE metadata in .NET assemblies, exposing streams and hash fingerprints to support malware analysis and threat hunting.

binary-analysisforensicshash-analysis+4
1187 months ago
cook preview

cook

GitHubglitchedgitz/cook

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

fuzzingpassword-crackingpenetration-testing+1
1.4k8 months ago
django-defender preview

django-defender

GitHubjazzband/django-defender

A simple super fast django reusable app that blocks people from brute forcing login attempts

authenticationdefensive-toolspassword-attacks+1
1.1k8 months ago
spraycharles preview

spraycharles

GitHubtw1sm/spraycharles

Low and slow password spraying tool, designed to spray on an interval over a long period of time

authenticationpassword-attackspassword-cracking+2
2258 months ago
CVE-2024-21413 preview

CVE-2024-21413

GitHubdionissh/cve-2024-21413

Proof-of-concept exploit for Microsoft Outlook RCE (CVE-2024-21413) with SMTP-based phishing email delivery, malicious RTF attachment generation, and…

email-securityexploitationpassword-cracking+3
8 months ago
HashTag preview

HashTag

GitHubsmeegesec/hashtag

Password Hash Identification

digital-forensicsforensicshash-analysis+3
2228 months ago
Previous1…345…20Next