Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
74 results
CVE-2026-62735 preview

CVE-2026-62735

GitHubhackspeak/cve-2026-62735

Local privilege escalation exploit for Windows HTTP.sys integer overflow (CVE-2026-62735), demonstrating crash and full SYSTEM shell via nonpaged…

binary-exploitationexploitationexploit-frameworks+3
5
1 month ago
CVE-2026-29923 preview

CVE-2026-29923

GitHubsmarttfoxx/cve-2026-29923

The pstrip64.sys kernel driver exposes an IOCTL that allows low-privileged users to map arbitrary ranges of physical memory into their own virtual…

binary-exploitationexploitationmemory-forensics+3
46 months ago
CVE-2019-2215 preview

CVE-2019-2215

GitHubwired0ut/cve-2019-2215

Full exploit for the Android vulnerability Bad Binder found in early Google Pixel phones.

android-securitybinary-exploitationexploitation+3
45 months ago
-CVE-2018-0834-aab-aar preview

-CVE-2018-0834-aab-aar

GitHubspiralbl0ck/-cve-2018-0834-aab-aar

CVE-2018-0834 full code exec

binary-exploitationexploitationexploit-frameworks+3
42 years ago
glass-cage-i18-2025-24085-and-cve-2025-24201 preview

glass-cage-i18-2025-24085-and-cve-2025-24201

GitHub5ky9uy/glass-cage-i18-2025-24085-and-cve-2025-24201

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox…

binary-exploitationdata-exfiltrationeducation+9
51 year ago
CTT-NFS-Vortex-RCE preview

CTT-NFS-Vortex-RCE

GitHubsimoesctt/ctt-nfs-vortex-rce

New Physics Disclosure This repository contains a full weaponized exploit for **CVE-2026-21509**, targeting the Windows Network File System (NFSv4.1)…

binary-exploitationexploitationexploit-frameworks+1
38 months ago
Zapscape preview

Zapscape

GitHubaarif450/zapscape

Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.

binary-exploitationdefensive-toolsexploitation+2
15 days ago
CVE-2025-7771 preview

CVE-2025-7771

GitHubyulisec/cve-2025-7771

Full exploit chain for CVE-2025-7771 in ThrottleStop.sys, abusing unvalidated physical memory R/W IOCTLs to escalate from administrator to SYSTEM on…

binary-exploitationdefensive-toolsexploitation+5
115 days ago
CVE-2026-25243-debugfree preview

CVE-2026-25243-debugfree

GitHubdinosn/cve-2026-25243-debugfree

Reliable remote code execution exploit for CVE-2026-25243 targeting jemalloc Redis. Executes arbitrary commands via a single crafted RESTORE command…

binary-exploitationexploitationpenetration-testing+3
23 months ago
CVE-2026-14266 preview

CVE-2026-14266

GitHubliyuxuan504-byte/cve-2026-14266

7-Zip XZ Decoder Heap Buffer Overflow - Full analysis, root cause, PoC, and RCE exploitation roadmap

binary-analysisbinary-exploitationcode-analysis+7
22 months ago
CVE-2024-4947-PoC preview

CVE-2024-4947-PoC

GitHubl1m3syc/cve-2024-4947-poc

Educational proof-of-concept for CVE-2024-4947, a V8 Maglev type confusion, demonstrating a full chain from trigger to arbitrary code execution on a…

binary-exploitationeducationexploitation+3
1 month ago
cve-writeups-and-pocs preview

cve-writeups-and-pocs

GitHubsuruurism/cve-writeups-and-pocs

CVE-2026-80724 PoC + full write-up — Linux kernel ptp/vmclock read-only mapping becomes writable (VM_MAYWRITE). Discovered, reported & fixed by…

binary-exploitationeducationexploitation+2
11 month ago
CVE-2026-2796-and-CVE-2026-2768-escape-the-wasm-box preview

CVE-2026-2796-and-CVE-2026-2768-escape-the-wasm-box

GitHubsneakynachos/cve-2026-2796-and-cve-2026-2768-escape-the-wasm-box

Full Firefox chain: CVE-2026-2796 wasm type confusion -> content-process RCE, plus CVE-2026-2768 parent-process escape analysis (both fixed in…

binary-exploitationexploitationvulnerability-analysis+1
11 month ago
vulnerability-analysis- preview

vulnerability-analysis-

GitHubkungaocode/vulnerability-analysis-

Automated reproduction and analysis of CVE-2021-26708 — a use-after-free vulnerability in the Linux kernel's AF_VSOCK subsystem (v5.10.12). Includes…

binary-exploitationexploitationvulnerability-analysis
12 months ago
Below-Logger-Symlink-Attack_CVE-2025-27591 preview

Below-Logger-Symlink-Attack_CVE-2025-27591

GitHub0xdtc/below-logger-symlink-attack_cve-2025-27591

A Bash-based privilege escalation exploit targeting the `below` system performance monitoring tool. This refurbished exploit leverages a symlink…

binary-exploitationeducationexploitation+3
210 months ago
CVE-2026-42945 preview

CVE-2026-42945

GitHubquantumworld-dpdns-io/cve-2026-42945

Full CVE-2026-42945 research repository with heap buffer overflow analysis, RCE exploit (heap spray + Feng Shui), detection scripts, and patching…

binary-exploitationeducationexploitation+6
4 months ago
RTOS-F-16-Exploit---CVE-2019-7711 preview

RTOS-F-16-Exploit---CVE-2019-7711

GitHubmbanyamer/rtos-f-16-exploit---cve-2019-7711

Proof-of-concept exploit for CVE-2019-7711, a format string vulnerability in Green Hills INTEGRITY RTOS. Demonstrates a full attack chain with memory…

binary-exploitationeducationembedded-systems-security+5
5 months ago
thm-ice-icecast-rce-privesc preview

thm-ice-icecast-rce-privesc

GitHubmonseigneurpatas/thm-ice-icecast-rce-privesc

Full compromise of TryHackMe's Ice machine — Icecast 2.0.1 RCE (CVE-2004-1561) via buffer overflow, followed by Windows privilege escalation through…

binary-exploitationctfeducation+5
3 months ago
Previous12345Next