Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
125 results
Janus-CVE-2017-13156 preview

Janus-CVE-2017-13156

GitHubxyzasian/janus-cve-2017-13156

Java-based exploit tool for CVE-2017-13156 that bypasses Android APK signature verification by appending a DEX file to an existing APK, enabling code…

android-securitybinary-exploitationexploitation+2
15
8 years ago
cve-2025-59489 preview

cve-2025-59489

GitHubtaptap/cve-2025-59489

Automated scanner that detects Unity runtime injection vulnerability CVE-2025-59489 in Android APKs by extracting Unity version and checking against…

android-securitydevsecopsmobile-security+2
1510 months ago
CVE-2022-20128 preview

CVE-2022-20128

GitHubirsl/cve-2022-20128

Android Debug Bridge (adb) was vulnerable to directory traversal attacks that could have been mounted by rogue/compromised adb daemons during an adb…

android-securityexploitationmobile-security+2
83 years ago
AudioServer-Voip-Recorder preview

AudioServer-Voip-Recorder

GitHubnighthawkk/audioserver-voip-recorder

🔬 An advanced Android research tool for real-time VoIP audio capture (Uplink/Downlink) by dynamically hooking libaudioflinger.so. Tested and built…

android-securitymobile-securityreverse-engineering
313 days ago
CVE-2020-11179-Adreno-Qualcomm-GPU preview

CVE-2020-11179-Adreno-Qualcomm-GPU

GitHubsparrow-labz/cve-2020-11179-adreno-qualcomm-gpu

Productization efforts of CVE-2020-11179 Adreno-Qualcomm-GPU bug, original poc by Ben Hawkes of P0

android-securitybinary-exploitationexploitation+4
81 year ago
NoFrak preview

NoFrak

GitHubgeorgiev-martin/nofrak

Proof Of Concept for Android. NoFrak is designed to prevent fracking attacks, as described in "Breaking and Fixing Origin-Based Access Control in…

android-securitydefensive-toolsmobile-security+2
1012 years ago
PoC-ubuntutouch-pin-privesc preview

PoC-ubuntutouch-pin-privesc

GitHubfilipkarc/poc-ubuntutouch-pin-privesc

CVE-2022-40297 - Proof of Concept: Privilege escalation in Ubuntu Touch 16.04 - by PIN Bruteforce

android-securityexploitationmobile-security+5
63 years ago
dirtycow-replacer preview

dirtycow-replacer

GitHubdroidvoider/dirtycow-replacer

CVE-2016-5195 dirtycow by timwr automated multi file patch tool

android-securitybinary-exploitationeducation+5
49 years ago
CVE-2019-2215 preview

CVE-2019-2215

GitHubmutur4/cve-2019-2215

This is a critical UAF vulnerability exploit that affected the android binder IPC system used in the wild and discovered by P0

android-securitybinary-exploitationexploitation+2
62 years ago
CVE-2020-0423 preview

CVE-2020-0423

GitHubsparrow-labz/cve-2020-0423

Researching CVE published originally by longterm.io

android-securitybinary-exploitationeducation+2
51 year ago
conscryptchecker preview

conscryptchecker

GitHubroeeh/conscryptchecker

This app verifies if your device is still vulnerable to CVE-2015-3825 / CVE-2015-3837, aka "One Class to Rule Them All", by checking if it contains…

android-securitymobile-securityvulnerability-analysis+1
410 years ago
UnrestrictedUserCreator preview

UnrestrictedUserCreator

GitHubrifting/unrestrictedusercreator

Simple script to add a new, unrestricted user on devices with Family Link by abusing CVE-2025-32324 (pre September patch)

android-securityexploitationmobile-security+2
410 months ago
CVE-2021-43530-UXSS-On-QRcode-Reader- preview

CVE-2021-43530-UXSS-On-QRcode-Reader-

GitHubhfh86/cve-2021-43530-uxss-on-qrcode-reader-

Proof-of-concept for CVE-2021-43530, a Universal XSS vulnerability in Firefox for Android caused by improper URL sanitization when processing QR code…

android-securityexploitationmobile-security+2
23 months ago
abdal-lockbox preview

abdal-lockbox

GitLabprof.shafiei/abdal-lockbox

Local-first encrypted password vault for Android with Master Password access, Recovery Key support, Autofill integration, and portable encrypted…

android-securityauthenticationcryptography+5
1 month ago
CVE-2017-13208-Scanner preview

CVE-2017-13208-Scanner

GitHubidanshechter/cve-2017-13208-scanner

Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

android-securitybinary-analysisexploitation+3
15 years ago
shellshocker-android preview

shellshocker-android

GitHubsunnyjiang/shellshocker-android

This is an Android Application that helps you detect if your machine that run bash is vulnerable by CVE-2014-6271

android-securitymobile-securitypenetration-testing+2
111 years ago
Bluetooth-Crash-CVE-2017-0785 preview

Bluetooth-Crash-CVE-2017-0785

GitHubravss/bluetooth-crash-cve-2017-0785

Exploit script for CVE-2017-0785 that crashes the Bluetooth module on Android 4.0+ devices by sending crafted SDP search requests, causing…

android-securitybluetooth-securityexploitation+3
18 years ago
CVE-2013-4710-WebView-RCE-Vulnerability preview

CVE-2013-4710-WebView-RCE-Vulnerability

GitHubsnip3r69/cve-2013-4710-webview-rce-vulnerability

Android 3.0 through 4.1.x on Disney Mobile, eAccess, KDDI, NTT DOCOMO, SoftBank, and other devices does not properly implement the WebView class,…

android-securityexploitationmobile-security+3
14 years ago
Previous1234567Next