Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
56 results
Imperva_gzip_bypass preview

Imperva_gzip_bypass

GitHub0xhaggis/imperva_gzip_bypass

Exploit for CVE-2021-45468, an Imperva WAF bypass.

exploitationids-ips-evasionpenetration-testing+3
6
4 years ago
CVE-2020-13942 preview

CVE-2020-13942

GitHublp008/cve-2020-13942
exploitationids-ips-evasionintrusion-detection+2
65 years ago
docker-lab-cve-2017-5638-cve-2021-41773 preview

docker-lab-cve-2017-5638-cve-2021-41773

GitHubkouf320/docker-lab-cve-2017-5638-cve-2021-41773
educationexploitationids-ips-evasion+6
22 months ago
ubercookie preview

ubercookie

GitHubelpy1/ubercookie

Educational evercookie demo showing how browser storage and HTTP cache techniques can persistently re-identify a visitor.

educationfingerprint-spoofingids-ips-evasion+3
12 months ago
File-Tunnel preview

File-Tunnel

GitHubfiddyschmitt/file-tunnel

Tunnel TCP connections through a file

ids-ips-evasionlateral-movementnetwork-mapping+3
1.1k9 days ago
yolo-cage preview
Archived

yolo-cage

GitHubborenstein/yolo-cage

AI coding agents that can't exfiltrate secrets or merge their own PRs.

ai-securitycloud-securitycontainer-security+7
1096 months ago
heyserial preview
Archived

heyserial

GitHubmandiant/heyserial

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

curated-resourceseducationexploitation+6
1423 years ago
EDRs preview

EDRs

GitHubmr-un1k0d3r/edrs

Red team tool for EDR evasion: dynamically resolves syscall IDs, patches ntdll stubs, unhooks IAT hooks, and lists hooked APIs from major EDR vendors.

binary-analysiscurated-resourcesids-ips-evasion+3
2.2k4 months ago
BypassAV preview

BypassAV

GitHubmatro7sh/bypassav

This map lists the essential techniques to bypass anti-virus and EDR

curated-resourceseducationids-ips-evasion+2
3.4k1 year ago
OffensiveVBA preview

OffensiveVBA

GitHubs3cur3th1ssh1t/offensivevba

This repo covers some code execution and AV Evasion methods for Macros in Office documents

curated-resourceseducationids-ips-evasion+7
1.3k4 years ago
PowerShell-Obfuscation-Bible preview

PowerShell-Obfuscation-Bible

GitHubt3l3machus/powershell-obfuscation-bible

A collection of techniques, examples and a little bit of theory for manually obfuscating PowerShell scripts to achieve AV evasion, compiled for…

curated-resourceseducationids-ips-evasion+3
1.2k2 years ago
Win32_Offensive_Cheatsheet preview

Win32_Offensive_Cheatsheet

GitHubmatthieu-hackwitharts/win32_offensive_cheatsheet

Win32 and Kernel abusing techniques for pentesters

binary-analysiscurated-resourceseducation+8
9822 years ago
OffensiveCpp preview

OffensiveCpp

GitHublsecqt/offensivecpp

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

adversarial-attackcurated-resourcesexploitation+6
7691 year ago
Evilginx-Phishing-Infra-Setup preview

Evilginx-Phishing-Infra-Setup

GitHuban0nud4y/evilginx-phishing-infra-setup

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

command-and-controlcurated-resourceseducation+6
6021 year ago
CSPlugins preview

CSPlugins

GitHubal1ex/csplugins

Cobaltstrike Plugins

command-and-controlcurated-resourcesexploitation+4
4145 years ago
AV-EDR-Lab-Environment-Setup preview

AV-EDR-Lab-Environment-Setup

GitHuban0nud4y/av-edr-lab-environment-setup

AV/EDR Lab environment setup references to help in Malware development

curated-resourcesdefensive-toolseducation+6
4701 year ago
Payload-Download-Cradles preview

Payload-Download-Cradles

GitHubvirtualalllocex/payload-download-cradles

This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR in context…

curated-resourcesids-ips-evasionpayload-development+3
2584 years ago
Invoke-ArgFuscator preview

Invoke-ArgFuscator

GitHubwietze/invoke-argfuscator

Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native…

curated-resourcesids-ips-evasionpayload-generation+2
2806 months ago
Previous1234Next