Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
28 results
ssl-kill-switch2 preview

ssl-kill-switch2

GitHubnabla-c0d3/ssl-kill-switch2

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.

ios-securitymobile-app-pentestingmobile-security+3
3.3k
3 years ago
mkchain preview

mkchain

GitHubtrimstray/mkchain

Open source tool to help you build a valid SSL certificate chain.

cryptographyencryption-decryption-toolsutilities-frameworks
3821 year ago
awsScrape preview

awsScrape

GitHubjhaddix/awsscrape

A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.

information-gatheringnetwork-mappingnetwork-security+2
2362 years ago
certdepot preview

certdepot

GitHubdimastopel/certdepot

Create your self-signed SSL certificate instantly and for free

cryptographyencryption-decryption-toolsgeneral-purpose-utilities+2
373 months ago
CVE-2024-40898-SSL-Bypass-Detection preview

CVE-2024-40898-SSL-Bypass-Detection

GitHubforceea001/cve-2024-40898-ssl-bypass-detection

This Python script is a Proof-of-Concept (PoC) scanner for detecting the vulnerability CVE-2024-40898, which affects Apache HTTP Server’s SSL…

exploitationnetwork-securitypenetration-testing+2
21 year ago
CertCrunchy preview

CertCrunchy

GitHubjoda32/certcrunchy

Just a silly recon tool that uses data from SSL Certificates to find potential host names

dns-subdomain-enumerationinformation-gatheringosint+1
293 months ago
universal-flutter-ssl-pinning preview

universal-flutter-ssl-pinning

GitHubvichhka-git/universal-flutter-ssl-pinning

Automated SSL pinning bypass for any Flutter & Shorebird version — PyGhidra static analysis auto-discovers BoringSSL and generates ready-to-run Frida…

binary-analysisdynamic-analysis-sandboxingmobile-security+4
652 months ago
proxify preview

proxify

GitHubprojectdiscovery/proxify

A versatile and portable proxy for capturing, manipulating, and replaying HTTP/HTTPS traffic on the go.

packet-sniffing-analysispenetration-testingweb-proxies-interception+1
3.1k11 months ago
CVE-2019-19781 preview

CVE-2019-19781

GitHubjas502n/cve-2019-19781

Citrix ADC Remote Code Execution

exploitationpenetration-testingred-teaming+3
856 years ago
CVE-2025-36041 preview
Archived

CVE-2025-36041

GitHubbytereaper77/cve-2025-36041

Exploit (C) of the CVE-2025-36041 vulnerability in IBM MQ

exploitationnetwork-securitypenetration-testing+3
21 year ago
CVE-2024-40898 preview

CVE-2024-40898

GitHubanilpatel199n/cve-2024-40898

This Python script checks for the presence of CVE-2024-40898, a critical vulnerability in Apache HTTP Server that may allow SSL/TLS certificate…

educationexploitationpenetration-testing+2
11 year ago
reFlutter preview

reFlutter

GitHubimpact-i/reflutter

Patches Flutter engine libraries to enable runtime reverse engineering, traffic interception, and SSL pinning bypass for Android and iOS apps without…

android-securitydynamic-analysis-sandboxingios-security+3
2.7k12 days ago
O-Saft preview

O-Saft

GitHubowasp/o-saft

O-Saft - OWASP SSL advanced forensic tool

cryptographynetwork-securitypenetration-testing+1
38628 days ago
certificate-ripper preview

certificate-ripper

GitHubhakky54/certificate-ripper

🔐 A CLI tool to extract server certificates

cryptographygeneral-purpose-utilitiesinformation-gathering+1
9227 days ago
CVE-2022-0778 preview

CVE-2022-0778

GitHub0xuhaw/cve-2022-0778

Proof of concept for CVE-2022-0778 in P12 and PEM format

cryptographyexploitationvulnerability-analysis
24 years ago
CryptoLyzer preview

CryptoLyzer

GitLabcoroner/cryptolyzer

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…

configuration-auditingcryptographydns-analysis+3
2815h 48m ago
sslx preview

sslx

GitHubglincker/sslx

A fast, modern alternative to OpenSSL's CLI - inspect, grade, and manage certificates from the terminal

cryptographydevsecopsencryption-decryption-tools+3
105 days ago
ecapture preview

ecapture

GitHubgojue/ecapture

Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.

android-securitydatabase-securitydynamic-analysis-sandboxing+3
15.4k6 days ago
Previous12Next