Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
55 results
PhoneSploit-Pro preview

PhoneSploit-Pro

GitHubazeemidrisi/phonesploit-pro

An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.

android-securitycommand-and-controldata-exfiltration+7
6.1k
8 days ago
two-dots-and-a-slash-cve-2026-18907-tecno-hi-browser-download-path-traversal preview

two-dots-and-a-slash-cve-2026-18907-tecno-hi-browser-download-path-traversal

GitHubhunt-benito/two-dots-and-a-slash-cve-2026-18907-tecno-hi-browser-download-path-traversal

Python PoC for CVE-2026-18907 path traversal in TECNO Hi Browser's download handler. Includes malicious HTTP server and naive downloader to…

android-securityexploitationmobile-app-pentesting+4
9 days ago
droidground preview

droidground

GitHubsecforce/droidground

A flexible playground for Android CTF challenges.

android-securityctfdynamic-analysis-sandboxing+5
11714 days ago
android-hardware-attestation-demo preview

android-hardware-attestation-demo

GitHubquarkslab/android-hardware-attestation-demo

An Android HW Attestation demo

android-securityauthentication-authorizationeducation+3
3915 days ago
CVE-2026-22010-Android-Intent-Redirection-to-Exported-Component preview

CVE-2026-22010-Android-Intent-Redirection-to-Exported-Component

GitHubgeorge0papasotiriou/cve-2026-22010-android-intent-redirection-to-exported-component
android-securityeducationexploitation+3
116 days ago
Android-Imgui-Template preview

Android-Imgui-Template

GitHubtraitimtrongvag/android-imgui-template

A complete Android ImGui menu template project.

android-securityeducationexploitation+4
2120 days ago
mobileAudit preview

mobileAudit

GitHubmpast/mobileaudit

Django application that performs SAST and Malware Analysis for Android APKs

android-securitycode-analysismalware-analysis+4
22627 days ago
root-sonim-xp3800 preview

root-sonim-xp3800

GitHubflipphoneguy/root-sonim-xp3800

app that ports CVE-2019-2215 to arm32 and mounts a su binary to /sbin with denylist + root app installer. firehose/Magisk guide included

android-securitybinary-exploitationeducation+5
111 month ago
awesome-android-security preview

awesome-android-security

GitHubsaeidshirazi/awesome-android-security

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

android-securitycurated-resourceseducation+6
2.0k1 month ago
android_application_analyzer preview

android_application_analyzer

GitHubnotsosecure/android_application_analyzer

The tool is used to analyze the content of the android application in local storage.

android-securitydynamic-analysis-sandboxingmobile-app-pentesting+2
1752 months ago
jebmcp preview

jebmcp

GitHubflankerhqd/jebmcp
ai-assisted-reversingandroid-securitymobile-app-pentesting+3
2573 months ago
frida-ipa-extract preview

frida-ipa-extract

GitHublautarovculic/frida-ipa-extract

Robust Frida-based tool to dump decrypted iOS apps as .ipa from a jailbroken device supports App Store, sideloaded and system.

information-gatheringios-securitymobile-app-pentesting+3
1165 months ago
ZygoteExploitDemo preview

ZygoteExploitDemo

GitHubgitamans/zygoteexploitdemo

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

android-securitybinary-exploitationeducation+7
25 months ago
CVE-2024-23700 preview

CVE-2024-23700

GitHubcanyie/cve-2024-23700

PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls…

android-securityexploitationmobile-app-pentesting+5
716 months ago
mhf preview

mhf

GitHubstuxctf/mhf

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

android-securityinformation-gatheringios-security+5
288 months ago
zygote-injection-toolkit preview

zygote-injection-toolkit

GitHubanonymous941/zygote-injection-toolkit

A command-line utility to exploit Android Zygote injection (CVE-2024-31317)

android-securitydata-exfiltrationexploitation+5
608 months ago
threatDemos preview

threatDemos

GitHubnictjh/threatdemos

Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…

android-securitybinary-exploitationeducation+8
211 months ago
jenkinsci__perfecto-plugin_CVE-2020-2261_1-17 preview

jenkinsci__perfecto-plugin_CVE-2020-2261_1-17

GitHubshoucheng3/jenkinsci__perfecto-plugin_cve-2020-2261_1-17
api-security-testingcloud-securitydevsecops+1
1 year ago
Previous1234Next