Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
622 results
AMSI-ETW-Patch preview

AMSI-ETW-Patch

GitHubmr-un1k0d3r/amsi-etw-patch

Patch AMSI and ETW

ids-ips-evasionpost-exploitationred-teaming+1
251
2 years ago
Unwinder preview

Unwinder

GitHubkudaes/unwinder

Call stack spoofing for Rust

ids-ips-evasionpost-exploitationred-teaming+2
3841 year ago
Venom preview

Venom

GitHubidov31/venom

Venom is a library that meant to perform evasive communication using stolen browser socket

ids-ips-evasioncommand-and-controlred-teaming+1
3952 years ago
WTSRM2 preview

WTSRM2

GitHubrad9800/wtsrm2
ids-ips-evasionred-teamingpayload-development
1643 years ago
CobaltWhispers preview

CobaltWhispers

GitHubnvisosecurity/cobaltwhispers

CobaltWhispers is an aggressor script that utilizes a collection of Beacon Object Files (BOF) for Cobalt Strike to perform process injection,…

persistence-mechanismsids-ips-evasionpost-exploitation+4
2403 years ago
Interceptor preview

Interceptor

GitHubnvisosecurity/interceptor

Interceptor is a kernel driver focused on tampering with EDR/AV solutions in kernel space

ids-ips-evasionpost-exploitationred-teaming
1353 years ago
secret_handshake preview

secret_handshake

GitHubjconwell/secret_handshake

A prototype malware C2 channel using x509 certificates over mTLS

ids-ips-evasiondata-exfiltrationcommand-and-control+1
1532 years ago
hwbp4mw preview

hwbp4mw

GitHubrad9800/hwbp4mw
ids-ips-evasiondebuggerspost-exploitation+2
2733 years ago
AMSI-patches-learned-till-now preview

AMSI-patches-learned-till-now

GitHubreveng007/amsi-patches-learned-till-now

I have documented all of the AMSI patches that I learned till now

ids-ips-evasionreverse-engineeringpost-exploitation+3
729 months ago
HWSyscalls preview

HWSyscalls

GitHubdec0ne/hwsyscalls

HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.

ids-ips-evasionpost-exploitationpenetration-testing+2
7353 years ago
Split preview

Split

GitHubkudaes/split

Apply a divide and conquer approach to bypass EDRs

ids-ips-evasionshellcodepost-exploitation+3
2862 years ago
ntqueueapcthreadex-ntdll-gadget-injection preview

ntqueueapcthreadex-ntdll-gadget-injection

GitHublloydlabs/ntqueueapcthreadex-ntdll-gadget-injection

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

ids-ips-evasionshellcodepost-exploitation+3
2663 years ago
lolbin-poc preview

lolbin-poc

GitHubmrexodia/lolbin-poc

Small PoC of using a Microsoft signed executable as a lolbin.

ids-ips-evasionpost-exploitationpenetration-testing+1
1403 years ago
Win32_Offensive_Cheatsheet preview

Win32_Offensive_Cheatsheet

GitHubmatthieu-hackwitharts/win32_offensive_cheatsheet

Win32 and Kernel abusing techniques for pentesters

persistence-mechanismsexploitationids-ips-evasion+8
9812 years ago
BypassAV preview

BypassAV

GitHubmatro7sh/bypassav

This map lists the essential techniques to bypass anti-virus and EDR

ids-ips-evasionpenetration-testingeducation+2
3.4k1 year ago
UnhookingPatch preview

UnhookingPatch

GitHubsaadahla/unhookingpatch

Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime

ids-ips-evasionpost-exploitationred-teaming+2
3093 years ago
FilelessPELoader preview

FilelessPELoader

GitHubsaadahla/filelesspeloader

Loading Remote AES Encrypted PE in memory , Decrypted it and run it

ids-ips-evasionpost-exploitationpenetration-testing+3
1.0k2 years ago
D1rkLdr preview

D1rkLdr

GitHubsaadahla/d1rkldr

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall…

ids-ips-evasionshellcodered-teaming+1
3233 years ago
Previous1234…35Next