Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
115 results
Ghost preview

Ghost

GitHubentysec/ghost

Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device.

android-securityexploitationpenetration-testing+2
3.4k
9 months ago
BlackDex preview

BlackDex

GitHubcodinggay/blackdex

Android APK unpacker that dumps DEX files from running or installed apps on Android 5.0–12 without root, Xposed, or Frida, supporting deep unpacking…

android-securitybinary-analysismobile-app-pentesting+2
6.4k4 years ago
backdoor-apk preview

backdoor-apk

GitHubdana-at-cp/backdoor-apk

backdoor-apk is a shell script that simplifies the process of adding a backdoor to any Android APK file. Users of this shell script should have…

android-securityeducationexploit-frameworks+2
2.4k7 years ago
RMS-Runtime-Mobile-Security preview

RMS-Runtime-Mobile-Security

GitHubm0bilesecurity/rms-runtime-mobile-security

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

android-securitydebuggersdynamic-analysis-sandboxing+5
3.1k1 month ago
apk-mitm preview

apk-mitm

GitHubniklashigi/apk-mitm

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

android-securitymobile-securitypenetration-testing+2
5.1k2 years ago
quark-engine preview

quark-engine

GitHubev-flow/quark-engine

Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

android-securitydynamic-analysis-sandboxingmalware-analysis+2
1.7k14h 3m ago
Podroid preview

Podroid

GitHubextv/podroid

A rootless Android app that boots Alpine Linux: run containers (Podman/Docker/LXC) and GUI desktop apps.

android-securitycontainer-securityhardware-iot-security+3
2.1k22 days ago
appshark preview

appshark

GitHubbytedance/appshark

Static taint analysis platform for Android apps that detects vulnerabilities and compliance issues using customizable rule-based scanning and…

android-securitycode-analysisstatic-analysis+1
1.8k5 months ago
MARA_Framework preview

MARA_Framework

GitHubxtiankisutsa/mara_framework

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

android-securitybinary-analysiscode-analysis+6
6707 years ago
droidbox preview

droidbox

GitHubpjlantz/droidbox

Dynamic analysis sandbox for Android apps that monitors network traffic, file operations, cryptographic API usage, permission circumvention, and…

android-securitydynamic-analysis-sandboxinginformation-gathering+2
8056 years ago
wpair-app preview

wpair-app

GitHubzalexdev/wpair-app

WPair is a defensive security research tool that demonstrates the CVE-2025-36911 (eg WhisperPair) vulnerability in Google's Fast Pair protocol. This…

android-securitybluetooth-securityeducation+6
8237 months ago
ExtractKeyMaster preview

ExtractKeyMaster

GitHublaginimaineb/extractkeymaster

Exploit that extracts Qualcomm's KeyMaster keys using CVE-2015-6639 and CVE-2016-2431

android-securitybinary-exploitationembedded-systems-security+4
36410 years ago
mobsfscan preview

mobsfscan

GitHubmobsf/mobsfscan

mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and…

android-securitycode-analysisios-security+3
77910 days ago
AdbNet preview

AdbNet

GitHub0x1ca3/adbnet

A tool that allows you to search for vulnerable android devices across the world and exploit them.

android-securityexploitationinformation-gathering+4
4354 years ago
mobileAudit preview

mobileAudit

GitHubmpast/mobileaudit

Django application that performs SAST and Malware Analysis for Android APKs

android-securitycode-analysismalware-analysis+4
22627 days ago
droidlysis preview

droidlysis

GitHubcryptax/droidlysis

Automated pre-analysis tool for Android apps that disassembles samples, extracts properties via configurable pattern matching, and organizes output…

android-securityinformation-gatheringmalware-analysis+3
31110 days ago
androidqf preview

androidqf

GitHubbotherder/androidqf

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

android-securitydigital-forensicsforensics+2
3046 months ago
hermes-decomp preview

hermes-decomp

GitHubsymbioticsec/hermes-decomp

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

ai-assisted-reversingandroid-securitybinary-analysis+8
1533 days ago
Previous1234567Next