Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
38 results
watermarks-remover preview

watermarks-remover

GitHubguillaumemeyer/watermarks-remover

Strip multi-vendor AI provenance marks: Unicode text hygiene, statistical rewrite hooks, and C2PA/metadata from PNG/JPEG/SVG/PDF/DOCX/HTML/MD

adversarial-attackai-securitydigital-forensics+5
6.9k
6 days ago
EDRSilencer preview

EDRSilencer

GitHubnetero1010/edrsilencer

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

adversarial-attackids-ips-evasionpost-exploitation+1
1.9k1 year ago
GadgetToJScript preview

GadgetToJScript

GitHubmed0x2e/gadgettojscript

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

adversarial-attackexploitationlateral-movement+5
1.1k5 years ago
RTA preview

RTA

GitHubendgameinc/rta
adversarial-attackeducationlabs-practice+2
1.1k8 years ago
Terminator preview

Terminator

GitHubzeromemoryex/terminator

Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes

adversarial-attackexploitationpost-exploitation+1
1.1k3 years ago
red-kube preview

red-kube

GitHublightspin-tech/red-kube

Red Team K8S Adversary Emulation Based on kubectl

adversarial-attackcloud-securitycommand-and-control+6
8285 years ago
DInvoke preview

DInvoke

GitHubthewover/dinvoke

Dynamically invoke arbitrary unmanaged code from managed code without PInvoke.

adversarial-attackpayload-developmentpost-exploitation+1
7933 years ago
EDRPrison preview

EDRPrison

GitHubsenzee1984/edrprison

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

adversarial-attackids-ips-evasionnetwork-security+2
4792 years ago
MAAD-AF preview

MAAD-AF

GitHubvectra-ai-research/maad-af

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

adversarial-attackcloud-securitydata-exfiltration+6
4317 months ago
RingReaper preview

RingReaper

GitHubmatheuzsecurity/ringreaper

Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.

adversarial-attackcommand-and-controldata-exfiltration+5
38411 months ago
AtomicSyscall preview

AtomicSyscall

GitHubdaem0nc0re/atomicsyscall

Tools and PoCs for Windows syscall investigation.

adversarial-attackbinary-analysiseducation+3
3658 months ago
NTDLLReflection preview

NTDLLReflection

GitHubsaadahla/ntdllreflection

Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll ,…

adversarial-attackids-ips-evasionpost-exploitation+1
3083 years ago
unhook-bof preview

unhook-bof

GitHubrsmudge/unhook-bof

Remove API hooks from a Beacon process.

adversarial-attackids-ips-evasionpost-exploitation+1
2834 years ago
obex preview

obex

GitHubdis0rder0x00/obex

Obex – Blocking unwanted DLLs in user mode

adversarial-attackids-ips-evasionpost-exploitation+1
28111 months ago
zip_smuggling preview

zip_smuggling

GitHuboctoberfest7/zip_smuggling

Python3 utility for creating zip files that smuggle additional data for later extraction

adversarial-attackdata-exfiltrationpayload-development+1
2751 year ago
CallMeWin32kDriver preview

CallMeWin32kDriver

GitHubgmh5225/callmewin32kdriver

Load your driver like win32k.sys

adversarial-attackids-ips-evasionpost-exploitation+1
2574 years ago
deephack preview

deephack

GitHubbishopfox/deephack

PoC code from DEF CON 25 presentation

adversarial-attackai-securityexploitation+1
2438 years ago
TimeException preview

TimeException

GitHubbananabr/timeexception

A tool to find folders excluded from AV real-time scanning using a time oracle

adversarial-attackinformation-gatheringpenetration-testing+2
2322 years ago
Previous123Next