Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
248 results
CVE-2026-68820_Mass_Exploit preview

CVE-2026-68820_Mass_Exploit

GitHubmaxprog-svg/cve-2026-68820_mass_exploit

Automated local privilege escalation exploit for Windows 10/11 targeting AFD.sys use-after-free to gain SYSTEM, with PPL bypass and EDR evasion for…

exploitationexploit-frameworkslateral-movement+5
7 days ago
CVE-2026-31431-PoC preview

CVE-2026-31431-PoC

GitHubsl4ck0th/cve-2026-31431-poc

Proof-of-concept exploit for CVE-2026-31431, a Linux kernel local privilege escalation via AF_ALG page cache write, achieving root on major…

binary-exploitationcontainer-escapeexploitation+4
44 months ago
CVE-2026-32743-PX4-Autopilot-MavlinkLogHandler-Stack-Buffer-Overflow-DoS- preview

CVE-2026-32743-PX4-Autopilot-MavlinkLogHandler-Stack-Buffer-Overflow-DoS-

GitHubmbanyamer/cve-2026-32743-px4-autopilot-mavlinkloghandler-stack-buffer-overflow-dos-

A remote Denial of Service (DoS) exploit for PX4 Autopilot versions ≤1.17.0-rc2 via a stack‑based buffer overflow in the MavlinkLogHandler.

binary-exploitationembedded-systems-securityexploitation+3
3 months ago
blankspace preview

blankspace

GitHubjbaines-r7/blankspace

Proof of Concept for EFSRPC Arbitrary File Upload (CVE-2021-43893)

exploitationexploit-frameworkslateral-movement+2
644 years ago
CTT-NFS-Vortex-RCE preview

CTT-NFS-Vortex-RCE

GitHubsimoesctt/ctt-nfs-vortex-rce

New Physics Disclosure This repository contains a full weaponized exploit for **CVE-2026-21509**, targeting the Windows Network File System (NFSv4.1)…

binary-exploitationexploitationexploit-frameworks+1
37 months ago
CTT-Enhanced-PX4-Autopilot-Exploit-CVE-2026-32743 preview

CTT-Enhanced-PX4-Autopilot-Exploit-CVE-2026-32743

GitHubsimoesctt/ctt-enhanced-px4-autopilot-exploit-cve-2026-32743

Exploit for CVE-2026-32743, a stack buffer overflow in PX4 Autopilot's MavlinkLogHandler, delivering a persistent denial-of-service via a 33-layer…

binary-exploitationexploitationexploit-frameworks+4
3 months ago
windows-smb-vulnerability-framework-cve-2025-33073 preview

windows-smb-vulnerability-framework-cve-2025-33073

GitHubsfrdevelopment/windows-smb-vulnerability-framework-cve-2025-33073

Research framework for CVE-2025-33073, a Windows SMB Client privilege escalation vulnerability. Provides malicious SMB server and client exploit…

exploitationexploit-frameworkspenetration-testing+2
610 months ago
CVE-2020-6418 preview

CVE-2020-6418

GitHuba-mansilla/cve-2020-6418

Single-stage exploit chain for CVE-2020-6418 (Chrome RCE) chained with Windows privilege escalation to SYSTEM, with build scripts and prebuilt…

binary-exploitationexploitationexploit-frameworks+4
1 day ago
BlueToolkit preview

BlueToolkit

GitHubsgxgsx/bluetoolkit

Modular Bluetooth Classic (BR/EDR) vulnerability testing framework with reconnaissance, exploit modules for 43 public attacks/CVEs, and structured…

bluetooth-securitycurated-resourcesexploitation+5
7299 days ago
VulnHub-DC1-Writeup preview

VulnHub-DC1-Writeup

GitHubprapul1/vulnhub-dc1-writeup

VulnHub DC-1 boot-to-root — exploiting CVE-2018-7600 (Drupalgeddon2) for RCE, extracting DB credentials from settings.php, forging admin password…

ctfeducationexploitation+9
12 months ago
WP2Shell preview

WP2Shell

GitHubg0d150ne/wp2shell

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

exploitationexploit-frameworkspayload-development+7
22 days ago
Empire preview

Empire

GitHubbc-security/empire

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

adversarial-attackcommand-and-controldata-exfiltration+16
5.3k1 month ago
cisco_asa_research preview

cisco_asa_research

GitHubjbaines-r7/cisco_asa_research

Cisco ASA Software and ASDM Security Research

exploitationexploit-frameworksinformation-gathering+7
873 years ago
PowerSploit preview

PowerSploit

GitHubzerodaylab/powersploit

PowerSploit - A PowerShell Post-Exploitation Framework

command-and-controldata-exfiltrationexploit-frameworks+7
2404 years ago
Apache-Lua-Buffer-Overflow-Exploit-CVE-2021-44790 preview

Apache-Lua-Buffer-Overflow-Exploit-CVE-2021-44790

GitHubcerberusmrxi/apache-lua-buffer-overflow-exploit-cve-2021-44790

Apache HTTP Server 2.4.x mod_lua Buffer Overflow (CVE-2021-44790) - Advanced exploitation framework with fingerprinting, multi-stage scanning, plugin…

exploitationexploit-frameworksinformation-gathering+3
125 days ago
APEX preview

APEX

GitHubluemmelsec/apex

Azure Post Exploitation Framework

cloud-securitydata-exfiltrationexploit-frameworks+4
24810 months ago
NetMRI-2014-3418 preview

NetMRI-2014-3418

GitHubdepthsecurity/netmri-2014-3418

Metasploit module exploiting InfoBlox Network Automation CVE-2014-3418 command injection to create a sudo user and deliver a reverse Meterpreter…

exploitationexploit-frameworkspenetration-testing+2
912 years ago
MSF-Testing-Scripts preview

MSF-Testing-Scripts

GitHubh00die/msf-testing-scripts

Metasploit modules in testing

exploitationexploit-frameworkshardware-iot-security+5
167 years ago
Previous12…14Next