Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
595 results
rmgp-complete-handoff preview

rmgp-complete-handoff

GitHubabdgalaxy36-code/rmgp-complete-handoff

Complete RMGP (CVE-2026-43499) workspace + experiment-state handoff for SM-A376B/A376BXXU1AZB7

android-securitybinary-exploitationexploitation+5
2 days ago
ghostlock-h8q preview

ghostlock-h8q

GitHubslapah/ghostlock-h8q

GhostLock CVE-2026-43499 port for Galaxy Z Fold 8 (h8q)

android-securitybinary-exploitationexploitation+4
9 days ago
k50g-pocof4gt-cve-2026-43499-poc preview

k50g-pocof4gt-cve-2026-43499-poc

GitHubcxyofficial/k50g-pocof4gt-cve-2026-43499-poc

Local privilege escalation exploit for Redmi K50G/POCO F4 GT using CVE-2026-43499 (futex UAF) to gain temporary root and load KernelSU without…

android-securitybinary-exploitationexploitation+5
1 day ago
CVE-2026-27280 preview

CVE-2026-27280

GitHubr3n3r0/cve-2026-27280

In-depth analysis and proof-of-concept for CVE-2026-27280, an out-of-bounds write in Adobe DNG SDK's dng_render_task::ProcessArea, reachable via…

android-securitybinary-exploitationexploitation+5
15 days ago
ghostlock-pfem10 preview

ghostlock-pfem10

GitHubdiyiqiuye/ghostlock-pfem10

GhostLock (CVE-2026-43499 / IonStack) research for OPPO Find X5 Pro (PFEM10): exploit chain, progress, blocker log, and OPPO 5-series kernel notes

android-securitybinary-exploitationexploitation+5
5 days ago
log4j2-rce preview

log4j2-rce

GitHubhypnguyen1209/log4j2-rce

Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2

binary-exploitationexploitationpayload-development+2
196 days ago
rmg-s9180-fzg1 preview

rmg-s9180-fzg1

GitHubhackyangwen-lgtm/rmg-s9180-fzg1

Root My Galaxy SM-S9180 (dm3q) S9180ZHS8FZG1 payload port - CVE-2026-43499 + KernelSU LKM

android-securitybinary-exploitationexploitation+4
6 days ago
log4j-4255 preview

log4j-4255

GitHubdinosn/log4j-4255

End-to-end Docker lab reproducing Apache log4j2 #4255 — FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject (unfiltered…

binary-exploitationeducationexploitation+2
187 days ago
vivo-root-build preview

vivo-root-build

GitHubsgswzglwlx/vivo-root-build

Builds a root exploit for vivo/iQOO devices targeting CVE-2026-43499, leveraging kernel techniques like KASLR bypass and CFI manipulation to achieve…

android-securitybinary-exploitationexploitation+5
7 days ago
desc_race-1 preview

desc_race-1

GitHubst-rnd/desc_race-1

desc_race exploit for iOS 15.0 - 15.1.1 (with stable kernel r/w primitives) (CVE-2021-30955)

binary-exploitationexploitationios-security+2
4 years ago
CVE-2021-30955-POC preview

CVE-2021-30955-POC

GitHubnickorlow/cve-2021-30955-poc

Jake Jame's proof of concept wrapped into an iOS app for CVE-2021-30955

binary-exploitationexploitationios-security+2
14 years ago
desc_race_A15 preview

desc_race_A15

GitHubmarkie-dev/desc_race_a15

CVE-2021-30955 iOS 15.1.1 POC for 6GB RAM devices (A14-A15)

binary-exploitationexploitationios-security+2
474 years ago
CVE-2026-5281-CVE-2026-11057-fullchain preview

CVE-2026-5281-CVE-2026-11057-fullchain

GitHubjaf0rk/cve-2026-5281-cve-2026-11057-fullchain

Full-chain exploit for Android Chromium combining CVE-2026-11057 info leak and CVE-2026-5281 use-after-free to achieve vtable hijack and arbitrary…

android-securitybinary-exploitationexploitation+4
18 days ago
CVE-2026-20687-AppleJPEGDriver-UAF preview

CVE-2026-20687-AppleJPEGDriver-UAF

GitHubenfilade-labs/cve-2026-20687-applejpegdriver-uaf

CVE-2026-20687: AppleJPEGDriver startDecoder Timeout UAF — iOS/macOS kernel vulnerability leading to deferred panic (A19 Pro, iOS 26.3 RC)

binary-exploitationexploitationios-security+4
24 months ago
CVE-2026-20637-AppleSEPKeyStore-UAF preview

CVE-2026-20637-AppleSEPKeyStore-UAF

GitHubenfilade-labs/cve-2026-20637-applesepkeystore-uaf

CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)

binary-exploitationexploitationios-security+2
14 months ago
fuck_cve_2026_31431 preview

fuck_cve_2026_31431

GitHubdixyes/fuck_cve_2026_31431

Kernel module exploiting CVE-2026-31431 to bypass system stop mechanisms, with configurable fake implementation for testing on non-stoppable machines.

binary-exploitationexploitationprivilege-escalation+1
4 months ago
skeleton preview

skeleton

GitHubaemmitt-ns/skeleton

Zero-click remote code execution exploit for CVE-2021-0326 targeting Android devices, including the Peloton Bike, with a proof-of-concept requiring…

android-securitybinary-exploitationexploitation+3
214 years ago
CTT-MICROSOFT-OFFICE-OLE-MANIFOLD-BYPASS-CVE-2026-21509 preview

CTT-MICROSOFT-OFFICE-OLE-MANIFOLD-BYPASS-CVE-2026-21509

GitHubsimoesctt/ctt-microsoft-office-ole-manifold-bypass-cve-2026-21509

Exploit for CVE-2026-21509, a Microsoft Office OLE validation bypass using a speculative race-condition technique to evade AMSI/EDR and achieve code…

binary-exploitationexploitationmalware-analysis+3
36 months ago
Previous12…34Next