Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
115 results
android-reverse-engineering-skill preview

android-reverse-engineering-skill

GitHubsimoneavogadro/android-reverse-engineering-skill

Decompiles Android APK/XAPK/JAR/AAR files and extracts HTTP APIs, authentication patterns, and call flows using jadx, with R8-resistant Kotlin name…

android-securityapi-security-testingbinary-analysis+8
6.9k
2 months ago
simplify preview

simplify

GitHubcalebfenton/simplify

Android virtual machine and deobfuscator

android-securitybinary-analysisdynamic-analysis-sandboxing+2
4.7k5 years ago
r2frida preview

r2frida

GitHubnowsecure/r2frida

Radare2 and Frida better together.

android-securitybinary-analysisdebuggers+6
1.4k9 days ago
masvs preview

masvs

GitHubowasp/masvs

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

android-securitycurated-resourceseducation+3
2.4k10 months ago
apk.sh preview

apk.sh

GitHubax/apk.sh

Makes reverse engineering Android apps easier, automating repetitive tasks like pulling, decoding, rebuilding and patching an APK.

android-securitybinary-analysisdynamic-analysis-sandboxing+3
3.8k6 months ago
Brida preview

Brida

GitHubfedericodotta/brida

The new bridge between Burp Suite and Frida!

android-securitybinary-analysisdynamic-analysis-sandboxing+5
1.9k9 months ago
kwetza preview

kwetza

GitHubsensepost/kwetza

Python script to inject existing Android applications with a Meterpreter payload.

android-securityexploitationmobile-app-pentesting+3
6458 years ago
Evil-Droid preview

Evil-Droid

GitHubm4sc3r4n0/evil-droid
android-securityeducationexploit-frameworks+4
1.1k8 years ago
StaCoAn preview

StaCoAn

GitHubvincentcox/stacoan

StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.

android-securitymobile-securitystatic-code-analysis+1
8685 years ago
Fermion preview

Fermion

GitHubfuzzysecurity/fermion

Fermion, an electron wrapper for Frida & Monaco.

android-securitybinary-analysisdebuggers+4
7001 year ago
finalrun-agent preview

finalrun-agent

GitHubdroid-ash/finalrun-agent

AI-driven CLI for testing Android and iOS apps using natural language. Generates, runs, and fixes end-to-end tests on emulators/simulators with…

ai-securityandroid-securityeducation+2
30120 days ago
vendor-android-cves preview

vendor-android-cves

GitHubflankerhqd/vendor-android-cves

Collections of my POCs for android vendor CVEs

android-securitybinary-exploitationexploitation+3
2892 years ago
cve-2015-1538-1 preview

cve-2015-1538-1

GitHubjduck/cve-2015-1538-1

An exploit for CVE-2015-1538-1 - Google Stagefright ‘stsc’ MP4 Atom Integer Overflow Remote Code Execution

android-securitybinary-exploitationexploitation+3
20510 years ago
MagiskEoP preview

MagiskEoP

GitHubcanyie/magiskeop

Exploit and writeup for installed app to root privilege escalation through CVE-2024-48336 (Magisk Bug #8279), Privileges Escalation / Arbitrary Code…

android-securitybinary-exploitationcode-analysis+5
1991 year ago
whatsapp-mitd-mitm preview

whatsapp-mitd-mitm

GitHubcensus/whatsapp-mitd-mitm

PoC and tools for exploiting CVE-2020-6516 (Chrome) and CVE-2021-24027 (WhatsApp)

android-securityexploitationmobile-security+3
1495 years ago
CVE-2024-0044 preview

CVE-2024-0044

GitHubcanyie/cve-2024-0044

RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation…

android-securitybinary-exploitationeducation+5
1801 year ago
android-locdump preview

android-locdump

GitHubpacketlss/android-locdump

android location service cache dumper

android-securitydata-recoverydigital-forensics+4
17913 years ago
Nanobrok preview

Nanobrok

GitHubp0cl4bs/nanobrok

Web Service write in Python for control and protect your android device remotely.

android-securitydefensive-toolsinformation-gathering+1
1923 years ago
Previous1234567Next