Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
655 results
CVE-2024-24919 preview

CVE-2024-24919

GitHubam-eid/cve-2024-24919

Bash script to check for CVE-2024-24919 vulnerability in a list of IP addresses, aiding in security assessments.

exploitationpenetration-testingreconnaissance+2
2 years ago
SDK preview

SDK

GitHubintelligencex/sdk

SDK for querying the Intelligence X search engine and data archive, supporting selectors like email, domain, IP, and phone. Includes API wrappers in…

api-security-testinginformation-gatheringosint+2
5558 days ago
CVE-2023-20198 preview

CVE-2023-20198

GitHubkacem-expereo/cve-2023-20198

Check a target IP for CVE-2023-20198 vulnerability in Cisco IOS XE web UI. Simple Python script for rapid exploitation verification.

exploitationpenetration-testingreconnaissance+2
12 years ago
cve-lfi-lab preview

cve-lfi-lab

GitHubthecyberfairy/cve-lfi-lab

A hands on lab investigating CVE-2025-39507 from a Tier 1 SOC analyst perspective. Includes log review in Microsoft Sentinel, IP analysis, real world…

ctfeducationincident-response+5
1 year ago
inforfinder preview

inforfinder

GitHubggusoft/inforfinder

Inforfinder is a tool to collect information of any domains pointing at some server (ip, domain, range, file). Is able to detect all domains pointing…

dns-subdomain-enumerationinformation-gatheringreconnaissance
672 years ago
CVE-2020-0688 preview

CVE-2020-0688

GitHubbailongwang1/cve-2020-0688

PHP CLI script that scans single hosts or IP ranges to detect Exchange servers vulnerable to CVE-2020-0688 by checking installed cumulative updates.

email-securityexploitationinformation-gathering+3
6 years ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubz3n70/cve-2020-5902

BIGIP CVE-2020-5902 Exploit POC and automation scanning vulnerability

exploitationpenetration-testingvulnerability-analysis+1
24 years ago
POC-CVE-2021-41773 preview

POC-CVE-2021-41773

GitHubhattan515/poc-cve-2021-41773

Simple Python exploit script for Apache HTTPd 2.4.49 path traversal vulnerability (CVE-2021-41773). Supports single IP and file-based scanning.

exploitationpenetration-testingvulnerability-analysis+2
5 years ago
CVE-2022-1388-RCE-checker-and-POC-Exploit preview

CVE-2022-1388-RCE-checker-and-POC-Exploit

GitHubblind-intruder/cve-2022-1388-rce-checker-and-poc-exploit

Bash script to check and exploit CVE-2022-1388 RCE in F5 BIG-IP, with a curl-based POC for command execution.

exploitationpenetration-testingred-teaming+2
84 years ago
netlas-cookbook preview

netlas-cookbook

GitHubnetlas-io/netlas-cookbook

The goal of this guide is very simple - to teach anyone interested in cyber security, regardless of their knowledge level, how to make the most of…

curated-resourcesdigital-forensicseducation+9
89123 days ago
Dumb0 preview

Dumb0

GitHub0verl0ad/dumb0

A simple tool to dump users in popular forums and CMS :)

information-gatheringosintpenetration-testing+1
318 years ago
IP-Biter preview

IP-Biter

GitHubdamianofalcioni/ip-biter

IP-Biter: The Hacker-friendly E-Mail (but not only) Tracking Framework

email-securityinformation-gatheringosint+1
3272 years ago
CVE-2024-22120-RCE-with-gopher preview

CVE-2024-22120-RCE-with-gopher

GitHubispique/cve-2024-22120-rce-with-gopher

This is my exploit for CVE-2024-22120, which involves an SSRF vulnerability inside an XXE with a Gopher payload.

command-and-controlexploitationpenetration-testing+2
32 years ago
SharpWebServer preview

SharpWebServer

GitHubmgeeky/sharpwebserver

Red Team oriented C# Simple HTTP & WebDAV Server with Net-NTLM hashes capture functionality

lateral-movementred-teaming
2873 years ago
ligolo preview

ligolo

GitHubsysdream/ligolo

Reverse Tunneling made easy for pentesters, by pentesters https://sysdream.com/

lateral-movementpenetration-testingred-teaming
1.8k6 years ago
pivotool preview

pivotool

GitHubartusec/pivotool

Bash-based post-exploitation tool for semi-automated network pivoting, enabling lateral movement through compromised systems during penetration tests.

lateral-movementpenetration-testingpost-exploitation+1
94 years ago
SIPI preview

SIPI

GitHubst2labs/sipi

Simple IP Information Tools for Reputation Data Analysis

incident-responseinformation-gatheringosint+2
237 years ago
flareprox preview

flareprox

GitHubmrturvey/flareprox

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

api-security-testinginformation-gatheringpenetration-testing+5
79511 months ago
Previous12…37Next