Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
14 results
proxylogscan preview

proxylogscan

GitHubdwisiswant0/proxylogscan

A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the authentication and impersonating as…

exploitationinformation-gatheringpenetration-testing+3
165
4 years ago
CVE-2021-41773.git1 preview

CVE-2021-41773.git1

GitHubmightysai1997/cve-2021-41773.git1

Fast Python tool to test Apache path traversal vulnerability CVE-2021-41773 against a list of URLs, enabling bulk scanning for this specific exploit.

exploitationpenetration-testingvulnerability-analysis+2
3 years ago
cheetah preview

cheetah

GitHubshmilylty/cheetah

a very fast brute force webshell password tool

password-attackspenetration-testingweb-application-exploitation
6553 years ago
CVE-2026-60137 preview

CVE-2026-60137

GitHubadarshthakur14777-cyber/cve-2026-60137

wpsqli full SQLi extractor + dumper for CVE-2026-60137

database-securityexploitationinformation-gathering+5
1 month ago
whisper-pair preview

whisper-pair

GitHubap425q/whisper-pair

Scans Bluetooth Low Energy devices for Fast Pair vulnerabilities (CVE-2025-36911), testing if accessories accept unencrypted Key-Based Pairing…

bluetooth-securityexploitationhardware-iot-security+3
27 months ago
CVE-2025-36911-exploit preview

CVE-2025-36911-exploit

GitHubpenthertz/cve-2025-36911-exploit

Exploit of the CVE-2025-36911 vulnerability in Python for testing our own equipment

bluetooth-securityexploitationpenetration-testing+3
277 months ago
regreSSHion-Checker preview

regreSSHion-Checker

GitHubm0n3ef/regresshion-checker

A lightweight, fast tool to scan and detect the "regreSSHion" OpenSSH remote code execution vulnerability (CVE-2024-6387).

exploitationinformation-gatheringnetwork-security+3
31 month ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubzeronine9/cve-2021-41773

Fast python tool to test apache path traversal CVE-2021-41773 in a List of url

exploitationpenetration-testingvulnerability-scanners+2
114 years ago
brutus preview

brutus

GitHubpraetorian-inc/brutus

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative…

authenticationexploitationinformation-gathering+7
31811h 41m ago
Whisper_Bully preview

Whisper_Bully

GitHubymsniper/whisper_bully

Three-stage Bluetooth BDADDR extraction, DoS & hijack on Fast Pair devices; unpatched primitives outside CVE-2025-36911 scope (no Ubertooth needed)

bluetooth-securityexploitationinformation-gathering+4
371 month ago
wp2shell preview

wp2shell

GitHublutfifakee-project/wp2shell

wp2shell - WordPress CVE-2026-63030 Exploit & Scanner

exploitationpenetration-testingremote-access-tool+2
71 month ago
whisperpair-poc-tool preview

whisperpair-poc-tool

GitHubaalex954/whisperpair-poc-tool

A security research tool that identifies and demonstrates the CVE-2025-36911: Fast Pair Pairing Mode Bypass vulnerability

bluetooth-securityexploitationhardware-security+6
87 months ago
lua_CVE-2020-24370 preview

lua_CVE-2020-24370

GitHubrenukaselvar/lua_cve-2020-24370

Lightweight, embeddable scripting language with a fast interpreter, supporting procedural, functional, and object-oriented programming.

binary-analysisexploitationgeneral-purpose-utilities+1
1 year ago
lua_CVE-2020-24370_AfterPatch preview

lua_CVE-2020-24370_AfterPatch

GitHubrenukaselvar/lua_cve-2020-24370_afterpatch

Lightweight embeddable scripting language with a C API, supporting procedural, functional, and data-driven programming.

binary-analysisexploitationgeneral-purpose-utilities+1
1 year ago