Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
68 results
iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201 preview

iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201

GitHubjgoyd/ios-attack-chain-cve-2025-31200-cve-2025-31201

CVE-2025-31200 is a zero-day, zero-click RCE in iOS CoreAudio’s AudioConverterService, triggered by a malicious audio file via iMessage/SMS.…

binary-exploitationbluetooth-securityexploitation+8
204
4 months ago
novahot preview
Archived

novahot

GitHubchrisallenlane/novahot

A webshell framework for penetration testers.

command-and-controlexploit-frameworkspayload-generation+3
2991 year ago
WinRAR-CVE-2023-38831 preview

WinRAR-CVE-2023-38831

GitHubxaitax/winrar-cve-2023-38831

This module exploits a vulnerability in WinRAR (CVE-2023-38831). When a user opens a crafted RAR file and its embedded document, a script is…

exploitationexploit-frameworkspayload-generation+3
173 years ago
Copy-fail-CVE-2026-31431-Exploit-in-C preview

Copy-fail-CVE-2026-31431-Exploit-in-C

GitHubmr-bv/copy-fail-cve-2026-31431-exploit-in-c

C exploit for CVE-2026-31431, a Linux kernel page-cache corruption vulnerability in the AF_ALG AEAD path, using splice() to influence cached file…

binary-exploitationexploitationexploit-frameworks+1
4 months ago
CVE-2026-31431-Copy-Fail---Advanced-LPE-Proof-of-Concept---C-Rewrite preview

CVE-2026-31431-Copy-Fail---Advanced-LPE-Proof-of-Concept---C-Rewrite

GitHubiblamenear/cve-2026-31431-copy-fail---advanced-lpe-proof-of-concept---c-rewrite

Copy Fail (CVE-2026-31431) is a logic bug in the Linux kernel's authencesn cryptographic template. It lets an unprivileged local user trigger a…

binary-exploitationexploitationexploit-frameworks+2
4 months ago
metasploit-framework preview
Archived

metasploit-framework

GitHubmarkoarmitage/metasploit-framework

app turn nil publics and privates into blanks 3 months ago config Use bundler/setup for more graceful bundler related failures 11 days ago data…

command-and-controlexploitationexploit-frameworks+8
55 years ago
cve-2015-3306-lab preview

cve-2015-3306-lab

GitHubdiegslva/cve-2015-3306-lab

Reproducible Docker lab + raw-socket exploit for CVE-2015-3306 (ProFTPD mod_copy pre-auth arbitrary file copy) — a patch-diffing learning exercise

educationexploitationexploit-frameworks+4
18 days ago
pbck-exploit preview

pbck-exploit

GitHubshinthink/pbck-exploit

📤 Mass exploitation framework for CVE-2026-56290 — Page Builder CK Joomla unauthenticated file upload to RCE

exploit-frameworkspayload-developmentpenetration-testing+4
32 months ago
CVE-2025-24071-msfvenom preview

CVE-2025-24071-msfvenom

GitHubfolks-iwd/cve-2025-24071-msfvenom

Metasploit module for CVE-2025-24071 - Windows NTLM Hash Leak via .library-ms

exploitationexploit-frameworkspassword-attacks+2
251 year ago
-EXPLOIT-CVE-2023-36025 preview

-EXPLOIT-CVE-2023-36025

GitHubcoolman6942o/-exploit-cve-2023-36025

Windows SmartScreen Security Feature Bypass Vulnerability

command-and-controlexploitationexploit-frameworks+2
52 years ago
copy-fail-CVE-2026-31431 preview

copy-fail-CVE-2026-31431

GitHubrio128128/copy-fail-cve-2026-31431

Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.

binary-exploitationcloud-securitycontainer-security+6
4 months ago
cve-2025-24054 preview

cve-2025-24054

GitHubfomovet/cve-2025-24054

POC for CVE-2025-24054

command-and-controlexploitationexploit-frameworks+3
3 months ago
ThisSeemsWrong preview

ThisSeemsWrong

GitHubmichalbednarski/thisseemswrong

Writeup and exploit for CVE-2024-49746: Android's Parcel::continueWrite closing File Descriptors that are later used

android-securitybinary-exploitationexploit-frameworks+3
4711 months ago
PackMyPayload preview

PackMyPayload

GitHubmgeeky/packmypayload

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats.…

container-securityexploit-frameworkspayload-development+3
1.2k3 years ago
Medusa preview

Medusa

GitHubmythicagents/medusa

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

command-and-controlexploit-frameworkslateral-movement+8
2121 month ago
WdToggle preview

WdToggle

GitHuboutflanknl/wdtoggle

A Beacon Object File (BOF) for Cobalt Strike which uses direct system calls to enable WDigest credential caching.

exploit-frameworkspost-exploitationred-teaming
2183 years ago
RDPHijack-BOF preview

RDPHijack-BOF

GitHubnetero1010/rdphijack-bof

Cobalt Strike Beacon Object File (BOF) that uses WinStationConnect API to perform local/remote RDP session hijacking.

exploit-frameworkslateral-movementpenetration-testing+2
3184 years ago
amd-ryzen-master-driver-v17-exploit preview

amd-ryzen-master-driver-v17-exploit

GitHubtijme/amd-ryzen-master-driver-v17-exploit

Cobalt Strike (CS) Beacon Object File (BOF) for kernel exploitation using AMD's Ryzen Master Driver (version 17).

binary-exploitationexploitationexploit-frameworks+4
1603 years ago
Previous1234Next