Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
354 results
CVE-2023-28229 preview

CVE-2023-28229

GitHuby3a/cve-2023-28229

Proof-of-concept exploit for Windows CNG KeyIso RPC elevation of privilege and sandbox escape, demonstrating exploitation of CVE-2023-28229.

binary-exploitationexploitationexploit-frameworks+2
136
2 years ago
CVE-2014-4322_poc preview

CVE-2014-4322_poc

GitHubretme7/cve-2014-4322_poc

Gain privileges:system -> root,as a part of https://github.com/retme7/CVE-2014-7911_poc

android-securitybinary-exploitationexploitation+4
9411 years ago
ds3-nrssr-rce preview

ds3-nrssr-rce

GitHubtremwil/ds3-nrssr-rce

Documentation and proof of concept code for CVE-2022-24125 and CVE-2022-24126.

binary-exploitationeducationexploitation+8
1694 years ago
pois0nSword preview

pois0nSword

GitHubgenericcoding/pois0nsword

A demonstration of read write using cve-2025-43529 and userland PAC bypass on iOS 26.1

binary-exploitationexploitationexploit-frameworks+5
661 month ago
webdiscover preview

webdiscover

GitHubv1n1v131r4/webdiscover

The purpose of this script is to automate the web enumeration process and search for exploits

exploit-frameworksreconnaissancevulnerability-scanners+1
1174 years ago
Cobaltstrike_BOFLoader preview

Cobaltstrike_BOFLoader

GitHubcodextf2/cobaltstrike_bofloader

open source port/reimplementation of the Cobalt Strike BOF Loader as is

binary-exploitationexploit-frameworkspayload-development+3
746 months ago
Remote-BOF-Runner preview

Remote-BOF-Runner

GitHubpard0p/remote-bof-runner

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

binary-exploitationcommand-and-controleducation+8
1028 months ago
C4 preview

C4

GitHubprofessionallyevil/c4

Cyberdelia, a Collection of Command and Control frameworks

command-and-controlcurated-resourceseducation+3
646 years ago
CVE-2025-24990_POC preview

CVE-2025-24990_POC

GitHubmoiz-2x/cve-2025-24990_poc

Proof of Concept CVE-2025-24990 (Agere Systems's driver)

binary-exploitationexploitationexploit-frameworks+2
5910 months ago
CVE-2024-26229-BOF preview

CVE-2024-26229-BOF

GitHubapkc/cve-2024-26229-bof

BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel

binary-exploitationexploitationexploit-frameworks+5
292 years ago
CVE-2026-31431-Linux-Copy-Fail preview

CVE-2026-31431-Linux-Copy-Fail

GitHubiss4cf0ng/cve-2026-31431-linux-copy-fail

Rust-based local privilege escalation exploit for CVE-2026-31431, enabling execution of custom shellcode such as Meterpreter on Linux systems.

binary-exploitationexploitationexploit-frameworks+4
564 months ago
siemframework preview

siemframework

GitHubelevenpaths/siemframework

Modular Python3 attack framework for automating exploitation of SIEM platforms (Splunk, Graylog, OSSIM, QRadar, McAfee) via credential theft, payload…

exploit-frameworksinformation-gatheringnetwork-mapping+7
426 years ago
blankspace preview

blankspace

GitHubjbaines-r7/blankspace

Proof of Concept for EFSRPC Arbitrary File Upload (CVE-2021-43893)

exploitationexploit-frameworkslateral-movement+2
644 years ago
CVE-2025-24203-iOS-Exploit-With-Error-Logging preview

CVE-2025-24203-iOS-Exploit-With-Error-Logging

GitHubgeosn0w/cve-2025-24203-ios-exploit-with-error-logging

Slightly improved exploit of the CVE-2025-24203 iOS vulnerability by Ian Beer of Google Project Zero

binary-exploitationexploitationexploit-frameworks+4
4110 months ago
sqlmap-nu11secur1ty preview

sqlmap-nu11secur1ty

GitHubnu11secur1ty/sqlmap-nu11secur1ty

Professional extension of sqlmap project

exploit-frameworkspayload-generationpenetration-testing+2
122 months ago
SMBGhost-LPE-Metasploit-Module preview

SMBGhost-LPE-Metasploit-Module

GitHubalmorabea/smbghost-lpe-metasploit-module

This is an implementation of the CVE-2020-0796 aka SMBGhost vulnerability, compatible with the Metasploit Framework

exploitationexploit-frameworkspenetration-testing+2
206 years ago
cve-2019-0708 preview

cve-2019-0708

GitHubmekhalleh/cve-2019-0708

Metasploit module for massive Denial of Service using #Bluekeep vector.

exploitationexploit-frameworkspenetration-testing+1
236 years ago
DRA_writeup preview

DRA_writeup

GitHubkpn-ciso/dra_writeup

Writeup of the Oracle DSR stack buffer overflow vulnerability (DRA) CVE-2014-6598

binary-exploitationeducationexploitation+5
1411 years ago
Previous1…789…20Next