Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Post-Exploitation | Kitploit
Categories

Post-Exploitation

Tools for maintaining access, exploring, and expanding control within compromised systems and networks.

NewestRelevanceMost popularRecently updated
5342 results
slot2 preview

slot2

GitHubcenobyte-vincit/slot2

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

persistence-mechanismsdata-exfiltrationpost-exploitation+5
3 days ago
memdumper preview

memdumper

GitHubcenobyte-vincit/memdumper

Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

memory-forensicsids-ips-evasioninformation-gathering+4
13 days ago
dyen preview

dyen

GitHubcenobyte-vincit/dyen

In-memory Mach-O dylib loader for stock macOS Python; decrypts, maps, and runs payloads without dlopen or writing to disk, with optional encrypted…

payload-generationids-ips-evasionpost-exploitation+4
3 days ago
CVE-2021-1675-PrintNightmare-Analysis preview

CVE-2021-1675-PrintNightmare-Analysis

GitHubvelessecurity/cve-2021-1675-printnightmare-analysis

Technical write-up and analysis of PrintNightmare (CVE-2021-1675 / CVE-2021-34527), covering RCE/LPE exploitation, detection via Windows event logs,…

privilege-escalationreconnaissancevulnerability-analysis+6
2 days ago
GhostLock-5.10 preview

GhostLock-5.10

GitHubr0rt1z2/ghostlock-5.10

Kernel root exploit (CVE-2026-43499) for some 5.X devices (mostly Amazon)

android-securityprivilege-escalationexploitation+3
92 days ago
ghostlock-cve-2026-43499 preview

ghostlock-cve-2026-43499

GitHubgitchw/ghostlock-cve-2026-43499

CVE-2026-43499 (GhostLock) — Linux kernel futex PI rt_mutex UAF ARM32 privilege escalation research targeting Huawei Watch 4 Pro (kernel 5.4.210)

embedded-systems-securityprivilege-escalationiot-security+5
2 days ago
CVE-2026-20217 preview

CVE-2026-20217

GitHubsecurifera/cve-2026-20217

Reproduces ZendTo unauthenticated ClamAV RCE and root privilege escalation in an authorized lab, with pinned Docker target, fail-closed verification,…

privilege-escalationvulnerability-analysisexploitation+5
3 days ago
hp-slate7-root-kit preview

hp-slate7-root-kit

GitHubvalentineus/hp-slate7-root-kit

HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

android-securityprivilege-escalationpersistence-mechanisms+6
12 days ago
CVE-2026-66804 preview

CVE-2026-66804

GitHubcypherhippie/cve-2026-66804

Local Windows privilege escalation PoC for CVE-2026-66804: plants a COM DLL in a missing path to abuse Camera FrameServer and impersonate SYSTEM.

privilege-escalationexploitationpost-exploitation+1
2 days ago
CVE-2024-23897-Jenkins-Arbitrary-Read-File-Vulnerability preview

CVE-2024-23897-Jenkins-Arbitrary-Read-File-Vulnerability

GitHubgraysignal/cve-2024-23897-jenkins-arbitrary-read-file-vulnerability

Unauthenticated Jenkins CLI exploit scanner for CVE-2024-23897 that detects vulnerable versions and reads arbitrary files from the controller through…

vulnerability-analysisexploitationweb-application-exploitation+4
32 years ago
CVE-2026-65400 preview

CVE-2026-65400

GitHubhorkimhab/cve-2026-65400

Proof-of-concept exploit for CVE-2026-65400 enabling authenticated file read/write, reverse shells, and persistence on macOS via Apple ScreenSharing.

privilege-escalationpersistence-mechanismsexploitation+4
13 days ago
Juicy-Potato-x86 preview

Juicy-Potato-x86

GitHubivanitlearning/juicy-potato-x86

Windows privilege escalation exploit that abuses service token impersonation to execute arbitrary commands with SYSTEM privileges, designed for x86…

privilege-escalationexploitationpost-exploitation+2
1356 years ago
DutchOven preview

DutchOven

GitHubloosehose/dutchoven

Application-scoped Windows network brownouts in native C and BOF form

post-exploitationnetwork-securityred-teaming+2
13 days ago
vivo_iqoo_neo_9_root_research_on_CVE-2025-21479 preview

vivo_iqoo_neo_9_root_research_on_CVE-2025-21479

GitHublinux-tools/vivo_iqoo_neo_9_root_research_on_cve-2025-21479

iQOO Neo9 (PD2338C) 免解锁 Caps-Root 工具** — 基于 CVE-2025-21479 (Adreno GPU SDS) 的任意物理写提权方案

android-securityprivilege-escalationexploitation+4
3 days ago
CVE-2026-74251 preview

CVE-2026-74251

GitHubtoanln-cov/cve-2026-74251

Unauthenticated SQL Injection via Attribute Filter in Phoca Cart

vulnerability-analysisexploitationweb-application-exploitation+3
3 days ago
CVE-2026-26980 preview

CVE-2026-26980

GitHubvognik/cve-2026-26980

Unauthenticated SQL injection exploit for Ghost CMS Content API (CVE-2026-26980); dumps database tables from SQLite/MySQL with active/passive checks…

vulnerability-analysisexploitationweb-application-exploitation+4
104 days ago
cve-2018-8611 preview

cve-2018-8611

GitHubahm3dgg/cve-2018-8611

Local Windows kernel privilege escalation exploit for CVE-2018-8611 (KTM UAF) using write-what-where and increment primitives.

privilege-escalationexploitationpost-exploitation+1
14 days ago
SkeletonKey preview

SkeletonKey

GitHubdefineid/skeletonkey

CVE-2026-6765 · Test only FormAutofill handlers exposed in Firefox

vulnerability-analysisexploitationdata-exfiltration+3
3 days ago
Previous123…297Next