Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1447 results
widevine-l3-decryptor preview
Archived

widevine-l3-decryptor

GitHubtomer8007/widevine-l3-decryptor

A Chrome extension that demonstrates bypassing Widevine L3 DRM

binary-analysiseducationencryption-decryption-tools+3
1.2k
3 years ago
ReparcelBug2 preview

ReparcelBug2

GitHubmichalbednarski/reparcelbug2

Writeup and exploit for installed app to system privilege escalation on Android 12 Beta through CVE-2021-0928, a `writeToParcel`/`createFromParcel`…

android-securitybinary-analysisexploitation+3
1234 years ago
TheLastBundleMismatch preview

TheLastBundleMismatch

GitHubmichalbednarski/thelastbundlemismatch

Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mitigation

android-securitybinary-analysisexploitation+2
1012 years ago
jfrog-CVE-2023-43786-libX11_DoS preview

jfrog-CVE-2023-43786-libX11_DoS

GitHubjfrog/jfrog-cve-2023-43786-libx11_dos

Proof-of-concept for CVE-2023-43786, a libX11 integer overflow causing infinite loop DoS. Demonstrates triggering the vulnerability via sxpm with a…

binary-analysisexploitationfuzzing+1
2 years ago
Phoenix-Rowhammer-Attack-CVE-2025-6202 preview

Phoenix-Rowhammer-Attack-CVE-2025-6202

GitHubdemining/phoenix-rowhammer-attack-cve-2025-6202

Phoenix Rowhammer Attack: Systemic Risk of Bitcoin Wallet Private Key Compromise in Global Blockchain Infrastructure Due to a Critical SK Hynix DDR5…

binary-analysiscryptographyexploitation+2
510 months ago
cve-2025-54874-poc preview

cve-2025-54874-poc

GitHubcyhe50/cve-2025-54874-poc

Proof-of-concept demonstrating a memory leak in OpenJPEG 2.5.1 via crafted JP2 files, triggering opj_read_header failure and heap leak, with valgrind…

binary-analysisexploitationfuzzing+2
10 months ago
system_bt_AOSP10_r33_CVE-2021-0475 preview

system_bt_AOSP10_r33_CVE-2021-0475

GitHubshaikusaf/system_bt_aosp10_r33_cve-2021-0475

Android Bluetooth stack (Fluoride) with build instructions for AOSP and Linux, including dependency setup and GN/Ninja build steps.

android-securitybinary-analysisbluetooth-security+3
4 years ago
frameworks_av_AOSP10_r33_CVE-2021-0509 preview

frameworks_av_AOSP10_r33_CVE-2021-0509

GitHubtrinadh465/frameworks_av_aosp10_r33_cve-2021-0509

Android media framework vulnerability fix for CVE-2021-0509, addressing a use-after-free in audio flinger to prevent local privilege escalation.

android-securitybinary-analysisexploitation+2
4 years ago
CVE-2026-2035703-x300 preview

CVE-2026-2035703-x300

GitHubdanish1162/cve-2026-2035703-x300

Tozed ZLT X300 5G CPE — Remote Root Code Execution via SDR Rogue Base Station (CVE-2026-2035703, CWE-78, CVSS 9.8) — Coordinated Disclosure

binary-analysiseducationexploitation+4
3 days ago
CVE-2026-74936-gc-potato preview

CVE-2026-74936-gc-potato

GitHubsneakynachos/cve-2026-74936-gc-potato

Reproduction of a WebAssembly use-after-free vulnerability in Mozilla's JavaScript engine, demonstrating a deterministic race condition and providing…

binary-analysisexploitationpapers-research+1
5 days ago
MassDriver preview

MassDriver

GitHubsizeable-bingus/massdriver

Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

binary-analysisexploitationpayload-development+2
313 months ago
CVE-2026-34159-Vulnerability-Research-Analysis-Detection preview

CVE-2026-34159-Vulnerability-Research-Analysis-Detection

GitHubrohithronanki/cve-2026-34159-vulnerability-research-analysis-detection

Critical buffer validation bypass in deserialize_tensor() (llama.cpp < b8492). Null tensor buffer skips bounds check, enabling unauthenticated…

binary-analysisexploitationintrusion-detection+2
4 months ago
CVE-2026-0073-Research preview

CVE-2026-0073-Research

GitHubnovaek/cve-2026-0073-research

CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.

binary-analysisexploitationreverse-engineering+2
53 months ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubexploiteoom/cve-2026-31431

Exploit for CVE-2026-31431 that escalates privileges by altering user ID, with a verification script and mitigation instructions for the algif_aead…

binary-analysisexploitationexploit-frameworks+2
24 months ago
CVE-2025-56802 preview

CVE-2025-56802

GitHubshinycolumn/cve-2025-56802

AES-CFB Key Generation and Management Vulnerability in Reolink Desktop Application

binary-analysiscryptographyeducation+3
10 months ago
CVE-2026-29628 preview

CVE-2026-29628

GitHubkiyochii/cve-2026-29628

Proof-of-concept for CVE-2026-29628, a stack-based buffer overflow in tinyobjloader's experimental parser, with ASan/UBSan reproduction and fix…

binary-analysiscode-analysisexploitation+2
4 months ago
CVE-2025-46819 preview

CVE-2025-46819

GitHubdwisiswant0/cve-2025-46819

Proof-of-concept exploit for CVE-2025-46819, a Redis Lua long-string delimiter out-of-bounds read, demonstrating a crash via malformed input.

binary-analysisexploitationfuzzing+2
411 months ago
CVE-2026-32945 preview

CVE-2026-32945

GitHubjohanneslks/cve-2026-32945

PJSIP DNS Compression Pointer Heap OOB Read (Remote DoS)

binary-analysisdynamic-analysis-sandboxingexploitation+2
4 months ago
Previous1…777879…81Next