Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
115 results
quark-engine preview

quark-engine

GitHubev-flow/quark-engine

Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

android-securitydynamic-analysis-sandboxingmalware-analysis+2
1.7k
18h 25m ago
jadx preview

jadx

GitHubskylot/jadx

Command-line and GUI tool for decompiling Android Dex and APK files into readable Java source code, with resource decoding, deobfuscation, and Smali…

android-securitybinary-analysisdebuggers+2
50.1k1 day ago
CVE_2019_2215 preview

CVE_2019_2215

GitHub0xbinder/cve_2019_2215

Proof-of-concept LPE exploit for Android Binder UAF that uses iovec spraying and addr_limit overwrite to achieve arbitrary kernel read/write.

android-securitybinary-exploitationeducation+5
11 day ago
hermes-decomp preview

hermes-decomp

GitHubsymbioticsec/hermes-decomp

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

ai-assisted-reversingandroid-securitybinary-analysis+8
1533 days ago
IonStack-S22-cve-2026-43499 preview

IonStack-S22-cve-2026-43499

GitHubcamsshaft/ionstack-s22-cve-2026-43499

Android kernel exploit for Samsung Galaxy S22 that gains kernel-domain root via CVE-2026-43499, with SELinux permissive, device-specific kallsyms,…

android-securitybinary-exploitationexploitation+2
5 days ago
CVE-2024-56426 preview

CVE-2024-56426

GitHubxcracker000/cve-2024-56426

Exploit kit for Exynos 9830 bootROM that delivers signed-boot bypass, custom key injection, and memory-dump payloads for Samsung SM-G985F devices.

android-securitybinary-exploitationembedded-systems-security+7
15 days ago
android_kernel_xiaomi_sunny preview

android_kernel_xiaomi_sunny

GitHubneternels/android_kernel_xiaomi_sunny

CAFest nethunter kernel based on LA.UM.9.1.r1-11900-SMXXX0.0 with latest upstream-f2fs-stable-linux-4.14.y merged, bb and perf focused. | Force push…

android-securitymobile-securitypenetration-testing+1
347 days ago
ghostlock-cve-2026-43499-4.19-k40 preview

ghostlock-cve-2026-43499-4.19-k40

GitHubyijiacloud/ghostlock-cve-2026-43499-4.19-k40

CVE-2026-43499 (GhostLock) rtmutex remove_waiter() UAF local-root PoC adapted for Qualcomm Android 4.19 kernels (Redmi K40 / Snapdragon 870 class),…

android-securitybinary-exploitationexploitation+4
29 days ago
r2frida preview

r2frida

GitHubnowsecure/r2frida

Radare2 and Frida better together.

android-securitybinary-analysisdebuggers+6
1.4k9 days ago
droidlysis preview

droidlysis

GitHubcryptax/droidlysis

Automated pre-analysis tool for Android apps that disassembles samples, extracts properties via configurable pattern matching, and organizes output…

android-securityinformation-gatheringmalware-analysis+3
31110 days ago
mobsfscan preview

mobsfscan

GitHubmobsf/mobsfscan

mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and…

android-securitycode-analysisios-security+3
77911 days ago
finalrun-agent preview

finalrun-agent

GitHubdroid-ash/finalrun-agent

AI-driven CLI for testing Android and iOS apps using natural language. Generates, runs, and fixes end-to-end tests on emulators/simulators with…

ai-securityandroid-securityeducation+2
30120 days ago
ghostlock-emerald preview

ghostlock-emerald

GitHubdatfooldive/ghostlock-emerald

GhostLock (CVE-2026-43499) kernel exploit for Poco M6 Pro (emerald) with locked bootloader

android-securitybinary-exploitationexploitation+3
1220 days ago
huawei-p10-cve-2017-8890-unlock preview

huawei-p10-cve-2017-8890-unlock

GitHubsweatyrocket/huawei-p10-cve-2017-8890-unlock

Huawei P10 VTR-L29C432B151 CVE-2017-8890 exploit research and bootloader-unlock journey

android-securitybinary-exploitationeducation+4
21 days ago
Podroid preview

Podroid

GitHubextv/podroid

A rootless Android app that boots Alpine Linux: run containers (Podman/Docker/LXC) and GUI desktop apps.

android-securitycontainer-securityhardware-iot-security+3
2.1k23 days ago
CVE-2026-43499-aristotle-apk preview

CVE-2026-43499-aristotle-apk

GitHubsoralis0912/cve-2026-43499-aristotle-apk

Android kernel exploit for CVE-2026-43499 (Futex-PI use-after-free) that gains temporary root on Xiaomi XIG04 to enable ADB. Includes automated…

android-securitybinary-exploitationexploitation+5
527 days ago
morf preview

morf

GitHubamrudesh1/morf

Mobile Reconnaissance Framework is a powerful, lightweight and platform-independent offensive mobile security tool designed to help hackers and…

android-securityios-securitymobile-security+4
8227 days ago
mobileAudit preview

mobileAudit

GitHubmpast/mobileaudit

Django application that performs SAST and Malware Analysis for Android APKs

android-securitycode-analysismalware-analysis+4
22627 days ago
Previous1234567Next