Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
CVE-2024-28397-Exploit-Automation preview

CVE-2024-28397-Exploit-Automation

GitHubl1337xi/cve-2024-28397-exploit-automation

A Python automation script for exploiting the **js2py Sandbox Escape** vulnerability (CVE-2024-28397). This tool automates the payload generation and…

ctfeducationexploitation+3
2
9 months ago
process-injection-playground preview

process-injection-playground

GitHuboscerd/process-injection-playground

A collection of samples and material related to process injection

binary-exploitationctfeducation+3
19 months ago
bad-epoll preview

bad-epoll

GitHubj-jaeyoung/bad-epoll

Linux kernel privilege-escalation exploit for CVE-2026-46242, a race-condition use-after-free in epoll, with 99% reliable root on desktops, servers,…

android-securitybinary-exploitationctf+4
5152 months ago
heappy preview

heappy

GitHubgand3lf/heappy

A happy heap editor to support your exploitation process :slightly_smiling_face:

binary-exploitationctfdebuggers+2
1975 years ago
CyberChef preview

CyberChef

GitHubgchq/cyberchef

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

binary-analysiscryptographyctf+9
35.8k1h 32m ago
local-llm-ctf preview

local-llm-ctf

GitHubbishopfox/local-llm-ctf

A small go harness that uses Ollama to orchestrate LLMs in a restricted process flow

ai-securityctfeducation+2
191 year ago
CVE-2023-6702 preview

CVE-2023-6702

GitHubkaist-hacking/cve-2023-6702

Chrome Renderer 1day RCE via Type Confusion in Async Stack Trace (v8ctf submission)

binary-exploitationctfeducation+3
862 years ago
machscope preview

machscope

GitHubsadopc/machscope

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

binary-analysiscode-analysisctf+8
1026 months ago
CVE-2025-6934 preview

CVE-2025-6934

GitHub0xgh057r3c0n/cve-2025-6934

CVE-2025-6934 is a critical vulnerability in the WordPress Opal Estate Pro plugin (<= 1.7.5) that allows unauthenticated attackers to create new…

ctfeducationexploitation+3
51 year ago
kasld preview

kasld

GitHubbcoles/kasld

KASLD derandomizes the Linux kernel's virtual and physical memory layout from a local process, using whatever its vantage — privilege, configuration,…

binary-exploitationctfexploitation+3
52212h 14m ago
keepass-exfil-forensics preview

keepass-exfil-forensics

GitHubpugazhendii22/keepass-exfil-forensics

Network forensics writeup + tooling for a TryHackMe DFIR challenge: reverses a hex→Base64→XOR exfiltration chain from PCAP traffic, then recovers a…

ctfdata-exfiltrationdigital-forensics+6
23 days ago
Apache-HTTP-Server-Vulnerabilities-CVE-2021-41773-and-CVE-2021-42013 preview

Apache-HTTP-Server-Vulnerabilities-CVE-2021-41773-and-CVE-2021-42013

GitHubvanshuk-bhagat/apache-http-server-vulnerabilities-cve-2021-41773-and-cve-2021-42013

In this project, I documented a detailed penetration testing process targeting Apache HTTP Server vulnerabilities, specifically CVE-2021-41773 and…

ctfeducationexploit-frameworks+4
1 year ago
sudo_inject preview

sudo_inject

GitHubnongiach/sudo_inject

[Linux] Two Privilege Escalation techniques abusing sudo token

ctfdigital-forensicseducation+4
7337 years ago
cve-2024-58239 preview

cve-2024-58239

GitHubkhoatran107/cve-2024-58239

Linux kernel TLS subsystem exploit for CVE-2024-58239, achieving privilege escalation via a double-free vulnerability in tcp_rcv_state_process.…

binary-exploitationctfeducation+2
410 months ago
CVE-2025-55182-poc preview

CVE-2025-55182-poc

GitHubducducuc111/cve-2025-55182-poc

Proof-of-concept exploit for CVE-2025-55182, demonstrating remote code execution via prototype chain vulnerability in React Server Components.…

code-analysisctfeducation+5
9 months ago