Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
119 results
bulk_extractor preview

bulk_extractor

GitHubsimsong/bulk_extractor

This is the development tree. Production downloads are at:

data-recoverydigital-forensicsdisk-forensics+9
1.4k
1 day ago
Remote-Desktop-Caching- preview

Remote-Desktop-Caching-

GitHubviralmaniar/remote-desktop-caching-

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

digital-forensicsforensicsincident-response+4
2188 years ago
LsassReflectDumping preview

LsassReflectDumping

GitHuboffensive-panda/lsassreflectdumping

This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone is created,…

memory-forensicspassword-attackspost-exploitation+1
2201 year ago
CVE-2025-43300 preview

CVE-2025-43300

GitHubhunters-sec/cve-2025-43300

This is POC for IOS 0click CVE-2025-43300

binary-exploitationeducationembedded-systems-security+7
1161 year ago
NTDLL-Unhook preview

NTDLL-Unhook

GitHubhwbp/ntdll-unhook

proper ntdll .text section unhooking via native api. unlike other unhookers this doesnt leave 2 ntdlls loaded. x86/x64/wow64 supported.

malware-analysismemory-forensicspenetration-testing+2
558 months ago
Ticketbleed preview

Ticketbleed

GitHubegebalci/ticketbleed

This is a tool for exploiting Ticketbleed (CVE-2016-9244) vulnerability.

exploitationinformation-gatheringmemory-forensics+2
309 years ago
CVE-2025-14847_Expolit preview

CVE-2025-14847_Expolit

GitHubcybertechajju/cve-2025-14847_expolit

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

database-securitydata-exfiltrationeducation+6
348 months ago
NotEnough preview

NotEnough

GitHubcaoweiquan322/notenough

This tool calculates tricky canonical huffman histogram for CVE-2023-4863.

binary-exploitationexploitationfuzzing+3
252 years ago
cormem-read-poc preview

cormem-read-poc

GitHub4d4j/cormem-read-poc

This tool demonstrates CVE-2026-38194, a vulnerability in Teledyne Digital Imaging Sapera Memory Manager (v9.0.0.0 and below). The CORMEM.SYS kernel…

binary-exploitationeducationexploitation+3
82 months ago
CVE-2026-29923 preview

CVE-2026-29923

GitHubsmarttfoxx/cve-2026-29923

The pstrip64.sys kernel driver exposes an IOCTL that allows low-privileged users to map arbitrary ranges of physical memory into their own virtual…

binary-exploitationexploitationmemory-forensics+3
45 months ago
Embarcadero-Workaround preview

Embarcadero-Workaround

GitHubhelpsystems/embarcadero-workaround

This is a workaround for CVE-2014-0993 and CVE-2014-0994 that patches on memory without the need to recompile your vulnerable software. This is not…

binary-analysisdefensive-toolsexploitation+3
111 years ago
CVE-2021-44852 preview

CVE-2021-44852

GitHubcrackercat/cve-2021-44852

An issue was discovered in BS_RCIO64.sys in Biostar RACING GT Evo 2.1.1905.1700. A low-integrity process can open the driver's device object and…

binary-exploitationexploitationhardware-security+3
23 years ago
CVE-2017-8641_chakra_Js_GlobalObject preview

CVE-2017-8641_chakra_Js_GlobalObject

GitHubhomjxi0e/cve-2017-8641_chakra_js_globalobject

There is a classic heap overflow when eval a string which large enough in Chakra! This issue can be reproduced steadly in uptodate Edge in Win10 WIP.…

binary-exploitationexploitationmemory-forensics+3
19 years ago
cve_2023_38831_scanner preview

cve_2023_38831_scanner

GitHubyezzfusl/cve_2023_38831_scanner

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

dynamic-analysis-sandboxingeducationexploitation+5
11 year ago
RTCore64-probe preview

RTCore64-probe

GitHubcrowthearchfiend/rtcore64-probe

A tiny cpp program to test reading memory using a vulnerable RTCore64.sys driver/device (CVE-2019-16098). It tries to read a "secret" from its own…

binary-analysisexploitationhardware-security+2
6 months ago
CVE-2025-21298 preview

CVE-2025-21298

GitHubthebl4ckph4nt0m/cve-2025-21298

A Critical Windows OLE Zero-Click Vulnerability. This is a proof-of-concept for CVE-2025-21298 - Windows OLE Remote Code Execution Vulnerability…

binary-exploitationexploitationmemory-forensics+1
11 year ago
MongoBLEED---CVE-2025-14847-POC- preview

MongoBLEED---CVE-2025-14847-POC-

GitHubnonameerror/mongobleed---cve-2025-14847-poc-

This repo contains my python script version of CVE-2025-14847 (MongoBleed)

database-securityexploitationfuzzing+3
18 months ago
google-poc preview

google-poc

GitHub0xxa/google-poc

This repo contains instructions to reproduce CVE-2025-13425: Null Pointer dereference / Array over-indexing vulnerability that I found in Google's…

binary-analysisexploitationfirmware-analysis+3
9 months ago
Previous1234567Next