Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
167 results
AMSI-Bypass preview

AMSI-Bypass

GitHubsynacktiv/amsi-bypass

Lists of AMSI triggers (VBA, JScript / VBScript)

curated-resourcesids-ips-evasionpenetration-testing+4
32
7 years ago
mora-hwbp preview

mora-hwbp

GitHubdovughs/mora-hwbp

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

adversarial-attackdebuggersdefensive-tools+3
1613 days ago
Neo preview

Neo

GitHubstillbigjosh/neo

The NeoC2 Framework

command-and-controlexploit-frameworksids-ips-evasion+8
364 days ago
siphondns preview

siphondns

GitHubttpreport/siphondns

Covert data exfiltration via DNS

adversarial-attackcommand-and-controldata-exfiltration+3
531 year ago
nimcrypt preview

nimcrypt

GitHubchaelsoo/nimcrypt

Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

anti-botcommand-and-controlencryption-decryption-tools+6
281 month ago
CVE-2020-16899 preview

CVE-2020-16899

GitHubadvanced-threat-research/cve-2020-16899

CVE-2020-16899 - Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

dns-analysisids-ips-evasionintrusion-detection+3
205 years ago
CVE-2022-26937 preview

CVE-2022-26937

GitHubcorelight/cve-2022-26937

Zeek package detecting CVE-2022-26937 exploitation attempts against Windows NFS servers via Network Lock Manager protocol analysis.

exploitationids-ips-evasionintrusion-detection+2
71 month ago
dyen preview

dyen

GitHubcenobyte-vincit/dyen

In-memory Mach-O dylib loader for stock macOS Python; decrypts, maps, and runs payloads without dlopen or writing to disk, with optional encrypted…

binary-analysiscryptographyids-ips-evasion+4
14 days ago
mime-is-broken preview

mime-is-broken

GitHubnoxxi/mime-is-broken

Test cases for broken MIME and tools to generate and process these

email-securityfuzzingids-ips-evasion+2
64 years ago
CVE-2025-47827 preview

CVE-2025-47827

GitHubzedeldi/cve-2025-47827

PoC and vulnerability report for CVE-2025-47827.

binary-exploitationeducationexploitation+8
49 months ago
dameflare preview

dameflare

GitHubboydhacks/dameflare

Python 3 exploit for CVE-2019-3980. Unauthenticated RCE as SYSTEM via SolarWinds Dameware MRC smart card authentication bypass.

command-and-controlexploitationids-ips-evasion+6
35 months ago
CVE-2019-17240 preview

CVE-2019-17240

GitHubpingport80/cve-2019-17240

This is the exploit of CVE-2019-17240.

authenticationexploitationids-ips-evasion+2
35 years ago
cve-2020-27358-27359 preview

cve-2020-27358-27359

GitHubsebastian-mora/cve-2020-27358-27359

CVE-2020-27358 and CVE-2020-27359

exploitationids-ips-evasioninformation-gathering+3
35 years ago
CVE-2025-10041 preview

CVE-2025-10041

GitHubnxploited/cve-2025-10041

Flex QR Code Generator <= 1.2.5 - Unauthenticated Arbitrary File Upload

exploitationids-ips-evasionpayload-generation+3
310 months ago
CVE-2025-5777-CitrixBleed preview

CVE-2025-5777-CitrixBleed

GitHubrickgeex/cve-2025-5777-citrixbleed

CitrixBleed-2 (CVE-2025-5777) – proof-of-concept exploit for NetScaler ADC/Gateway “memory bleed”

exploitationids-ips-evasioninformation-gathering+3
11 year ago
CVE-2023-27100 preview

CVE-2023-27100

GitHubdaroknet/cve-2023-27100

Exploit for CVE-2023-27100 bypassing pfSense anti-brute force protection via X-Forwarded-For header manipulation and anti-CSRF token reuse.

authenticationexploitationids-ips-evasion+3
23 years ago
Moniker-Link--CVE-2024-21413- preview

Moniker-Link--CVE-2024-21413-

GitHubbhatbhupendra/moniker-link--cve-2024-21413-

Educational guide on CVE-2024-21413, the Outlook zero-click Moniker Link vulnerability, covering attack flow, NTLM credential capture, detection with…

educationemail-securityexploitation+7
4 months ago
CVE-2022-30190-Follina-Lab preview

CVE-2022-30190-Follina-Lab

GitHubu1tr0nex/cve-2022-30190-follina-lab

Full exploit chain lab and Suricata IDS detection for CVE-2022-30190 (Follina) - MSDT RCE

command-and-controleducationexploitation+7
3 months ago
Previous1…78910Next