Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
595 results
telnet_scan preview

telnet_scan

GitHubekomssavior/telnet_scan

scanner/exploiter CVE-2026-24061 & CVE-2026-32746

authenticationbinary-exploitationeducation+5
12
3 months ago
Janus-CVE-2017-13156 preview

Janus-CVE-2017-13156

GitHubxyzasian/janus-cve-2017-13156

Java-based exploit tool for CVE-2017-13156 that bypasses Android APK signature verification by appending a DEX file to an existing APK, enabling code…

android-securitybinary-exploitationexploitation+2
158 years ago
CVE-2025-6554 preview

CVE-2025-6554

GitHubpwntoday/cve-2025-6554

Proof-of-concept exploit for a V8 JavaScript engine vulnerability (CVE-2025-6554) demonstrating a TDZ bypass that leaks 'The Hole' sentinel, enabling…

binary-exploitationeducationexploitation+2
21 year ago
FUD-UUID-Shellcode preview

FUD-UUID-Shellcode

GitHubbl4ckm1rror/fud-uuid-shellcode

C++ shellcode injection technique using XOR encryption and UUID string conversion to bypass Windows Defender, with function call obfuscation and…

binary-exploitationdefensive-toolsexploitation+6
3333 years ago
VMInjector preview

VMInjector

GitHubhzphreak/vminjector

DLL Injection tool to unlock guest VMs

authentication-authorizationbinary-exploitationexploitation+4
23813 years ago
gtfobins-cli preview

gtfobins-cli

GitHubt0thkr1s/gtfobins-cli

Search for Unix binaries that can be exploited to bypass system security restrictions.

binary-exploitationinformation-gatheringpenetration-testing+2
1456 months ago
CVE-2026-0073-Android-client-TLS-auth-bypass preview

CVE-2026-0073-Android-client-TLS-auth-bypass

GitHubm00ddy/cve-2026-0073-android-client-tls-auth-bypass

translating original python exploit to C

android-securitybinary-exploitationexploitation+3
3 months ago
cve-2022-4543-wrapper preview

cve-2022-4543-wrapper

GitHubsunichi/cve-2022-4543-wrapper

Wrapper for CVE-2022-4543 exploit that de-randomizes kernel base address via KASLR bypass, enabling reliable kernel exploitation on affected Linux…

binary-exploitationexploitationinformation-gathering+1
32 years ago
CVE-2025-1234-RSA-Key-Validation-Bypass preview

CVE-2025-1234-RSA-Key-Validation-Bypass

GitHubsimoesctt/cve-2025-1234-rsa-key-validation-bypass

A flaw in a popular RSA implementation allows attackers to bypass key validation by supplying a modulus that appears valid but is actually factorable…

binary-exploitationcryptographyeducation+3
6 months ago
prefetch-tool preview

prefetch-tool

GitHubexploits-forsale/prefetch-tool

Windows KASLR bypass using prefetch side-channel

binary-exploitationexploitationinformation-gathering+4
2122 years ago
Jump-over-ASLR-BTB preview

Jump-over-ASLR-BTB

GitHubbytereaper77/jump-over-aslr-btb

jump over aslr attacking branch predictors to bypass aslr Technique

binary-exploitationeducationexploitation+2
40 years ago
CVE-2022-21894-Payload-New preview

CVE-2022-21894-Payload-New

GitHubnova-master/cve-2022-21894-payload-new

C-based payload for CVE-2022-21894 that maps a second stage payload to call EFI services, extending the original PoC for Secure Boot bypass…

binary-exploitationexploitationexploit-frameworks+2
42 years ago
NimSyscallPacker preview

NimSyscallPacker

GitHubs3cur3th1ssh1t/nimsyscallpacker

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

binary-exploitationexploitationlateral-movement+7
2152 months ago
CVE-2025-24104 preview

CVE-2025-24104

GitHubifpdz/cve-2025-24104

Technical writeup of CVE-2025-24104: an iOS sandbox escape via symlink validation bypass in backup restoration, enabling arbitrary file reads outside…

binary-exploitationdata-exfiltrationexploitation+4
521 year ago
CVE-2020-1337 preview

CVE-2020-1337

GitHubneofito/cve-2020-1337

CVE-2020-1048 bypass: binary planting PoC

binary-exploitationexploitationpayload-development+4
326 years ago
ZygoteExploitDemo preview

ZygoteExploitDemo

GitHubgitamans/zygoteexploitdemo

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

android-securitybinary-exploitationeducation+7
25 months ago
log4j2-rce preview

log4j2-rce

GitHubhypnguyen1209/log4j2-rce

Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2

binary-exploitationexploitationpayload-development+2
196 days ago
log4j-4255 preview

log4j-4255

GitHubdinosn/log4j-4255

End-to-end Docker lab reproducing Apache log4j2 #4255 — FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject (unfiltered…

binary-exploitationeducationexploitation+2
187 days ago
Previous12…34Next