Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
177 results
hazel-cve-2026-43499 preview

hazel-cve-2026-43499

GitHubdorlow/hazel-cve-2026-43499

Firmware-specific temporary root exploit for Toshiba/Amazon Fire TV (hazel) using CVE-2026-43499. Implements ARM32 futex-PI UAF, kernel address leak,…

android-securitybinary-exploitationembedded-systems-security+6
1 day ago
ghostlock-aak-apk preview

ghostlock-aak-apk

GitHuboopnv70-lab/ghostlock-aak-apk

GhostLock AAK Launcher - CVE-2026-43499 Linux kernel rtmutex stack UAF local privilege escalation trigger (GPLv3)

android-securitybinary-exploitationexploitation+5
11 day ago
unisoc-su preview

unisoc-su

GitHubskorpion96/unisoc-su

A method for CVE-2025-31710 and to connect to cmd_skt to obtain a root shell on unisoc unpatched models

android-securitybinary-exploitationcommand-and-control+7
1342 days ago
CVE-2026-62735 preview

CVE-2026-62735

GitHubhackspeak/cve-2026-62735

Local privilege escalation exploit for Windows HTTP.sys integer overflow (CVE-2026-62735), demonstrating crash and full SYSTEM shell via nonpaged…

binary-exploitationexploitationexploit-frameworks+3
14 days ago
dast preview

dast

GitHubximerag/dast

Exploit for CVE-2026-0828 targeting Safetica ProcessMonitorDriver.sys to terminate processes and spawn a SYSTEM shell.

binary-exploitationexploitationexploit-frameworks+2
4 days ago
CVE-2026-62735 preview

CVE-2026-62735

GitHubnhh9905/cve-2026-62735

Proof-of-concept for CVE-2026-62735, an integer overflow in http.sys leading to heap overflow and SYSTEM shell. Includes crash log and stack trace…

binary-exploitationexploitationexploit-frameworks+1
6 days ago
GhostLock-H80GT preview

GhostLock-H80GT

GitHubyakidango-official/ghostlock-h80gt

Honor 80 GT privilege escalation PoC: GhostLock (CVE-2026-43499) + custom KernelSU module loading

android-securitybinary-exploitationexploitation+2
87 days ago
CVE-2016-5195 preview

CVE-2016-5195

GitHubkongqbin/cve-2016-5195

Educational implementation of the Dirty COW (CVE-2016-5195) privilege escalation exploit, including race condition payload and SUID-based root shell…

binary-exploitationeducationexploitation+3
12 days ago
ghostlock-a17 preview

ghostlock-a17

GitHubmobilehackinglab/ghostlock-a17

Kernel exploit for CVE-2026-43499 on Samsung Galaxy A17 achieving root via KDP bypass, KASLR recovery, and forged workqueue execution with persistent…

android-securitybinary-exploitationexploitation+4
1016 days ago
cve-2025-21479_iqooneo8 preview

cve-2025-21479_iqooneo8

GitHubqingizi7/cve-2025-21479_iqooneo8

Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell

android-securitybinary-exploitationexploitation+6
417 days ago
wasm2c-tableflip preview

wasm2c-tableflip

GitHubtrustsig-eu/wasm2c-tableflip

wasm2c sandbox escape. An untrusted WebAssembly module breaks out of the generated C sandbox and executes an arbitrary shell command on the host.

binary-exploitationexploitationsecurity-virtualization+1
518 days ago
CVE-2026-53365 preview

CVE-2026-53365

GitHubhackspeak/cve-2026-53365

Local privilege escalation exploit targeting a Linux kernel io_uring AF_VSOCK reference-count bug, using page-cache manipulation to overwrite…

binary-exploitationexploitationpenetration-testing+2
119 days ago
CVE-2026-42945_NginxRift preview

CVE-2026-42945_NginxRift

GitHubkentox493/cve-2026-42945_nginxrift

Automates CVE-2026-42945 exploitation in NGINX containers: verifies vulnerable targets, brute-forces heap offsets, executes commands, and opens an…

binary-exploitationcontainer-securityctf+5
123 days ago
GhostLock preview

GhostLock

GitHubwzhdgithub/ghostlock

CVE-2026-43499 futex PI stack UAF ???????? - Android GKI 6.1~6.12 ??????? pselect() + futex PI ????????????,??? root ??? SELinux??? OPPO Find…

android-securitybinary-exploitationexploitation+3
324 days ago
CVE-2026-2766-but-with-wasm preview

CVE-2026-2766-but-with-wasm

GitHubsneakynachos/cve-2026-2766-but-with-wasm

CVE-2026-2766, but with wasm

binary-exploitationexploitationpayload-development+2
126 days ago
ghostlock-apk preview
Archived

ghostlock-apk

GitHuboopnv70-lab/ghostlock-apk

独立 APK:CVE-2026-43499 GhostLock 提权 + Shizuku shell 身份执行

android-securitybinary-exploitationexploitation+3
627 days ago
CVE-2026-42533 preview

CVE-2026-42533

GitHubimbas007/cve-2026-42533

Exploit for nginx heap buffer overflow (CVE-2026-42533) providing pre-auth RCE via two-pass capture clobbering. Includes info leak, heap spray, and…

binary-exploitationexploitationinformation-gathering+4
351 month ago
CVE-2026-43284-DirtyFrag-PoC preview

CVE-2026-43284-DirtyFrag-PoC

GitHubjayhutajulu1/cve-2026-43284-dirtyfrag-poc

Proof-of-concept for CVE-2026-43284 — 4-byte XFRM/ESP page-cache write primitive to patch a setuid binary (x86_64, user namespaces). Includes kernel…

binary-exploitationeducationexploitation+3
21 month ago
Previous12…10Next