Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
622 results
breakcyserver preview

breakcyserver

GitHubwaawaa/breakcyserver
privilege-escalationexploitationids-ips-evasion+2
523 years ago
Burp2Malleable preview

Burp2Malleable

GitHubcodextf2/burp2malleable

Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles

web-proxies-interceptionids-ips-evasioncommand-and-control+2
4183 years ago
CallMeWin32kDriver preview

CallMeWin32kDriver

GitHubgmh5225/callmewin32kdriver

Load your driver like win32k.sys

ids-ips-evasionpost-exploitationred-teaming+1
2574 years ago
Beginners-Guide-to-Obfuscation preview

Beginners-Guide-to-Obfuscation

GitHubbc-security/beginners-guide-to-obfuscation
ids-ips-evasioneducationred-teaming+3
1.1k2 years ago
TangledWinExec preview

TangledWinExec

GitHubdaem0nc0re/tangledwinexec

PoCs and tools for investigation of Windows process execution techniques

ids-ips-evasionreverse-engineeringshellcode+6
9586 months ago
NimicStack preview

NimicStack

GitHubfrkngksl/nimicstack

NimicStack is the pure Nim implementation of Call Stack Spoofing technique to mimic legitimate programs

ids-ips-evasionpost-exploitationred-teaming+1
954 months ago
PowerSploit preview

PowerSploit

GitHubzerodaylab/powersploit

PowerSploit - A PowerShell Post-Exploitation Framework

penetration-testing-frameworksprivilege-escalationreconnaissance+7
2394 years ago
CallStackSpoofer preview

CallStackSpoofer

GitHubwithsecurelabs/callstackspoofer

A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)

ids-ips-evasionpost-exploitationred-teaming+1
5891 year ago
rust_syscalls preview

rust_syscalls

GitHubjanoglezcampos/rust_syscalls

Single stub direct and indirect syscalling with runtime SSN resolving for windows.

ids-ips-evasionpost-exploitationred-teaming+1
2403 years ago
Qemuno preview

Qemuno

GitHubsygnialabs/qemuno

Qemuno Framework

ids-ips-evasionsecurity-virtualizationpenetration-testing+2
243 years ago
SharpWhispers preview

SharpWhispers

GitHubsecforce/sharpwhispers

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

ids-ips-evasionshellcodepost-exploitation+2
1123 years ago
Cronos preview

Cronos

GitHubidov31/cronos

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

ids-ips-evasionpost-exploitationcryptography+2
6272 years ago
Awesome-CobaltStrike preview

Awesome-CobaltStrike

GitHubzer0yu/awesome-cobaltstrike

List of Awesome CobaltStrike Resources

memory-forensicsids-ips-evasionlateral-movement+7
4.4k2 years ago
AtomicSyscall preview

AtomicSyscall

GitHubdaem0nc0re/atomicsyscall

Tools and PoCs for Windows syscall investigation.

ids-ips-evasionreverse-engineeringbinary-analysis+3
3648 months ago
Windows-SignedBinary preview

Windows-SignedBinary

GitHubmr-un1k0d3r/windows-signedbinary
hash-analysisids-ips-evasionreverse-engineering+4
2597 years ago
Bitmancer preview

Bitmancer

GitHubzimawhit3/bitmancer

Nim Library for Offensive Security Development

ids-ips-evasionshellcodepost-exploitation+4
2002 years ago
Payload-Download-Cradles preview

Payload-Download-Cradles

GitHubvirtualalllocex/payload-download-cradles

This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR in context…

payload-generationids-ips-evasionpenetration-testing+3
2584 years ago
burp-awesome-tls preview

burp-awesome-tls

GitHubsleeyax/burp-awesome-tls

Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

ids-ips-evasionwaf-bypassweb-security+3
1.9k2 months ago
Previous123…35Next