Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
64 results
BEAR-C2 preview

BEAR-C2

GitHubs3n4t0r-0x0/bear-c2

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

adversarial-attackcommand-and-controldata-exfiltration+8
687
14 days ago
CVE-2026-31431-Copy-Fail---Advanced-LPE-Proof-of-Concept---C-Rewrite preview

CVE-2026-31431-Copy-Fail---Advanced-LPE-Proof-of-Concept---C-Rewrite

GitHubiblamenear/cve-2026-31431-copy-fail---advanced-lpe-proof-of-concept---c-rewrite

Copy Fail (CVE-2026-31431) is a logic bug in the Linux kernel's authencesn cryptographic template. It lets an unprivileged local user trigger a…

binary-exploitationexploitationexploit-frameworks+2
5 months ago
CVE-2026-43284- preview

CVE-2026-43284-

GitHubryan2929/cve-2026-43284-

Local privilege escalation exploit for Linux kernel CVE-2026-43284 (Dirty Flag), providing root access on vulnerable systems.

binary-exploitationexploitationexploit-frameworks+2
5 months ago
Copy-Fail-Exploit-CVE-2026-31431 preview

Copy-Fail-Exploit-CVE-2026-31431

GitHubpainoob/copy-fail-exploit-cve-2026-31431

Most Linux LPEs need a race window or a kernel-specific offset. Copy Fail is a straight-line logic flaw, it needs neither. The same 732-byte Python…

binary-exploitationexploitationexploit-frameworks+3
1095 months ago
CVE-2025-24990_POC preview

CVE-2025-24990_POC

GitHubmoiz-2x/cve-2025-24990_poc

Proof of Concept CVE-2025-24990 (Agere Systems's driver)

binary-exploitationexploitationexploit-frameworks+2
5811 months ago
pwnkit-go preview

pwnkit-go

GitHubjpmcb/pwnkit-go

Exploit for the PwnKit vulnerability, CVE-2021-4034, written in Go

binary-exploitationexploitationexploit-frameworks+2
74 years ago
pkexec-lpe-poc preview

pkexec-lpe-poc

GitHubcallrbx/pkexec-lpe-poc

Proof-of-concept exploit for CVE-2021-4034, a local privilege escalation in pkexec, allowing arbitrary payload execution with root privileges.

exploitationexploit-frameworkspenetration-testing+2
44 years ago
POC-CVE-2021-4034 preview

POC-CVE-2021-4034

GitHubyakumwamba/poc-cve-2021-4034

Proof-of-concept exploit for CVE-2021-4034 (PwnKit), a local privilege escalation in polkit's pkexec, verified on Debian 10 and CentOS 7.

exploitationexploit-frameworkspenetration-testing+2
44 years ago
CVE-2021-31166 preview

CVE-2021-31166

GitHubmauricelambert/cve-2021-31166

CVE-2021-31166: exploitation with Powershell, Python, Ruby, NMAP and Metasploit.

exploitationexploit-frameworkspayload-development+4
64 years ago
PoC preview

PoC

GitHubpedrib/poc

Advisories, proof of concept files and exploits that have been made public by @pedrib.

exploitationexploit-frameworksfuzzing+4
8611 year ago
CVE-2021-35211 preview

CVE-2021-35211

GitHubbishopfox/cve-2021-35211

Python exploit for Serv-U SSH vulnerability (CVE-2021-35211) with multiple payload modes: stage, exec, and download-execute, enabling shellcode…

binary-exploitationexploitationexploit-frameworks+6
394 years ago
RedRoot preview

RedRoot

GitHubagampreet-singh/redroot

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

ctfexploit-frameworksfuzzing+9
171 day ago
selenium-node-takeover-kit preview

selenium-node-takeover-kit

GitHubjonstratton/selenium-node-takeover-kit

A collection of selenium tests that might aid it takeover of a selenium node

command-and-controldata-exfiltrationexploit-frameworks+6
310 months ago
pocs preview

pocs

GitHubv12-security/pocs

poc it like it's hot

exploitationexploit-frameworkspayload-development+2
1.0k1 day ago
ClearSword preview

ClearSword

GitHubtherealclarity/clearsword
binary-exploitationexploitationexploit-frameworks+2
793 months ago
CVE-2019-0708-PoC-Hitting-Path preview

CVE-2019-0708-PoC-Hitting-Path

GitHubskyshell20082008/cve-2019-0708-poc-hitting-path

It's only hitting vulnerable path in termdd.sys!!! NOT DOS

binary-exploitationexploitationexploit-frameworks+2
127 years ago
Triple_Fetch-Kernel-Creds preview

Triple_Fetch-Kernel-Creds

GitHubjosephshenton/triple_fetch-kernel-creds

Attempt to steal kernelcredentials from launchd + task_t pointer (Based on: CVE-2017-7047)

exploitationexploit-frameworksios-security+3
79 years ago
Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201 preview

Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201

GitHubjgoyd/glass-cage-ios18-cve-2025-24085-cve-2025-24201

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then…

exploitationexploit-frameworksios-security+8
418 months ago
Previous1234Next