Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/atomiczsec/adrenaline
Defensive ToolsPrivilege EscalationReconnaissancePersistence MechanismsLateral MovementInformation GatheringPost-ExploitationPenetration TestingCommand and ControlRed Teaming
GitHub
31236211 month agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
atomiczsec/adrenaline

Adrenaline

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

View RepositoryWebsite
Share

Adrenaline BOF Kit

A C2-agnostic collection of Beacon Object Files (BOFs) for red team and offensive security operations. BOFs are organized by attack chain phase and designed to be small, modular, and automation-friendly for use in reconnaissance, enumeration, and post-exploitation workflows.

Table of Contents (MITRE taxonomy)

Collection
Community
Credential Access
Discovery
Execution

Collection

BOFUse
ai_surfaceMaps AI tooling on Windows developer endpoints and highlights their configuration artifacts that may expose server definitions, commands, arguments, and embedded credentials.
clipboard_grabRetrieves text data from the Windows clipboard using Win32 APIs and returns the contents to the callback. Original Code Credits: @rvrsh3ll
ide_extension_surfaceEnumerates VS Code, Cursor, Windsurf, Zed, Insiders, OSS, and server/remote extension manifests from per-user profile roots and summarizes extension identity, activation events, and capability signals.
powershell_historyCollects PowerShell history artifacts from default PSReadLine and transcript locations. Useful for locating credentials or infrastructure.
window_handles_enumEnumerates window handles across all system processes and uses a legitimate window handle to access the clipboard.

Community

BOFUse
notepad_grabExtracts and returns plain text directly from open Notepad windows by reading memory, allowing operators to recover unsaved or in-memory notes. Useful for data collection from live endpoints. Original Source: NoteThief
schtask_enumEnumerates scheduled tasks on Windows systems using the Task Scheduler COM interface. Provides a summary of tasks including their state, schedule, and configuration without overwhelming the beacon with XML data. Original Source: TrustedSec CS-Situational-Awareness-BOF
net_useAdd, list, or remove mapped drives via MPR (Modernized to manage memory properly, avoiding crashing) Original Source: TrustedSec CS-Situational-Awareness-BOF
session_viewEnumerates Windows Terminal Services sessions, displaying session IDs, usernames, domains, connection states, and session LUIDs. Original Source: SessionView by lsecqt

Credential Access

BOFUse
certstore_lootEnumerates local certificate stores to find certificates with exportable private keys and provides you with the path to export them.
cicd_credential_huntFinds common CI/CD, cloud, and developer credential artifacts in the current Windows user profile (GitHub/GitLab CLI, AWS/GCP, kube/Terraform, package managers, Git, SSH). Reports path and size by default; optional -verbose for bounded content previews. .gitconfig and .ssh/config are classified as configuration, not credential artifacts.
cloud_metadata_checkProbes cloud-local metadata services for AWS, Azure, and GCP from the current process, reporting provider identity, instance context, and bounded credential snippets when reachable.
process_tokens_listEnumerates accessible tokens from running processes, showing user context, token type (primary/impersonation), and impersonation level. Supports optional filtering by PID or process name. SeDebugPrivilege is disabled by default for OPSEC.

Discovery

Download Tool