Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
147 results
sudoinjection preview

sudoinjection

GitHubmikivirus0/sudoinjection

Sudo Local Privilege Escalation CVE-2025-32463 (Best For Cases Where the shell is not stable to spawn a new root shell)

binary-exploitationctfeducation+5
2
1 year ago
ghidra preview

ghidra

GitHubnationalsecurityagency/ghidra

Ghidra is a software reverse engineering (SRE) framework

ai-assisted-reversingandroid-securitybinary-analysis+17
79.9k1 day ago
CVE-2022-24481-analysis preview

CVE-2022-24481-analysis

GitHubuname1able/cve-2022-24481-analysis

Deep-dive analysis of Windows CLFS type confusion (CVE-2022-24481) with root-cause explanation, exploitation flow, kernel gadget details, and working…

binary-exploitationexploitationprivilege-escalation+2
1 month ago
UnjailMe preview

UnjailMe

GitHubmtjailed/unjailme

A sandbox escape based on the proof-of-concept (CVE-2018-4087) by Rani Idan (Zimperium)

binary-exploitationexploitationexploit-frameworks+7
828 years ago
CVE-2017-18349 preview

CVE-2017-18349

GitHubdungsocool/cve-2017-18349

Step-by-step walkthrough of CVE-2017-18349 Fastjson deserialization RCE exploitation, covering attack surface identification, fingerprinting, JNDI…

binary-exploitationeducationexploitation+6
4 months ago
day09-bentoml-deser-lab preview

day09-bentoml-deser-lab

GitHubamalpvatayam67/day09-bentoml-deser-lab

ay 09 — CVE-2025-27520 (BentoML-style insecure deserialization) — Local Docker lab

binary-exploitationeducationexploitation+3
1 year ago
LiberationPlay-CVE-2025-24132-AirBourne-POC preview

LiberationPlay-CVE-2025-24132-AirBourne-POC

GitHubthegaminggallifreyan/liberationplay-cve-2025-24132-airbourne-poc

POC for CVE-2025-24132 (AirBourne). Currently just triggers the overflow and causes a crash

binary-exploitationcryptographydebuggers+7
87 months ago
uoftctf-2025-chals-public preview

uoftctf-2025-chals-public

GitHubuoftctf/uoftctf-2025-chals-public

Challenge handouts, source code, and solutions for UofTCTF 2025

binary-exploitationcryptographyctf+6
401 year ago
CVE-2017-5123 preview

CVE-2017-5123

GitHubteawater/cve-2017-5123

Reproduction of CVE-2017-5123 kernel vulnerability allowing local privilege escalation via waitid syscall memory write, demonstrated with Docker…

binary-exploitationcontainer-escapeexploitation+2
7 years ago
NimPackt-v1 preview

NimPackt-v1

GitHubchvancooten/nimpackt-v1

Nim-based assembly packer and shellcode loader for opsec & profit

binary-exploitationexploit-frameworkspayload-generation+3
4863 years ago
log4j-4255 preview

log4j-4255

GitHubdinosn/log4j-4255

End-to-end Docker lab reproducing Apache log4j2 #4255 — FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject (unfiltered…

binary-exploitationeducationexploitation+2
281 month ago
CVE-2026-43499-poc preview

CVE-2026-43499-poc

GitHublkeld/cve-2026-43499-poc

Weaponized proof-of-concept for CVE-2026-43499 (GhostLock), a Linux kernel rtmutex bug enabling local privilege escalation. Includes per-distribution…

binary-exploitationexploitationexploit-frameworks+2
227 days ago
CVE-2018-17961 preview

CVE-2018-17961

GitHubmatlink/cve-2018-17961

Exploit for CVE-2018-17961 targeting evince to bypass execute-only permissions and achieve privilege escalation via ~/.bashrc injection.

binary-exploitationexploitationpenetration-testing+2
27 years ago
CVE-2026-2764-but-with-wasm preview

CVE-2026-2764-but-with-wasm

GitHubsneakynachos/cve-2026-2764-but-with-wasm

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

binary-exploitationexploitationpayload-development+3
11 month ago
sk-cve-2026-26030-lab preview

sk-cve-2026-26030-lab

GitHubinertfluid/sk-cve-2026-26030-lab

Ethical, network-isolated Docker lab reproducing CVE-2026-26030 — Semantic Kernel in-memory vector store filter eval() RCE (patched in 1.39.4)

ai-securitybinary-exploitationeducation+5
13 months ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubmcub3/cve-2026-31431

C PoC for CVE-2026-31431, an unprivileged Linux LPE exploiting AF_ALG page cache corruption to overwrite /usr/bin/su and gain root.

binary-exploitationexploitationexploit-frameworks+3
4 months ago
CVE-2025-49844 preview

CVE-2025-49844

GitHubopen-flaw/cve-2025-49844

Proof-of-concept exploit for CVE-2025-49844 targeting a Redis heap vulnerability, with GDB-assisted crash analysis and fuzzing attempts to achieve…

binary-exploitationdebuggersexploitation+3
5 months ago
CVE_2026_31431 preview

CVE_2026_31431

GitHubmishl-dev/cve_2026_31431

Exploit for CVE-2026-31431, a Linux kernel page-cache write primitive enabling local privilege escalation and container escape via AF_ALG and…

binary-exploitationcontainer-escapeexploitation+3
15 months ago
Previous1…456…9Next