Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
iDescriptor preview

iDescriptor

GitHubidescriptor/idescriptor

A free, open-source, and cross-platform iDevice management tool

digital-forensicsforensicsinformation-gathering+6
4.3k
2 days ago
Mobile-Security-Framework-MobSF preview

Mobile-Security-Framework-MobSF

GitHubmobsf/mobile-security-framework-mobsf

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

android-securityapi-security-testingdevsecops+8
21.7k7 days ago
maswe preview

maswe

GitHubowasp/maswe

OWASP enumeration of common security and privacy weaknesses in mobile applications, serving as a reference bridging the MASVS verification standard…

android-securitycurated-resourceseducation+4
4012 days ago
mastg preview

mastg

GitHubowasp/mastg

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

android-securitycryptographydynamic-analysis-sandboxing+9
13.1k26 days ago
ipatool preview

ipatool

GitHubmajd/ipatool

Command-line tool that allows searching and downloading app packages (known as ipa files) from the iOS App Store

information-gatheringios-securitymobile-app-pentesting+2
9.9k26 days ago
ioscpy preview

ioscpy

GitHublautarovculic/ioscpy

Now you can mirror and control your jailbroken iPhone over USB

information-gatheringios-securitymobile-security+3
1841 month ago
CVE-2026-28867-PoC preview

CVE-2026-28867-PoC

GitHubspeedyfriend433/cve-2026-28867-poc

Kernel info leak Proof of Concept patched in iOS 26.4 / macOS 26.4

exploitationinformation-gatheringios-security+1
111 month ago
frida-ipa-extract preview

frida-ipa-extract

GitHublautarovculic/frida-ipa-extract

Robust Frida-based tool to dump decrypted iOS apps as .ipa from a jailbroken device supports App Store, sideloaded and system.

information-gatheringios-securitymobile-app-pentesting+3
1175 months ago
appledb_rs preview

appledb_rs

GitHubsynacktiv/appledb_rs

Curated database of Apple internal artifacts (entitlements, frameworks, device versions) with API, CLI, and WebUI for iOS/macOS security research and…

curated-resourcesinformation-gatheringios-security+3
2710 months ago
masvs preview

masvs

GitHubowasp/masvs

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

android-securitycurated-resourceseducation+3
2.4k11 months ago
ipwndfu preview

ipwndfu

GitHubaxi0mx/ipwndfu

open-source jailbreaking tool for many iOS devices

binary-exploitationexploitationhardware-security+5
7.4k2 years ago
Ios-Safari-Mallicous-Extension-Example preview

Ios-Safari-Mallicous-Extension-Example

GitHubspiralbl0ck/ios-safari-mallicous-extension-example

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

exploitationinformation-gatheringios-security+3
2 years ago
cve-2023-40429-ez-device-name preview

cve-2023-40429-ez-device-name

GitHubbiscuitehh/cve-2023-40429-ez-device-name

CVE-2023-40429: An app may be able to access sensitive user data.

exploitationinformation-gatheringios-security+3
52 years ago
cve-2022-46718-leaky-location preview

cve-2022-46718-leaky-location

GitHubbiscuitehh/cve-2022-46718-leaky-location

CVE-2022-46718: an app may be able to read sensitive location information.

exploitationinformation-gatheringios-security+3
273 years ago
ipa-scope preview

ipa-scope

GitHubxcodeon1/ipa-scope

Static analysis tool for iOS applications that extracts links, API keys, subdomains, binary info, linked libraries, and strings to aid mobile…

information-gatheringios-securitymobile-app-pentesting+3
243 years ago
mas-crackmes preview

mas-crackmes

GitHubowasp/mas-crackmes

The MAS Crackmes aka. UnCrackable Apps, a collection of mobile reverse engineering challenges part of the OWASP MAS project.

android-securitybinary-analysisctf+6
363 years ago
the-poor-mans-obfuscator preview

the-poor-mans-obfuscator

GitHubromainthomas/the-poor-mans-obfuscator

Binary & scripts associated with "The Poor Man's Obfuscator" presentation

android-securitybinary-analysiseducation+3
2274 years ago
ios-gamed-0day preview

ios-gamed-0day

GitHubillusionofchaos/ios-gamed-0day

iOS gamed exploit (fixed in 15.0.2)

exploitationinformation-gatheringios-security+3
4364 years ago
Previous12Next