Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
18 results
kwetza preview

kwetza

GitHubsensepost/kwetza

Python script to inject existing Android applications with a Meterpreter payload.

android-securityexploitationmobile-app-pentesting+3
6458 years ago
build.prop preview

build.prop

GitHubpixel-props/build.prop

Bash script to build your own system.prop

android-securityfirmware-analysismobile-security+1
30118 days ago
LazyDroid preview

LazyDroid

GitHubnccgroup/lazydroid

bash script to facilitate some aspects of an Android application assessment

android-securitydynamic-analysis-sandboxinginformation-gathering+3
1605 years ago
frida-android-libbinder preview

frida-android-libbinder

GitHubhamz-a/frida-android-libbinder

PoC Frida script to view Android libbinder traffic

android-securitybinary-analysisdynamic-analysis-sandboxing+3
1432 years ago
scaredycat preview

scaredycat

GitHubeudemonics/scaredycat

Python script to generate a malicious MP4 file and start a CherryPy web server hosting a simple HTML page with the embedded file. Exploits another…

android-securityexploitationmobile-security+4
1710 years ago
UnrestrictedUserCreator preview

UnrestrictedUserCreator

GitHubrifting/unrestrictedusercreator

Simple script to add a new, unrestricted user on devices with Family Link by abusing CVE-2025-32324 (pre September patch)

android-securityexploitationmobile-security+2
411 months ago
CVE-2024-25466 preview

CVE-2024-25466

GitHubfixedoctocat/cve-2024-25466

Description for CVE-2024-25466

android-securityexploitationmobile-security+1
2 years ago
CVE-2017-13208-Scanner preview

CVE-2017-13208-Scanner

GitHubidanshechter/cve-2017-13208-scanner

Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

android-securitybinary-analysisexploitation+3
15 years ago
CVE-2021-25374_Samsung-Account-Access preview

CVE-2021-25374_Samsung-Account-Access

GitHubreverseclabs/cve-2021-25374_samsung-account-access

This script can be used to gain access to a victim's Samsung Account if they have a specific version of Samsung Members installed on their Samsung…

android-securityexploitationmobile-security+3
322 years ago
TBomb preview
Archived

TBomb

GitHubthespeedx/tbomb

This is a SMS And Call Bomber For Linux And Termux

android-securitydata-exfiltrationimpersonation-tools+5
5.6k1 year ago
POC-ES-File-Explorer-CVE-2019-6447 preview

POC-ES-File-Explorer-CVE-2019-6447

GitHubjulio-cfa/poc-es-file-explorer-cve-2019-6447

Bash PoC script exploiting CVE-2019-6447 in ES File Explorer to list files, photos, videos, apps, and download files from vulnerable Android devices.

android-securitydata-exfiltrationexploitation+3
5 years ago
backdoor-apk preview

backdoor-apk

GitHubdana-at-cp/backdoor-apk

backdoor-apk is a shell script that simplifies the process of adding a backdoor to any Android APK file. Users of this shell script should have…

android-securityeducationexploit-frameworks+2
2.4k8 years ago
FluxER preview

FluxER

GitHub0n1con3/fluxer

FluxER - The bash script which installs and runs the Fluxion tool inside Termux. The wireless security auditing tool used to perform WPA/WPA2…

android-securityeducationpenetration-testing+3
6874 months ago
cve-2015-1538-1 preview

cve-2015-1538-1

GitHubjduck/cve-2015-1538-1

Python exploit for CVE-2015-1538-1 targeting Stagefright's 'stsc' MP4 atom integer overflow to achieve remote code execution and a reverse shell on…

android-securitybinary-exploitationexploitation+3
20511 years ago
AndroidDriveSignity preview

AndroidDriveSignity

GitHubgmh5225/androiddrivesignity

AndroidDriveSignity is a Python utility designed to bypass driver signature verification in Android kernel(ARMv8.3), facilitating the loading of…

android-securitybinary-analysisexploitation+1
622 years ago
CVE-2022-26629 preview

CVE-2022-26629

GitHubscopion/cve-2022-26629

PoC exploit for CVE-2022-26629: bypasses the lock screen on SoroushPlus+ Messenger 1.0.30 via improper access control. Includes an auto-exploit…

android-securityexploitationmobile-security+2
4 years ago
ADB-Toolkit preview

ADB-Toolkit

GitHubashwin990/adb-toolkit

ADB-Toolkit V2 for easy ADB tricks with many perks in all one. ENJOY!

android-securityexploit-frameworksinformation-gathering+3
2.0k3 years ago
ADEL preview

ADEL

GitHubmspreitz/adel

Android Data Extractor Lite

android-securitydatabase-securitydata-recovery+4
13011 years ago