Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
67 results
CVE-2013-1081 preview

CVE-2013-1081

GitHubsteponequit/cve-2013-1081

Novell ZENworks Mobile Management - LFI RCE

exploitationexploit-frameworkspayload-development+3
2
13 years ago
CVE-2026-2636_PoC preview

CVE-2026-2636_PoC

GitHuboxfemale/cve-2026-2636_poc

Proof-of-concept for CVE-2026-2636, a Windows CLFS.sys vulnerability causing BSoD via ReadFile on CreateLogFile handle, enabling unprivileged denial…

exploitationexploit-frameworksvulnerability-analysis
156 months ago
pkexec-lpe-poc preview

pkexec-lpe-poc

GitHubcallrbx/pkexec-lpe-poc

Proof-of-concept exploit for CVE-2021-4034, a local privilege escalation in pkexec, allowing arbitrary payload execution with root privileges.

exploitationexploit-frameworkspenetration-testing+2
44 years ago
iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201 preview

iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201

GitHubjgoyd/ios-attack-chain-cve-2025-31200-cve-2025-31201

CVE-2025-31200 is a zero-day, zero-click RCE in iOS CoreAudio’s AudioConverterService, triggered by a malicious audio file via iMessage/SMS.…

binary-exploitationbluetooth-securityexploitation+8
2023 months ago
kernel-mii preview

kernel-mii

GitHubtijme/kernel-mii

Cobalt Strike (CS) Beacon Object File (BOF) foundation for kernel exploitation using CVE-2021-21551.

exploit-frameworkspayload-developmentpenetration-testing+2
853 years ago
CVE-2017-16524 preview

CVE-2017-16524

GitHubrealistic-security/cve-2017-16524

Unrestricted file upload vulnerability - Web Viewer 1.0.0.193 on Samsung SRN-1670D

exploit-frameworkspayload-developmentpenetration-testing+3
48 years ago
React2Shell preview

React2Shell

GitHub4nuxd/react2shell

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

command-and-controlcontainer-escapedata-exfiltration+7
8 months ago
EQGRP preview

EQGRP

GitHubx0rz/eqgrp

Decrypted content of eqgrp-auction-file.tar.xz

command-and-controldata-exfiltrationexploitation+8
4.2k9 years ago
Stracciatella preview

Stracciatella

GitHubmgeeky/stracciatella

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

command-and-controlexploit-frameworksids-ips-evasion+7
5423 years ago
decker preview

decker

GitHubstevenaldinger/decker

Declarative penetration testing orchestration framework

exploit-frameworksinformation-gatheringpenetration-testing-frameworks+3
2967 years ago
apache_normalize_path preview

apache_normalize_path

GitHubzeop-cybersec/apache_normalize_path

Metasploit-Framework modules (scanner and exploit) for the CVE-2021-41773 and CVE-2021-42013 (Path Traversal in Apache 2.4.49/2.4.50)

exploit-frameworkspayload-developmentpenetration-testing+3
124 years ago
React2Shell preview

React2Shell

GitHubkhadafigans/react2shell

React2Shell - CVE-2025-66478 RCE Exploit

command-and-controlexploit-frameworkspayload-development+3
66 months ago
CVE-2019-9766 preview

CVE-2019-9766

GitHubmoonheadobj/cve-2019-9766

CVE-2019-9766 React

binary-exploitationeducationexploitation+6
16 years ago
Previous1234Next