Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Post-Exploitation

Tools for maintaining access, exploring, and expanding control within compromised systems and networks.

NewestRelevanceMost popularRecently updated
5342 results
cve-2026-43499-honor preview

cve-2026-43499-honor

GitHubknowlily/cve-2026-43499-honor

Kernel privilege escalation research archive for CVE-2026-43499 (GhostLock) on Honor Magic6 Pro, documenting exploitation analysis, reverse…

android-securityprivilege-escalationvulnerability-analysis+4
1
5 days ago
ELFLoader preview

ELFLoader

GitHubtrustedsec/elfloader

Loads and runs ELF objects entirely in memory across x86_64/x86 Linux systems, resolving libc symbols at runtime for stealthy post-exploitation…

post-exploitationpenetration-testingutilities-frameworks+2
3434 years ago
RedLine-Stealer-C2-Defender-Bypass-Payload-Analysis preview

RedLine-Stealer-C2-Defender-Bypass-Payload-Analysis

GitHubkaandemir993/redline-stealer-c2-defender-bypass-payload-analysis

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

memory-forensicspersistence-mechanismsreverse-engineering+4
17 days ago
cve-2026-43499-m3q-azf1 preview

cve-2026-43499-m3q-azf1

GitHubbugel/cve-2026-43499-m3q-azf1

This package is not a complete root. It flips SELinux to Permissive and holds reclaim long enough for follow-on work. Host `uid=0` is not achieved…

android-securityprivilege-escalationreconnaissance+4
27 days ago
SCCM-CVE-2026-47301-Remote-Code-Execution-Exploit preview

SCCM-CVE-2026-47301-Remote-Code-Execution-Exploit

GitHubomribaso/sccm-cve-2026-47301-remote-code-execution-exploit

Proof-of-concept exploit chain (CVE-2026-47301) for Microsoft Configuration Manager (SCCM), combining a broken access, CAB arbitrary-write path…

privilege-escalationreconnaissanceexploitation+3
127 days ago
Kerberos-CVE-2026-27912 preview

Kerberos-CVE-2026-27912

GitHuboxstussz-eng/kerberos-cve-2026-27912

PoC for CVE-2026-27912 - Windows Kerberos Elevation of Privilege (ResetNightmare). Unauthorized password reset via Kerberos flaw. For security…

authentication-authorizationprivilege-escalationpassword-attacks+2
6 days ago
bx2-writeups preview

bx2-writeups

GitHubnanashibx2/bx2-writeups

Cybersecurity writeups, walkthroughs, and technical notes by Nanashi Bx2.

privilege-escalationctfpenetration-testing+4
14 days ago
CVE-2026-54433 preview

CVE-2026-54433

GitHubaramosf/cve-2026-54433

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

vulnerability-analysisexploitationweb-application-exploitation+6
6 days ago
GhostLock preview

GhostLock

GitHubwzhdgithub/ghostlock

CVE-2026-43499 futex PI stack UAF ???????? - Android GKI 6.1~6.12 ??????? pselect() + futex PI ????????????,??? root ??? SELinux??? OPPO Find…

android-securityprivilege-escalationvulnerability-analysis+3
7 days ago
keepass-exfil-forensics preview

keepass-exfil-forensics

GitHubpugazhendii22/keepass-exfil-forensics

Network forensics writeup + tooling for a TryHackMe DFIR challenge: reverses a hex→Base64→XOR exfiltration chain from PCAP traffic, then recovers a…

packet-sniffing-analysispassword-crackingmemory-forensics+6
7 days ago
VulnHub-DC1-Writeup preview

VulnHub-DC1-Writeup

GitHubprapul1/vulnhub-dc1-writeup

VulnHub DC-1 boot-to-root — exploiting CVE-2018-7600 (Drupalgeddon2) for RCE, extracting DB credentials from settings.php, forging admin password…

privilege-escalationreconnaissanceexploit-frameworks+9
11 month ago
FTP-vsFTPD-CVE-2011-2523-VAPT-Report preview

FTP-vsFTPD-CVE-2011-2523-VAPT-Report

GitHubsonalisarkar-2003/ftp-vsftpd-cve-2011-2523-vapt-report

VAPT report for vsFTPd 2.3.4 backdoor CVE-2011-2523, covering Nmap vulnerability scanning, Metasploit exploitation, post-exploitation root access,…

exploit-frameworksvulnerability-analysisexploitation+5
7 days ago
cve-2025-21479-iqoo11pro preview

cve-2025-21479-iqoo11pro

GitHubtype010/cve-2025-21479-iqoo11pro

CVE-2025-21479 (Qualcomm Adreno GPU) reproduction notes for vivo iQOO 11 Pro (PD2254) - authorized research

android-securityprivilege-escalationvulnerability-analysis+5
7 days ago
KSuRoot preview

KSuRoot

GitHubhmascs/ksuroot

One-click Android kernel rooting tool exploiting CVE-2026-43499 to install KernelSU, with official, bundled, and custom .so payload sources.

android-securityprivilege-escalationexploitation+2
77 days ago
CVE-2026-72550-poc preview

CVE-2026-72550-poc

GitHubabdugafforov-bobur/cve-2026-72550-poc

CVE-2026-72550 — Friendica Unauthenticated Stacked-Query SQL Injection PoC (CVSS 9.8 Critical)

vulnerability-analysisexploitationweb-application-exploitation+4
7 days ago
chyrp-lite-rce-poc preview

chyrp-lite-rce-poc

GitHubiltosec/chyrp-lite-rce-poc

CVE-2026-53767 + CVE-2026-53768 - Authenticated RCE in Chyrp Lite ≤ 2026.01 via uploads_path blocklist bypass and missing extension validation

vulnerability-analysisexploitationweb-application-exploitation+4
2 months ago
cve-2026-41940-PoC preview

cve-2026-41940-PoC

GitHubpemarine/cve-2026-41940-poc

Exploit for CVE-2026-41940, an unauthenticated authentication bypass in cPanel/WHM that grants root-level WHM access via CRLF session injection, with…

authentication-authorizationprivilege-escalationexploitation+3
2707 days ago
Copy-Fail-CVE-2026-31431-dirty-frag-CVE-2026-43284 preview

Copy-Fail-CVE-2026-31431-dirty-frag-CVE-2026-43284

GitHub6abc/copy-fail-cve-2026-31431-dirty-frag-cve-2026-43284
privilege-escalationvulnerability-analysisexploitation+1
7 days ago
Previous1…345…297Next