Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
293 results
LazyDroid preview

LazyDroid

GitHubnccgroup/lazydroid

bash script to facilitate some aspects of an Android application assessment

android-securitydynamic-analysis-sandboxinginformation-gathering+3
160
5 years ago
dockerized-android preview

dockerized-android

GitHubcybersecsi/dockerized-android

A container-based framework to enable the integration of mobile components in security training platforms

android-securitycontainer-securityeducation+2
1894 years ago
maswe preview

maswe

GitHubowasp/maswe

OWASP enumeration of common security and privacy weaknesses in mobile applications, serving as a reference bridging the MASVS verification standard…

android-securitycurated-resourceseducation+4
458 days ago
android_application_analyzer preview

android_application_analyzer

GitHubnotsosecure/android_application_analyzer

The tool is used to analyze the content of the android application in local storage.

android-securitydynamic-analysis-sandboxingmobile-app-pentesting+2
1754 months ago
Apepe preview

Apepe

GitHub0xdsm/apepe

Extracts app settings, permissions, deeplinks, and SSL pinning bypass suggestions from Android APK files via static analysis of AndroidManifest.xml,…

android-securityinformation-gatheringmobile-app-pentesting+1
15611 months ago
CVE-2014-4322_poc preview

CVE-2014-4322_poc

GitHubretme7/cve-2014-4322_poc

Gain privileges:system -> root,as a part of https://github.com/retme7/CVE-2014-7911_poc

android-securitybinary-exploitationexploitation+4
9411 years ago
KNOXout preview

KNOXout

GitHubviralsecuritygroup/knoxout

A PoC of KNOXout (CVE-2016-6584) - bypassing Samsung KNOX protections and root Samsung Galaxy S6 Android Device.

android-securityexploitationexploit-frameworks+4
9110 years ago
ResourcePoison preview

ResourcePoison

GitHubmichalbednarski/resourcepoison

Writeup and exploit for CVE-2025-22441: Privilege escalation from installed app to SystemUI process on Android due to pass of untrusted…

android-securityexploitationmobile-security+3
1081 year ago
inside-pegasus preview

inside-pegasus

GitHubamnestytech/inside-pegasus

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

android-securitycurated-resourceseducation+6
602 months ago
cve-2020-0022 preview

cve-2020-0022

GitHubleommxj/cve-2020-0022

Proof-of-concept exploit for CVE-2020-0022, targeting Android Bluetooth stack to trigger a buffer overflow via crafted L2CAP packets, causing denial…

android-securitybinary-exploitationbluetooth-security+3
656 years ago
slides preview

slides

GitHubthomasking2014/slides

Curated collection of security conference slide decks covering Android rooting, kernel exploitation, browser memory corruption, JIT mitigations, and…

android-securitybinary-exploitationcurated-resources+4
659 months ago
CVE-2021-25374_Samsung-Account-Access preview

CVE-2021-25374_Samsung-Account-Access

GitHubreverseclabs/cve-2021-25374_samsung-account-access

This script can be used to gain access to a victim's Samsung Account if they have a specific version of Samsung Members installed on their Samsung…

android-securityexploitationmobile-security+3
322 years ago
sandy preview

sandy

GitHubdonctl/sandy

Release of the sandy framework.

android-securitycryptographyencryption-decryption-tools+5
3912 years ago
AndroidDriveSignity preview

AndroidDriveSignity

GitHubgmh5225/androiddrivesignity

AndroidDriveSignity is a Python utility designed to bypass driver signature verification in Android kernel(ARMv8.3), facilitating the loading of…

android-securitybinary-analysisexploitation+1
622 years ago
towelroot preview

towelroot

GitHubgeekben/towelroot

Research of CVE-2014-3153 and its famous exploit towelroot on x86

android-securitybinary-exploitationexploitation+4
4611 years ago
CVE-2026-43499-Poc-Analysis preview

CVE-2026-43499-Poc-Analysis

GitHubxianwan1314/cve-2026-43499-poc-analysis

Vulnerability analysis and Proof of Concept (PoC) for CVE-2026-43499 affecting Xiaomi devices. For educational and research purposes only.

android-securitybinary-exploitationexploitation+3
182 months ago
CVE-2019-11932-SupportApp preview

CVE-2019-11932-SupportApp

GitHubvalbrux/cve-2019-11932-supportapp

This native code file aims to be complementary to the published Whatsapp GIF RCE exploit by Awakened , by calculating the system() function address…

android-securitybinary-exploitationexploitation+3
386 years ago
Remote-buffer-overflow-over-wifi_stack-in-wpa_supplicant-binary-in-android-11-platform-samsung-a20e preview

Remote-buffer-overflow-over-wifi_stack-in-wpa_supplicant-binary-in-android-11-platform-samsung-a20e

GitHubspiralbl0ck/remote-buffer-overflow-over-wifi_stack-in-wpa_supplicant-binary-in-android-11-platform-samsung-a20e

Remote buffer overflow over wifi_stack in wpa_supplicant binary in android 11, platform:samsung a20e, stock options so like works out of the box

android-securitybinary-exploitationexploitation+1
482 years ago
Previous1234…17Next