Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
21 results
UnrestrictedUserCreator preview

UnrestrictedUserCreator

GitHubrifting/unrestrictedusercreator

Simple script to add a new, unrestricted user on devices with Family Link by abusing CVE-2025-32324 (pre September patch)

android-securityexploitationmobile-security+2
4
11 months ago
qualcomm-vulnerability-scanner preview

qualcomm-vulnerability-scanner

GitHubdarkz2012/qualcomm-vulnerability-scanner

A tool to scan Android devices for the recently exploited Qualcomm flaw CVE-2026-21385, providing a simple and efficient way to identify vulnerable…

android-securitymobile-securityvulnerability-scanners
27 months ago
slides preview

slides

GitHubthomasking2014/slides

Curated collection of security conference slide decks covering Android rooting, kernel exploitation, browser memory corruption, JIT mitigations, and…

android-securitybinary-exploitationcurated-resources+4
659 months ago
Signal-iOS preview

Signal-iOS

GitHubsignalapp/signal-ios

Open-source iOS messenger providing end-to-end encrypted text, voice, and video calls via the Signal Protocol, with no analytics or telemetry…

cryptographyios-securitymobile-security+1
12.3k6 days ago
AndroidFaker preview

AndroidFaker

GitHubandroid1500/androidfaker

Android Faker a Simple Xposed Module Which Spoof Your Device IDs Values. Supporting Android 8.1+

android-securityfingerprint-spoofingimpersonation-tools+3
7291 year ago
omapi-cve-2015-6606-exploit preview

omapi-cve-2015-6606-exploit

GitHubmichaelroland/omapi-cve-2015-6606-exploit

Simple Exploit for Verification of CVE-2015-6606

android-securitybinary-exploitationexploitation+3
310 years ago
evilnotify preview

evilnotify

GitHubrooootdev/evilnotify

iOS app that does stuff with CVE-2025-24091

exploitationios-securitymobile-security+1
310 months ago
BlueborneDetection preview

BlueborneDetection

GitHubmjancek/bluebornedetection

Simple detection tool for Blueborne vulnerability found on Android devices --- CVE-2017-0781.

android-securitybluetooth-securityexploitation+2
15 years ago
POC-ES-File-Explorer-CVE-2019-6447 preview

POC-ES-File-Explorer-CVE-2019-6447

GitHubjulio-cfa/poc-es-file-explorer-cve-2019-6447

Bash PoC script exploiting CVE-2019-6447 in ES File Explorer to list files, photos, videos, apps, and download files from vulnerable Android devices.

android-securitydata-exfiltrationexploitation+3
5 years ago
tpwn-bis preview

tpwn-bis

GitHubjndok/tpwn-bis

simple poc for cve-2015-5932 / cve-2015-5847 / cve-2015-5864

binary-exploitationexploitationios-security+3
410 years ago
JailedCement preview

JailedCement

GitHubiswaxan/jailedcement

Simple iOS bootlooper using CVE-2022-46689. Desguised as onlyfans

exploitationios-securitymobile-security+2
3 years ago
certPinningVulnerableOkHttp preview

certPinningVulnerableOkHttp

GitHubikoz/certpinningvulnerableokhttp

OkHttp sample app vulnerable to CVE-2016-2402

android-securityeducationexploitation+3
1010 years ago
cert-pinning-flaw-poc preview

cert-pinning-flaw-poc

GitHubikoz/cert-pinning-flaw-poc

Simple script for testing CVE-2016-2402 and similar flaws

exploitationmobile-securitypenetration-testing+2
1310 years ago
scaredycat preview

scaredycat

GitHubeudemonics/scaredycat

Python script to generate a malicious MP4 file and start a CherryPy web server hosting a simple HTML page with the embedded file. Exploits another…

android-securityexploitationmobile-security+4
1710 years ago
CVE-2019-11932 preview

CVE-2019-11932

GitHubawakened1712/cve-2019-11932

Simple POC for exploiting WhatsApp double-free bug in DDGifSlurp in decoding.c in libpl_droidsonroids_gif

binary-exploitationexploitationmobile-security+2
2096 years ago
cve-2022-20223 preview

cve-2022-20223

GitHubdsp-security-workflows/cve-2022-20223

A simple bash script for exploiting Android 10/11/12 using cve-2022-20223.

android-securityexploitationmobile-security+2
11 year ago
dirtyZero preview

dirtyZero

GitHubjailbreakdotparty/dirtyzero

Simple customization toolbox, utilizing CVE-2025-24203. Supports iOS 16.0 - iOS 18.3.2.

educationexploitationios-security+4
42723 days ago
columba preview

columba

GitHubtorlando-tech/columba

Native Android messaging app using Bluetooth LE, TCP, or RNode (LoRa) over LXMF and Reticulum

bluetooth-securityencryption-decryption-toolsinformation-gathering+5
1.2k1 day ago
Previous12Next