Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
85 results
wanderer preview

wanderer

GitHubgh0x0st/wanderer

An open-source process injection enumeration tool written in C#

information-gatheringpenetration-testing
1743 years ago
xpid preview

xpid

GitHubkrisnova/xpid

Linux Process Discovery. C Library, Go bindings, Runtime.

forensicsinformation-gathering
2244 years ago
Inspector preview

Inspector

GitHubgraniet/inspector

The Inspector tool is a privilege escalation helper (PoC), easy to deployed on web server, this tool can list process running with root, check kernel…

information-gatheringpenetration-testingprivilege-escalation+1
1208 years ago
enumhandles_BOF preview

enumhandles_BOF

GitHuboctoberfest7/enumhandles_bof

Cobalt Strike BOF for live Windows enumeration of open file handles, revealing which process has locked a target file on disk during…

information-gatheringpenetration-testingpost-exploitation+2
1262 years ago
Enumprotections_BOF preview

Enumprotections_BOF

GitHuboctoberfest7/enumprotections_bof

A BOF to enumerate system process, their protection levels, and more.

information-gatheringpenetration-testingpost-exploitation+4
1241 year ago
PPEnum preview

PPEnum

GitHubrasta-mouse/ppenum

Simple BOF to read the protection level of a process

command-and-controlinformation-gatheringpenetration-testing+2
1233 years ago
process-enumeration-stealth preview

process-enumeration-stealth

GitHublloydlabs/process-enumeration-stealth

Stealth Windows process enumeration PoC that lists PIDs using NTFS via NtQueryInformationFile, bypassing standard monitoring APIs and enabling EDR…

ids-ips-evasioninformation-gatheringpost-exploitation+2
842 years ago
cowitness preview

cowitness

GitHubstolenusername/cowitness

CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to mimic an…

dns-analysisinformation-gatheringpenetration-testing+3
1242 years ago
HashSiphon preview

HashSiphon

GitHubivancabrera02/hashsiphon

Extracts the current user's NetNTLMv2 hash via HTTP authentication proxying, avoiding direct SSPI calls; v2 delegates auth to the BITS service to…

defensive-toolsinformation-gatheringpassword-attacks+3
361 month ago
lazyrecon preview

lazyrecon

GitHubjhaddix/lazyrecon

This script is intended to automate your reconnaissance process in an organized fashion

information-gatheringnetwork-mappingpenetration-testing+4
478 years ago
procinfo preview

procinfo

GitHubwenekar/procinfo

Get process information straight from bash, minimal dependencies.

container-securitygeneral-purpose-utilitiesinformation-gathering+3
303 months ago
mhf preview

mhf

GitHubstuxctf/mhf

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

android-securityinformation-gatheringios-security+5
289 months ago
CVE-2021-45067 preview

CVE-2021-45067

GitHubhacksysteam/cve-2021-45067

Exploit for Adobe Reader DC out-of-bounds read vulnerability (CVE-2021-45067) that leaks sensitive information from the sandboxed process via…

binary-exploitationdata-exfiltrationexploitation+3
233 years ago
CVE-2024-7971 preview

CVE-2024-7971

GitHubmistymntncop/cve-2024-7971

Proof-of-concept writeup for CVE-2024-7971, detailing the vulnerability discovery process and providing a functional POC for security researchers and…

exploitationinformation-gatheringpenetration-testing+2
361 year ago
Sandroid_Dexray-Intercept preview

Sandroid_Dexray-Intercept

GitHubfkie-cad/sandroid_dexray-intercept

A Android malware analysis tool that creates comprehensive runtime profiles by hooking into application behavior across cryptography, file systems,…

android-securitycryptographydynamic-analysis-sandboxing+8
1028 days ago
CVE-2018-10583 preview

CVE-2018-10583

GitHubmrtaheramine/cve-2018-10583

An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate an SMB…

exploitationinformation-gatheringmalware-analysis+2
98 years ago
CVE-2022-41272 preview

CVE-2022-41272

GitHubredrays-io/cve-2022-41272

Improper access control in SAP NetWeaver Process Integration

exploitationinformation-gatheringpenetration-testing+2
33 years ago
nvidia-gpu-security-poc preview

nvidia-gpu-security-poc

GitHubabhinavagarwal07/nvidia-gpu-security-poc

PoCs and evidence for two NVIDIA Linux GPU driver findings closed by the vendor as expected/intended behavior: cross-UID GPU process telemetry via…

exploitationhardware-iot-securityinformation-gathering+2
1 month ago
Previous12345Next