Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
43 results
CVE-2020-15999 preview

CVE-2020-15999

GitHuboxfemale/cve-2020-15999

CVE-2020-15999

binary-analysisexploitationfuzzing+3
35 years ago
PoC_CVE-2025-11579 preview

PoC_CVE-2025-11579

GitHubshinigami-777/poc_cve-2025-11579

Proof-of-concept exploit for CVE-2025-11579, a denial-of-service vulnerability in rardecode that triggers an out-of-memory crash via a crafted RAR…

binary-analysisexploitationfuzzing+1
10 months ago
jadx-magic-strings preview

jadx-magic-strings

GitHub0rshemesh/jadx-magic-strings

JADX plugin that extracts method names, class references, and source file paths from string constants found in DEX files and decompiled Android code.

android-securitybinary-analysiscode-analysis+5
409 months ago
flashmingo preview
Archived

flashmingo

GitHubmandiant/flashmingo

Automatic analysis of SWF files based on some heuristics. Extensible via plugins.

binary-analysisdynamic-analysis-sandboxingeducation+6
1207 years ago
CVE-2023-33802 preview

CVE-2023-33802

GitHubcdacesec/cve-2023-33802

Proof-of-concept for CVE-2023-33802, a denial-of-service vulnerability in SumatraPDF 3.4.6 32-bit, triggered by opening two large text files, causing…

binary-analysisdebuggersexploitation+1
33 years ago
SusanRTTI preview

SusanRTTI

GitHubnccgroup/susanrtti

Another RTTI Parsing IDA plugin

binary-analysisreverse-engineeringstatic-analysis+1
3123 years ago
CVE-2025-62454 preview

CVE-2025-62454

GitHub96613686/cve-2025-62454

Proof-of-concept for CVE-2025-62454 that triggers a Windows kernel crash (BSOD) in cldflt.sys via a crafted FSCTL request, causing a page fault in…

binary-analysisexploitationfuzzing+1
18 months ago
CVE-2019-8540 preview

CVE-2019-8540

GitHubmaldiohead/cve-2019-8540

Kernel Stack info leak at exportObjectToClient function

binary-analysisexploitationinformation-gathering+2
407 years ago
CVE-2024-54916 preview

CVE-2024-54916

GitHubsahalll/cve-2024-54916

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

android-securityauthenticationbinary-analysis+4
1 year ago
CVE-2026-3909 preview

CVE-2026-3909

GitHubjaf0rk/cve-2026-3909

Proof-of-concept exploit for CVE-2026-3909, a Chromium Skia out-of-bounds vulnerability, with patches and crash analysis for reliable triggering in…

binary-analysisexploitationfuzzing+2
24 months ago
asadbg preview

asadbg

GitHubnccgroup/asadbg

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

binary-analysisdebuggersembedded-systems-security+5
814 years ago
CVE-2026-36834 preview

CVE-2026-36834

GitHubkpatsakis/cve-2026-36834

Reproducible CVE-2026-36834 proof-of-concept demonstrating an out-of-bounds array read in LibRaw's Panasonic RW2 decoder, with mutation script and…

binary-analysiseducationfuzzing+3
2 months ago
CVE-2025-50420 preview

CVE-2025-50420

GitHublandw-hub/cve-2025-50420

Proof-of-concept exploit for CVE-2025-50420 demonstrating infinite recursion in Poppler's pdfseparate via crafted /Annots dictionaries, causing…

binary-analysisdebuggersexploitation+2
15 months ago
CVE-2025-27363-proof-of-concept preview

CVE-2025-27363-proof-of-concept

GitHubzhuowei/cve-2025-27363-proof-of-concept

Proof-of-concept for CVE-2025-27363 demonstrating a heap buffer overflow in FreeType 2.13.0 via a crafted variable font, with ASAN-verified crash…

binary-analysisdebuggersexploitation+3
401 year ago
CVE-2026-0049 preview

CVE-2026-0049

GitHubr3n3r0/cve-2026-0049

PoC and analysis of a zero-click DoS in Android's DNG SDK, with crafted DNG samples, an NDK crash harness, and UBSan/IntSan reproduction of the…

android-securitybinary-analysiseducation+4
28 days ago
servu-cve-2026-28318-poc preview

servu-cve-2026-28318-poc

GitHubeaea0001/servu-cve-2026-28318-poc

SolarWinds Serv-U CVE-2026-28318: unauthenticated Content-Encoding: deflate crash. Root-cause analysis (invalid free of an interior pointer -> heap…

binary-analysisexploitationmemory-forensics+2
12 months ago
PoC-CVE-2025-69421 preview

PoC-CVE-2025-69421

GitHubkha-beleh/poc-cve-2025-69421

Minimal CVE-2025-69421 reproducer demonstrating a NULL pointer dereference in OpenSSL PKCS#12 processing via a malformed PFX file with absent…

binary-analysiscryptographyeducation+3
1 month ago
CVE-2022-31902 preview

CVE-2022-31902

GitHubcdacesec/cve-2022-31902

Proof-of-concept for CVE-2022-31902, a denial-of-service vulnerability in Notepad++ (x86) triggered by the Find All feature on crafted text files,…

binary-analysisdebuggersexploitation+1
13 years ago
Previous123Next