Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
608 results
CVE_2019_2215 preview

CVE_2019_2215

GitHub0xbinder/cve_2019_2215

Proof-of-concept LPE exploit for Android Binder UAF that uses iovec spraying and addr_limit overwrite to achieve arbitrary kernel read/write.

android-securitybinary-exploitationeducation+5
1
1 day ago
s26-m1q-ghostlock-selinux preview

s26-m1q-ghostlock-selinux

GitHubxrzcc/s26-m1q-ghostlock-selinux

GhostLock CVE-2026-43499 research for Galaxy S26 (SM-S942U1/m1q): SELinux Permissive achieved, KASLR + tracefs port, uid=0 boundary documented

android-securitybinary-exploitationexploitation+4
12 days ago
ghostlock-a17 preview

ghostlock-a17

GitHubmobilehackinglab/ghostlock-a17

Kernel exploit for CVE-2026-43499 on Samsung Galaxy A17 achieving root via KDP bypass, KASLR recovery, and forged workqueue execution with persistent…

android-securitybinary-exploitationexploitation+4
1 day ago
SpringPeace preview

SpringPeace

GitHubvirtualesp/springpeace

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499

android-securitybinary-analysisexploitation+4
1 month ago
GhostLock-5.10 preview

GhostLock-5.10

GitHubr0rt1z2/ghostlock-5.10

Kernel root exploit (CVE-2026-43499) for some 5.X devices (mostly Amazon)

android-securitybinary-exploitationexploitation+3
92 days ago
hp-slate7-root-kit preview

hp-slate7-root-kit

GitHubvalentineus/hp-slate7-root-kit

HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

android-securitybinary-exploitationexploitation+6
12 days ago
spd_dump-macos preview

spd_dump-macos

GitHubxun404/spd_dump-macos

UNISOC BootROM/FDL flasher for macOS: patched spd_dump with CVE-2022-38694 exec_addr2, protocol reference, partition rules, backup verification…

android-securityembedded-systems-securityexploitation+3
3 days ago
Janus-Vulnerability-CVE-2017-13156-Exploit preview

Janus-Vulnerability-CVE-2017-13156-Exploit

GitHubhackerronin/janus-vulnerability-cve-2017-13156-exploit

Python-based exploit for Android's Janus CVE-2017-13156, demonstrating APK signature bypass by appending a DEX payload to signed applications.

android-securityexploitationmobile-security
32 years ago
IonStack-S22-cve-2026-43499 preview

IonStack-S22-cve-2026-43499

GitHubcamsshaft/ionstack-s22-cve-2026-43499

Android kernel exploit for Samsung Galaxy S22 that gains kernel-domain root via CVE-2026-43499, with SELinux permissive, device-specific kallsyms,…

android-securitybinary-exploitationexploitation+2
5 days ago
CVE-2026-43499-ZFOLD4 preview

CVE-2026-43499-ZFOLD4

GitHubfusiondrive/cve-2026-43499-zfold4

CVE-2026-43499 research port for Galaxy Z Fold4 SM-F936W F936WVLU1AVGA (in progress)

android-securitybinary-exploitationexploitation+4
6 days ago
cve-2026-43499-honor preview

cve-2026-43499-honor

GitHubknowlily/cve-2026-43499-honor

Kernel privilege escalation research archive for CVE-2026-43499 (GhostLock) on Honor Magic6 Pro, documenting exploitation analysis, reverse…

android-securitybinary-exploitationexploitation+4
15 days ago
CVE-2024-56426 preview

CVE-2024-56426

GitHubxcracker000/cve-2024-56426

Exploit kit for Exynos 9830 bootROM that delivers signed-boot bypass, custom key injection, and memory-dump payloads for Samsung SM-G985F devices.

android-securitybinary-exploitationembedded-systems-security+7
15 days ago
AndroidDriveSignity preview

AndroidDriveSignity

GitHubgmh5225/androiddrivesignity

Patches Android ARMv8.3 kernel binaries to disable driver signature verification, enabling custom kernel module loading for development and security…

android-securitybinary-analysisexploitation+1
632 years ago
cve-2026-43499-m3q-azf1 preview

cve-2026-43499-m3q-azf1

GitHubbugel/cve-2026-43499-m3q-azf1

This package is not a complete root. It flips SELinux to Permissive and holds reclaim long enough for follow-on work. Host `uid=0` is not achieved…

android-securitybinary-exploitationexploitation+4
27 days ago
cve-2025-21479-iqoo11pro preview

cve-2025-21479-iqoo11pro

GitHubtype010/cve-2025-21479-iqoo11pro

CVE-2025-21479 (Qualcomm Adreno GPU) reproduction notes for vivo iQOO 11 Pro (PD2254) - authorized research

android-securitybinary-exploitationexploitation+5
7 days ago
aotopsy preview

aotopsy

GitHubbronils/aotopsy

Static analyzer for Flutter/Dart AOT snapshots — recovers function names, class hierarchies, call graphs, and behavioral signals from libapp.so…

binary-analysismobile-app-pentestingmobile-security+2
171 day ago
two-dots-and-a-slash-cve-2026-18907-tecno-hi-browser-download-path-traversal preview

two-dots-and-a-slash-cve-2026-18907-tecno-hi-browser-download-path-traversal

GitHubhunt-benito/two-dots-and-a-slash-cve-2026-18907-tecno-hi-browser-download-path-traversal

Python PoC for CVE-2026-18907 path traversal in TECNO Hi Browser's download handler. Includes malicious HTTP server and naive downloader to…

android-securityexploitationmobile-app-pentesting+4
9 days ago
ghostlock-cve-2026-43499-4.19-k40 preview

ghostlock-cve-2026-43499-4.19-k40

GitHubyijiacloud/ghostlock-cve-2026-43499-4.19-k40

CVE-2026-43499 (GhostLock) rtmutex remove_waiter() UAF local-root PoC adapted for Qualcomm Android 4.19 kernels (Redmi K40 / Snapdragon 870 class),…

android-securitybinary-exploitationexploitation+4
29 days ago
Previous12…34Next