Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
33 results
Aegis preview

Aegis

GitHubbeemdevelopment/aegis

A free, secure and open source app for Android to manage your 2-step verification tokens.

android-securityauthenticationauthentication-authorization+5
13.1k
15 days ago
MemorizingTrustManager preview

MemorizingTrustManager

GitHubge0rg/memorizingtrustmanager

A "plugin" for Android Java to allow asking the user about SSL certificates

android-securityauthenticationcryptography+3
1813 years ago
Damn-Vulnerable-Android-Components preview

Damn-Vulnerable-Android-Components

GitHubzinja-coder/damn-vulnerable-android-components

An intentionally vulnerable Android Application to demonstrate various vulnerabilities that airses in Android Components.

android-securityauthenticationctf+7
471 year ago
CVE-2026-0073-Android-adbd-authentication-bypass-POC preview

CVE-2026-0073-Android-adbd-authentication-bypass-POC

GitHubsectestannaquinn/cve-2026-0073-android-adbd-authentication-bypass-poc

Proof-of-concept exploit for CVE-2026-0073, an Android ADB authentication bypass allowing network attackers to connect to devices with ADB over TCP…

android-securityauthenticationexploitation+3
824 months ago
CVE-2026-0073-Android-adbd-authentication-bypass preview

CVE-2026-0073-Android-adbd-authentication-bypass

GitHubaye468448-eng/cve-2026-0073-android-adbd-authentication-bypass

PoC for CVE-2026-0073, an Android ADB authentication bypass enabling network attackers to connect to previously paired devices over wireless…

android-securityauthenticationexploitation+3
1 month ago
CVE-2026-7671 preview

CVE-2026-7671

GitHubcaginkyr/cve-2026-7671

Proof-of-concept for CVE-2026-7671, demonstrating OTP brute-force on Tornet Scooter Android app due to missing rate limiting on /TwoFactor endpoint.

android-securityauthenticationexploitation+2
24 months ago
CVE-2024-54916 preview

CVE-2024-54916

GitHubsahalll/cve-2024-54916

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

android-securityauthenticationbinary-analysis+4
1 year ago
themis preview

themis

GitHubcossacklabs/themis

Easy to use cryptographic framework for data protection: secure messaging with forward secrecy and secure data storage. Has unified APIs across 14…

authenticationcryptographydatabase-security+4
2.0k2 years ago
tailscale preview

tailscale

GitHubtailscale/tailscale

The easiest, most secure way to use WireGuard and 2FA.

authenticationencryption-decryption-toolsnetwork-access-control+2
36.7k6h 16m ago
vuln-bank-mobile preview

vuln-bank-mobile

GitHubcommando-x/vuln-bank-mobile

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

android-securityauthenticationcryptography+8
1021 year ago
signal-without-smartphone preview

signal-without-smartphone

GitHubalmet/signal-without-smartphone

Desktop application to register a Signal account and link Signal Desktop without requiring a smartphone, using Signal's cryptographic protocols for…

authenticationencryption-decryption-toolsmobile-security+2
761 month ago
passera preview
Archived

passera

GitHubmwgg/passera

[UNSUPPORTED] A small tool to turn any entered passphrase into a strong secure password, allowing you to easily use different strong passwords for…

authenticationencryption-decryption-toolsgeneral-purpose-utilities+2
628 years ago
ultrablue preview

ultrablue

GitHubanssi-fr/ultrablue

User-friendly Lightweight TPM Remote Attestation over Bluetooth

authenticationbluetooth-securitycryptography+2
1743 years ago
CVE-2020-27199 preview

CVE-2020-27199

GitHub9lyph/cve-2020-27199

CVE-2020-27199

authenticationexploitationinformation-gathering+6
71 year ago
CVE-2021-36460 preview

CVE-2021-36460

GitHubmartinfrancois/cve-2021-36460

Advisory detailing a pass-the-hash vulnerability in VeryFitPro app (<=3.3.7) where SHA-1 password hashes are used for authentication, enabling…

authenticationexploitationmobile-security+2
1 month ago
abdal-lockbox preview

abdal-lockbox

GitLabprof.shafiei/abdal-lockbox

Local-first encrypted password vault for Android with Master Password access, Recovery Key support, Autofill integration, and portable encrypted…

android-securityauthenticationcryptography+5
1 month ago
Tyr preview

Tyr

GitHubjb-selfcompany/tyr

True P2P Email on top of Yggdrasil Network for Android

android-securityauthenticationemail-security+4
3492 months ago
phonepe-sensitive-data-exposure-cve-2025-5154 preview

phonepe-sensitive-data-exposure-cve-2025-5154

GitHubhonestcorrupt/phonepe-sensitive-data-exposure-cve-2025-5154

CVE-2025-5154: Proof-of-concept for unencrypted local storage of authentication tokens, PII, and KYC data in the PhonePe Android app, enabling…

android-securityauthenticationdata-exfiltration+6
11 year ago
Previous12Next