Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
237 results
CVE-2026-58138 preview

CVE-2026-58138

GitHub0xblackash/cve-2026-58138

Defensive security research repository detailing CVE-2026-58138, an unauthenticated RCE in Conductor via GraalVM. Provides technical analysis,…

curated-resourcesdefensive-toolseducation+3
1
1 day ago
stealth_call preview

stealth_call

GitHubkitsune-de/stealth_call

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

anti-botdefensive-toolsexploitation+3
74 months ago
CVE-2026-31321 preview

CVE-2026-31321

GitHubcwjchoi01/cve-2026-31321

Proof-of-concept demonstrating methods to disable or bypass Windows Defender by hiding, locking, or protecting its folders, enabling persistence…

defensive-toolsexploitationprivilege-escalation+1
5 days ago
CVE-2026-36130 preview

CVE-2026-36130

GitHubcwjchoi01/cve-2026-36130

Proof-of-concept demonstrating a vulnerability that disables Microsoft Defender (MsMpEng.exe) by locking a folder and rebooting, with screenshots…

defensive-toolsexploitationincident-response+2
5 days ago
OWN-Defender preview

OWN-Defender

GitHubnirvanaon/own-defender

Research project reverse-engineering Windows Security Center COM interfaces to trace AV registration through ATL, vtable, WSCAPI, and RPC, with…

binary-analysisdefensive-toolseducation+2
3510 days ago
copy_fail preview

copy_fail

GitHubspensercai/copy_fail

Rust exploit PoC for Linux kernel LPE CVE-2026-31431 (AF_ALG page-cache write) plus eBPF runtime defense blocking AF_ALG socket creation via LSM or…

binary-exploitationdefensive-toolsexploitation+4
34 months ago
CVE-2026-34159-Vulnerability-Research-Analysis-Detection preview

CVE-2026-34159-Vulnerability-Research-Analysis-Detection

GitHubrohithronanki/cve-2026-34159-vulnerability-research-analysis-detection

Critical buffer validation bypass in deserialize_tensor() (llama.cpp < b8492). Null tensor buffer skips bounds check, enabling unauthenticated…

binary-analysisexploitationintrusion-detection+2
4 months ago
Copy-Fail---CVE-2026-31431 preview

Copy-Fail---CVE-2026-31431

GitHubsilent0x0/copy-fail---cve-2026-31431

CVE-2026-31431 "Copy Fail" - Analysis and defensive research for the Linux kernel AF_ALG privilege escalation vulnerability affecting all major…

defensive-toolsexploitationexploit-frameworks+2
4 months ago
wg.copyfail.patch preview

wg.copyfail.patch

GitHubwgnet/wg.copyfail.patch

eBPF-based workaround for CVE-2026-31431 (Copy.Fail) that filters or kills AF_ALG socket creation to prevent local privilege escalation and container…

defensive-toolsexploitationsecurity-virtualization+1
244 months ago
CVE-2026-5281-Research-Toolkit preview

CVE-2026-5281-Research-Toolkit

GitHubumair-aziz025/cve-2026-5281-research-toolkit

Chrome WebGPU Use-After-Free (CWE-416) This toolkit is for security research and defensive verification around CVE-2026-5281. Patched Chrome…

defensive-toolseducationexploitation+3
45 months ago
CVE-2021-4034 preview

CVE-2021-4034

GitHubpombredanne/cve-2021-4034

Proof-of-concept exploit for Polkit's pkexec local privilege escalation vulnerability (CVE-2021-4034), including a working exploit and patching…

educationexploitationpenetration-testing+3
4 years ago
CVE-2026-25769 preview

CVE-2026-25769

GitHubnjeru-codes/cve-2026-25769

POC for deserialization of untrusted data in wazuh leading to RCE

exploitationpenetration-testingvulnerability-analysis+1
5 months ago
EDRKiller preview

EDRKiller

GitHubgongchuang1089/edrkiller

Use cve-2026-36425 killer edr,360 can killer

binary-exploitationdefensive-toolsexploitation+3
110 days ago
Pixnapping-Attack-on-Android preview

Pixnapping-Attack-on-Android

GitHubdemining/pixnapping-attack-on-android

Pixnapping Attack: Compromising private keys and seed phrases through vulnerability CVE-2025-48561 represents a new critical threat to the Bitcoin…

android-securitycryptographyexploitation+2
1910 months ago
CVE-2021-4034-Pwnkit preview

CVE-2021-4034-Pwnkit

GitHubayoub-elbouzi/cve-2021-4034-pwnkit

PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec (CVE-2021-4034)

exploitationexploit-frameworkspenetration-testing+2
4 years ago
CVE-2026-5000 preview

CVE-2026-5000

GitHubperl-code/cve-2026-5000

Proof-of-concept demonstrating a Windows Defender bypass technique for CVE-2026-5000, intended for controlled testing and defensive research.

defensive-toolseducationexploitation+2
10 months ago
cve-2026-25676 preview

cve-2026-25676

GitHubnexxus67/cve-2026-25676

Research and proof-of-concept for CVE-2026-25676, a DLL search path hijacking vulnerability in M-Track Duo HD installer, including root cause…

binary-analysisdefensive-toolseducation+3
16 months ago
Polkit-s-Pkexec-CVE-2021-4034 preview

Polkit-s-Pkexec-CVE-2021-4034

GitHubitmarcin2211/polkit-s-pkexec-cve-2021-4034

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) demonstrating local privilege escalation in Polkit's pkexec, including patching instructions.

exploitationexploit-frameworkspenetration-testing+3
4 years ago
Previous12…14Next