Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
62 results
CVE-2023-41898_Lab preview

CVE-2023-41898_Lab

GitHublazybear8372/cve-2023-41898_lab

Walk through CVE-2023-41898: exploit an unvalidated deep link in Home Assistant Android to load arbitrary URLs in a privileged WebView and leak a…

android-securityeducationlabs-practice+2
1 month ago
FTC-Skystone-Dark-Angels-Romania-2020 preview

FTC-Skystone-Dark-Angels-Romania-2020

GitHubchrisneagu/ftc-skystone-dark-angels-romania-2020

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC…

educationembedded-systems-securityhardware-security+3
3135 years ago
Damn-Vulnerable-Android-Components preview

Damn-Vulnerable-Android-Components

GitHubzinja-coder/damn-vulnerable-android-components

An intentionally vulnerable Android Application to demonstrate various vulnerabilities that airses in Android Components.

android-securityauthenticationctf+7
471 year ago
CVE-2021-521-Exploit preview

CVE-2021-521-Exploit

GitHubnagendrapittu/cve-2021-521-exploit

Lab Exploit (CVE-2021-521): App uses Java reflection to access Android system components, retrieving a list of all installed apps. Reflection…

android-securityeducationexploitation+3
3 years ago
ZygoteExploitDemo preview

ZygoteExploitDemo

GitHubgitamans/zygoteexploitdemo

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

android-securitybinary-exploitationeducation+7
26 months ago
OWASP-GoatDroid-Project preview
Archived

OWASP-GoatDroid-Project

GitHubnvisium-jack-mannino/owasp-goatdroid-project

*This project is no longer maintained* OWASP GoatDroid is a fully functional and self-contained training environment for educating developers and…

android-securityeducationlabs-practice+3
25612 years ago
OpenClaw_Termux preview

OpenClaw_Termux

GitHubandroidmalware/openclaw_termux

How to Install OpenClaw on an Android Phone and Control It via WhatsApp

android-securityeducationinformation-gathering+4
3227 months ago
android-kernel-exploitation-lab preview

android-kernel-exploitation-lab

GitHub0xbinder/android-kernel-exploitation-lab

This lab guides you through setting up an environment to explore CVE-2019-2215, a critical Android kernel vulnerability in the binder subsystem.

android-securitybinary-exploitationdebuggers+6
441 year ago
CVE-2024-23700 preview

CVE-2024-23700

GitHubvinh0212/cve-2024-23700

PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls…

android-securityeducationexploitation+4
14 months ago
Damn-Vulnerable-Bank preview

Damn-Vulnerable-Bank

GitHubrewanthtammana/damn-vulnerable-bank

Intentionally vulnerable Android banking app for practicing mobile security testing, featuring root detection, anti-debugging, SSL pinning, and…

android-securityeducationlabs-practice+2
7592 years ago
EVABS preview

EVABS

GitHubabhi-r3v0/evabs

An open source Android application that is intentionally vulnerable so as to act as a learning platform for Android application security beginners.

android-securityctfeducation+4
2246 years ago
Mobile-Drop-Device-SOC-Detection preview

Mobile-Drop-Device-SOC-Detection

GitHubv3ng4mxv1p3r/mobile-drop-device-soc-detection

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

educationexploitationincident-response+6
15 months ago
awesome-mobile-security preview

awesome-mobile-security

GitHubvaib25vicky/awesome-mobile-security

An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners.…

android-securitycurated-resourcesdynamic-analysis-sandboxing+8
3.5k5 years ago
android-workprofile-exploit preview

android-workprofile-exploit

GitHubhasan-al-hussein/android-workprofile-exploit

Controlled defensive analysis of CVE-2025-22442 work-profile provisioning, policy timing, and enterprise isolation.

android-securitydata-exfiltrationeducation+5
11 month ago
CVE_2019_2215 preview

CVE_2019_2215

GitHub0xbinder/cve_2019_2215

Proof-of-concept LPE exploit for Android Binder UAF that uses iovec spraying and addr_limit overwrite to achieve arbitrary kernel read/write.

android-securitybinary-exploitationeducation+5
327 days ago
android-kernel-exploitation preview

android-kernel-exploitation

GitHubcloudfuzz/android-kernel-exploitation

Hands-on workshop for learning Android kernel vulnerability analysis and exploitation, with Docker-based build environment and practical exercises.

android-securitybinary-exploitationeducation+4
6504 years ago
threatDemos preview

threatDemos

GitHubnictjh/threatdemos

Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…

android-securitybinary-exploitationeducation+8
21 year ago
droidground preview

droidground

GitHubsecforce/droidground

A flexible playground for Android CTF challenges.

android-securityctfdynamic-analysis-sandboxing+5
11711 days ago
Previous1234Next