Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
261 results
Potato preview

Potato

GitHubfoxglovesec/potato

Windows local privilege escalation exploit using NBNS spoofing, fake WPAD proxy, and HTTP-to-SMB NTLM relay to gain NT AUTHORITY\SYSTEM access.

authenticationexploitationlateral-movement+5
7455 years ago
Driver-PiDqSerializationWrite-Example preview

Driver-PiDqSerializationWrite-Example

GitHubgmh5225/driver-pidqserializationwrite-example

How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver

binary-analysisdebuggersdynamic-analysis-sandboxing+5
23 years ago
Copy-Fail-CVE-2026-31431-Kubernetes-PoC preview

Copy-Fail-CVE-2026-31431-Kubernetes-PoC

GitHubstarscow/copy-fail-cve-2026-31431-kubernetes-poc

Proof-of-concept demonstrating container escape on Kubernetes via CVE-2026-31431 kernel page-cache corruption, achieving node-level code execution…

container-escapeeducationexploitation+2
4 months ago
CVE-2020-10770-keycloak-exploit-poc preview

CVE-2020-10770-keycloak-exploit-poc

GitHub0xlyvio/cve-2020-10770-keycloak-exploit-poc

Step-by-step guide to reproduce the Keycloak blind SSRF vulnerability (CVE-2020-10770) with Docker setup, listener configuration, and mitigation…

educationexploitationpenetration-testing+3
7 days ago
CVE-2015-8562 preview

CVE-2015-8562

GitHubdmonst3r/cve-2015-8562

Joomla 1.5 - 3.4.5 Object Injection RCE X-Forwarded-For header

exploitationpenetration-testingremote-access-tool+2
49 years ago
WordPressMassExploiter preview

WordPressMassExploiter

GitHubdmonst3r/wordpressmassexploiter

[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

exploitationinformation-gatheringreconnaissance+3
308 years ago
gha-lab-e8902eccd3 preview

gha-lab-e8902eccd3

GitHubpvharmo2/gha-lab-e8902eccd3

Security research lab: reproduction of CVE-2025-52467 (pgai pull_request_target workflow code execution / GITHUB_TOKEN exfiltration) — snapshot of…

curated-resourceseducationexploitation+1
8 days ago
CVE-2026-19745 preview

CVE-2026-19745

GitHubdrbloop2000/cve-2026-19745

Learn how I found my first two CVEs by pure accident.

exploitationiot-securityvulnerability-analysis+1
214 days ago
CrackMeZ3S-CTF-CrackMe-Tutorial preview

CrackMeZ3S-CTF-CrackMe-Tutorial

GitHubpelock/crackmez3s-ctf-crackme-tutorial

How to write a CrackMe for a CTF competition. Source code, technical explanation, anti-debugging and anti reverse-engineering tricks.

binary-analysisctfeducation+2
473 years ago
OWN-Defender preview

OWN-Defender

GitHubnirvanaon/own-defender

Research project reverse-engineering Windows Security Center COM interfaces to trace AV registration through ATL, vtable, WSCAPI, and RPC, with…

binary-analysisdefensive-toolseducation+2
3616 days ago
imMapper preview

imMapper

GitHubioallocate/immapper

Demonstration of Abusing the Vulnerable driver AmdTools64.sys for Physical R/W.

binary-exploitationeducationexploitation+2
1317 days ago
CVE-2019-18634-writeup preview

CVE-2019-18634-writeup

GitHubdevteam6rabbit/cve-2019-18634-writeup

analysis of the sudo buffer overflow affect sudo version <1.8.26 and how to use GCC to compile publicly availible exploits

binary-exploitationctfeducation+4
8 months ago
CVE-2026-0073-Research preview

CVE-2026-0073-Research

GitHubnovaek/cve-2026-0073-research

CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.

binary-analysisexploitationreverse-engineering+2
54 months ago
c-copy-fail preview

c-copy-fail

GitHubopenpixelsystems/c-copy-fail

C-based exploit for CVE-2026-31431 in the Linux Kernel Crypto API, targeting aarch64 and amd64 architectures with shellcode generation and ancillary…

binary-exploitationexploitationexploit-frameworks+3
14 months ago
cve_2026_31431_audit preview

cve_2026_31431_audit

GitHubmariohy/cve_2026_31431_audit

A security auditing toolkit for CVE-2026-31431 vulnerability research

exploitationpenetration-testingpost-exploitation+3
4 months ago
FortiSandbox-RCE-Exploit-CVE-2026-39808 preview

FortiSandbox-RCE-Exploit-CVE-2026-39808

GitHubynsmroztas/fortisandbox-rce-exploit-cve-2026-39808

Unauthenticated RCE scanner for FortiSandbox CVE-2026-39808 with canary-based verification, command execution, and pipeline integration for mass…

command-and-controlexploitationpenetration-testing+3
264 months ago
CVE-2021-34600 preview

CVE-2021-34600

GitHubx41sec/cve-2021-34600

Proof-of-concept exploit for CVE-2021-34600, demonstrating a key generation vulnerability in Telenot access control systems using Proxmark3 RFID…

exploitationhardware-hackinghardware-iot-security+3
34 years ago
cve-2021-3864 preview

cve-2021-3864

GitHubwalac/cve-2021-3864

Proof-of-concept exploit for CVE-2021-3864, a privilege escalation vulnerability in logrotate, demonstrating core file generation to achieve root…

exploitationpenetration-testingprivilege-escalation+2
4 years ago
Previous12…15Next