Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
CVE-2024-31317-PoC-Deployer preview

CVE-2024-31317-PoC-Deployer

GitHubwebldix/cve-2024-31317-poc-deployer

Automated deployment tool for CVE-2024-31317 PoC on Android 9-13, enabling privilege escalation via Zygote injection and reverse shell execution.

android-securitybinary-exploitationexploitation+5
53
1 year ago
ghostlock-x200-app preview

ghostlock-x200-app

GitHubxiaohj233/ghostlock-x200-app

vivo X200 设备端一键 root App(Shizuku 授权 shell 域执行,CVE-2026-43499)

android-securityexploitationexploit-frameworks+4
226 days ago
cve-2025-21479_iqooneo8 preview

cve-2025-21479_iqooneo8

GitHubqingizi7/cve-2025-21479_iqooneo8

Local root exploit for CVE-2025-21479 (Adreno KGSL) on iQOO Neo8 (SM8475) - physical memory r/w, disables SELinux, spawns root shell

android-securitybinary-exploitationexploitation+6
520 days ago
CVE-2016-2067 preview

CVE-2016-2067

GitHubhhj4ck/cve-2016-2067

GPU IOMMU DMA exploit for Android devices that overwrites vdso.so with shellcode to escalate privileges and spawn a reverse root shell on Nexus 6p.

android-securitybinary-exploitationexploitation+5
75 years ago
Podroid preview

Podroid

GitHubextv/podroid

A rootless Android app that boots Alpine Linux: run containers (Podman/Docker/LXC) and GUI desktop apps.

android-securitycontainer-securityhardware-iot-security+3
3.0k4 days ago
ghostlock-a17 preview

ghostlock-a17

GitHubmobilehackinglab/ghostlock-a17

Kernel exploit for CVE-2026-43499 on Samsung Galaxy A17 achieving root via KDP bypass, KASLR recovery, and forged workqueue execution with persistent…

android-securitybinary-exploitationexploitation+4
141 month ago
GhostLock-Galaxy preview

GhostLock-Galaxy

GitHubwxxsfxyzm/ghostlock-galaxy

Root your Galaxy using CVE-2026-43499

android-securitybinary-analysisexploitation+6
271 month ago
ghostlock-apk preview
Archived

ghostlock-apk

GitHuboopnv70-lab/ghostlock-apk

独立 APK:CVE-2026-43499 GhostLock 提权 + Shizuku shell 身份执行

android-securitybinary-exploitationexploitation+3
71 month ago
CVE-2019-11932 preview

CVE-2019-11932

GitHubtulungagungcyberlink/cve-2019-11932

Double-Free BUG in WhatsApp exploit poc.

binary-exploitationexploitationmobile-security+3
46 years ago
ghostlock-aak-apk preview

ghostlock-aak-apk

GitHuboopnv70-lab/ghostlock-aak-apk

GhostLock AAK Launcher - CVE-2026-43499 Linux kernel rtmutex stack UAF local privilege escalation trigger (GPLv3)

android-securitybinary-exploitationexploitation+5
75 days ago
pixel-ksu-root preview

pixel-ksu-root

GitHubjingmatrix/pixel-ksu-root

CVE research and exploits to help gaining roots for Pixel devices

android-securityexploitationexploit-frameworks+6
415 days ago
unisoc-su preview

unisoc-su

GitHubskorpion96/unisoc-su

A method for CVE-2025-31710 and to connect to cmd_skt to obtain a root shell on unisoc unpatched models

android-securitybinary-exploitationcommand-and-control+7
1353 days ago
BlackDex preview

BlackDex

GitHubcodinggay/blackdex

Android APK unpacker that dumps DEX files from running or installed apps on Android 5.0–12 without root, Xposed, or Frida, supporting deep unpacking…

android-securitybinary-analysismobile-app-pentesting+2
6.5k4 years ago
Rootsmart-v2.0 preview
Archived

Rootsmart-v2.0

GitHubnicchongwb/rootsmart-v2.0

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration

android-securitycommand-and-controldata-exfiltration+8
14 years ago
Arcane preview

Arcane

GitHubtokyoneon/arcane

Arcane is a simple script designed to backdoor iOS packages (iphone-arm) and create the necessary resources for APT repositories.

educationios-securitymobile-security+3
1586 years ago
SMShell preview

SMShell

GitHubpersistent-security/smshell

PoC for a SMS-based shell. Send commands and receive responses over SMS from mobile broadband capable computers

command-and-controlexploitationmobile-security+3
3723 years ago
SparstanBoogie preview

SparstanBoogie

GitHubfuzzlove/sparstanboogie

Exploit chain utilizing directory traversal and iOS restore to overwrite protected files.

educationexploitationios-security+4
33 months ago
CVE-2026-0073-Android-ADBD-bypass-POC preview

CVE-2026-0073-Android-ADBD-bypass-POC

GitHubmartinpsdev/cve-2026-0073-android-adbd-bypass-poc

CVE-2026-0073 — Android ADB daemon (adbd) TLS authentication bypass via EVP_PKEY_cmp type confusion. Gain unauthorized shell access over WiFi using…

android-securityexploitationmobile-security+3
224 months ago
Previous12Next