Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
83 results
DarunGrim preview

DarunGrim

GitHubohjeongwook/darungrim

A patch analysis tool

binary-analysisfuzzingreverse-engineering+2
3656 years ago
CVE-2023-23397-Patch preview

CVE-2023-23397-Patch

GitHubzeppperoni/cve-2023-23397-patch

CVE-2023-23397 powershell patch script for Windows 10 and 11

scripting-automationvulnerability-analysis
3 years ago
SharpHook preview

SharpHook

GitHubilankalendarov/sharphook

SharpHook is an offensive API hooking tool designed to catch various credentials within the API call.

red-teaming
3215 years ago
packetsifterTool preview

packetsifterTool

GitHubpacketsifter/packetsiftertool

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

defensive-toolsdigital-forensicsforensics+5
935 years ago
Py-RDP-Patcher preview

Py-RDP-Patcher

GitHubsp00kyskelet0n/py-rdp-patcher

Python script that patches the termsrv.dll file on Windows to enable multiple concurrent RDP sessions, supporting Windows 10 versions 1703 through…

lateral-movementpenetration-testingremote-access-tool
65 years ago
CVE-2025-66478-github-patcher preview

CVE-2025-66478-github-patcher

GitHubjibaru/cve-2025-66478-github-patcher

Go-based automation tool that scans GitHub repositories for vulnerable Next.js versions (CVE-2025-66478) and automatically creates pull requests with…

code-analysisdevsecopssupply-chain-security+2
9 months ago
yarasafe preview

yarasafe

GitHublucamassarelli/yarasafe

SAFE embeddings to match functions in yara

binary-analysismachine-learningmalware-analysis+2
1006 years ago
loguccino preview

loguccino

GitHub3pplus/loguccino

Scan and patch tool for CVE-2021-44228 and related log4j concerns.

devsecopssupply-chain-securityvulnerability-analysis+1
4 years ago
CVE-2024-25600-Bricks-Builder-WordPress preview

CVE-2024-25600-Bricks-Builder-WordPress

GitHubkasoomi0228/cve-2024-25600-bricks-builder-wordpress

Automated exploit tool for CVE-2024-25600, enabling unauthenticated remote code execution on WordPress sites using the Bricks Builder plugin.…

command-and-controlexploitationpayload-generation+3
2 years ago
OpenClawMachines preview

OpenClawMachines

GitHubmathaix/openclawmachines

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

ai-securityauthenticationcloud-security+6
572 months ago
DirtyClone preview

DirtyClone

GitHubgl1tch0x1/dirtyclone

Proof-of-concept local privilege escalation tool exploiting a kernel XFRM/ESP vulnerability (CVE-2026-43503) via crafted AES-CBC encrypted payloads…

binary-exploitationcryptographyexploitation+3
32 months ago
ngrep preview

ngrep

GitHubjpr5/ngrep

ngrep is like GNU grep applied to the network layer. It's a PCAP-based tool that allows you to specify an extended regular or hexadecimal expression…

dns-analysisforensicsinformation-gathering+3
1.0k7 months ago
trufflehog-explorer preview

trufflehog-explorer

GitHubgonzosint/trufflehog-explorer

Web-based dashboard to visualize, filter, and analyze secrets discovered by TruffleHog, with batch verification, export, and session management for…

information-gatheringosintsecret-detection+1
539 months ago
CVE-2025-68461 preview

CVE-2025-68461

GitHubgotr00t0day/cve-2025-68461

A C++ security scanner tool to detect Cross-Site Scripting (XSS) vulnerabilities in Roundcube Webmail installations.

information-gatheringpenetration-testingreconnaissance+3
78 months ago
CVE-2024-34102 preview

CVE-2024-34102

GitHubkento-sec/cve-2024-34102

Go-based exploit for CVE-2024-34102, an XXE vulnerability in Adobe Commerce leading to remote code execution. Supports single and batch URL scanning…

educationexploitationpenetration-testing+2
1 year ago
sipcheck preview

sipcheck

GitHubsinologicnet/sipcheck

Monitors Asterisk authentication logs and automatically bans IPs with repeated failed login attempts using iptables, with configurable thresholds and…

authenticationdefensive-toolsids-ips-evasion+2
256 years ago
CVE-2022-35914 preview

CVE-2022-35914

GitHublzer0kx01/cve-2022-35914

Batch vulnerability detection tool for CVE-2022-35914. Scans multiple URLs from a target file to identify exploitable instances of this specific web…

exploitationpenetration-testingreconnaissance+2
23 years ago
Windows-Exploit-Suggester preview
Archived

Windows-Exploit-Suggester

GitHubstrozfriedberg/windows-exploit-suggester

This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on the target. It…

exploitationinformation-gatheringpenetration-testing+2
4.2k3 years ago
Previous12345Next