Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
49 results
adobe-flash-cve2018-15982 preview

adobe-flash-cve2018-15982

GitHubkphongagsorn/adobe-flash-cve2018-15982

Metasploit module and Python script to generate SWF payloads exploiting CVE-2018-15982, a use-after-free vulnerability in Adobe Flash Player enabling…

exploitationexploit-frameworkspayload-generation+2
11
6 years ago
CVE-2021-4034 preview

CVE-2021-4034

GitHubkirill89/cve-2021-4034

Dockerized exploit for Polkit privilege escalation (CVE-2021-4034) that grants root access via pkexec, with a simple script to run and verify.

exploitationexploit-frameworkspenetration-testing+2
64 years ago
copy-fail-cve-2026-31431-aarch64 preview

copy-fail-cve-2026-31431-aarch64

GitHubisw-9/copy-fail-cve-2026-31431-aarch64

Python exploit for CVE-2026-31431 targeting aarch64, verified on Ubuntu 25.10. Executes the provided script to trigger the vulnerability.

binary-exploitationexploitationexploit-frameworks+2
5 months ago
Malleable-C2-Randomizer preview

Malleable-C2-Randomizer

GitHubbluscreenofjeff/malleable-c2-randomizer

A script to randomize Cobalt Strike Malleable C2 profiles and reduce the chances of flagging signature-based detection controls

command-and-controlexploit-frameworksids-ips-evasion+3
4548 years ago
kimi preview

kimi

GitHubchaitanyaharitash/kimi

Script to generate malicious debian packages (debain trojans).

command-and-controlexploit-frameworksmalware-analysis+5
1247 years ago
Mythic-Macro-Generator preview

Mythic-Macro-Generator

GitHubcedowens/mythic-macro-generator

Python3 script to generate a macro to launch a Mythic payload. Author: Cedric Owens

command-and-controlexploit-frameworkspayload-development+4
475 years ago
sploitctl preview

sploitctl

GitHubblackarch/sploitctl

Fetch, install and search exploit archives from exploit sites.

exploitationexploit-frameworksinformation-gathering+1
1182 years ago
Findsploit preview

Findsploit

GitHub1n3/findsploit

Find exploits in local and online databases instantly

exploit-frameworksinformation-gatheringpenetration-testing+2
1.9k5 years ago
webdiscover preview

webdiscover

GitHubv1n1v131r4/webdiscover

The purpose of this script is to automate the web enumeration process and search for exploits

exploit-frameworksreconnaissancevulnerability-scanners+1
1174 years ago
macro_pack preview
Archived

macro_pack

GitHubsevagas/macro_pack

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

exploit-frameworkslateral-movementpayload-generation+6
2.3k2 years ago
Adobe-Flash-Exploits_17-18 preview

Adobe-Flash-Exploits_17-18

GitHubxattam1/adobe-flash-exploits_17-18

Converted Metasploit exploits for Adobe Flash vulnerabilities CVE-2015-3090, CVE-2015-3105, CVE-2015-5119, and CVE-2015-5122 to a Python3 script.

exploitationexploit-frameworkspayload-generation+3
15 years ago
XPL-SEARCH preview

XPL-SEARCH

GitHubcoderpirata/xpl-search

Search exploits in multiple exploit databases!

exploit-frameworksinformation-gatheringosint+1
8410 years ago
Zero-Logon-Exploit preview

Zero-Logon-Exploit

GitHubsq00ky/zero-logon-exploit

Python script exploiting Zerologon (CVE-2020-1472) to perform Netlogon authentication bypass and reset domain controller password to null.

exploitationexploit-frameworkspayload-development+2
383 years ago
WinRAR-CVE-2023-38831 preview

WinRAR-CVE-2023-38831

GitHubxaitax/winrar-cve-2023-38831

This module exploits a vulnerability in WinRAR (CVE-2023-38831). When a user opens a crafted RAR file and its embedded document, a script is…

exploitationexploit-frameworkspayload-generation+3
173 years ago
MagicArch preview

MagicArch

GitLabmagicbytes/magicarch

MagicArch is a comprehensive post-installation script built with Ansible, designed to transform a basic Arch Linux installation into a fully equipped…

exploit-frameworksforensicsinformation-gathering+8
22 years ago
Beaconator preview

Beaconator

GitHubcapt-meelo/beaconator

A beacon generator using Cobalt Strike and a variety of tools.

command-and-controlexploit-frameworkspayload-generation+2
4475 years ago
berdav-CVE-2021-4034 preview

berdav-CVE-2021-4034

GitHubthejoyofhacking/berdav-cve-2021-4034

Exploit for CVE-2021-4034 (PwnKit) that provides a root shell via polkit pkexec. Includes a dry-run mode to test vulnerability and a one-liner script…

exploitationexploit-frameworkspenetration-testing+3
44 years ago
ProxyLogon-CVE-2021-26855-metasploit preview

ProxyLogon-CVE-2021-26855-metasploit

GitHubtaroballzchen/proxylogon-cve-2021-26855-metasploit

CVE-2021-26855 proxyLogon metasploit exploit script

exploit-frameworkspayload-developmentpenetration-testing+3
45 years ago
Previous123Next