Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
19 results
Komfy-Switch-Wifi-Password-Disclosure preview

Komfy-Switch-Wifi-Password-Disclosure

GitHubjasondoyle/komfy-switch-wifi-password-disclosure

Proof-of-concept and writeup showing how to retrieve Wi-Fi SSID/password from a D-Link Komfy smart switch over BLE by reversing the iOS app’s custom…

bluetooth-securityexploitationiot-security+3
1
9 years ago
TEE-reversing preview

TEE-reversing

GitHubenovella/tee-reversing

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

android-securitybinary-analysiscurated-resources+9
1.0k7 months ago
OpenClaw_Termux preview

OpenClaw_Termux

GitHubandroidmalware/openclaw_termux

How to Install OpenClaw on an Android Phone and Control It via WhatsApp

android-securityeducationinformation-gathering+4
3236 months ago
Umbrella_android preview

Umbrella_android

GitHubsecurityfirst/umbrella_android

Open source Android, iOS and Web app for learning about and managing digital and physical security. From how to send a secure message to dealing with…

digital-forensicseducationencryption-decryption-tools+6
2922 years ago
Flutter-Reverse-Engineering-Labs preview

Flutter-Reverse-Engineering-Labs

GitHubbrnpl/flutter-reverse-engineering-labs

Hands-on challenges for learning how to reverse engineer Flutter applications.

android-securitybinary-analysisctf+6
5815 days ago
CVE-2024-0044 preview

CVE-2024-0044

GitHubthebl4ckph4nt0m/cve-2024-0044

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13. This repo demonstrates how to exploit…

android-securityeducationexploitation+3
21 year ago
FTC-Skystone-Dark-Angels-Romania-2020 preview

FTC-Skystone-Dark-Angels-Romania-2020

GitHubchrisneagu/ftc-skystone-dark-angels-romania-2020

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC…

educationembedded-systems-securityhardware-security+3
3075 years ago
SparstanBoogie preview

SparstanBoogie

GitHubfuzzlove/sparstanboogie

Exploit chain utilizing directory traversal and iOS restore to overwrite protected files.

educationexploitationios-security+4
33 months ago
awesome-android-security preview

awesome-android-security

GitHubsaeidshirazi/awesome-android-security

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

android-securitycurated-resourceseducation+6
2.0k2 months ago
CVE-2023-6241-Pixel7_Adaptation preview

CVE-2023-6241-Pixel7_Adaptation

GitHubilgobbo00/cve-2023-6241-pixel7_adaptation

Adaptation of CVE-2023-6241 for Google Pixel 7 from Google Pixel 8 taken from securitylab/SecurityExploits/Android/Mali/CVE_2023_6241

android-securitybinary-exploitationdebuggers+5
151 year ago
CVE-2019-2215 preview

CVE-2019-2215

GitHubmufidmb38/cve-2019-2215

CVE-2019-2215

android-securitybinary-exploitationexploitation+3
35 years ago
game-of-kingshot-re preview

game-of-kingshot-re

GitHubkdbugk/game-of-kingshot-re

Educational reverse engineering study of a Unity/IL2CPP Android game. Documents gateway protocol decoding, native anti-tampering SDK analysis, SSL…

android-securitybinary-analysisdynamic-analysis-sandboxing+5
314 months ago
Mobile-Drop-Device-SOC-Detection preview

Mobile-Drop-Device-SOC-Detection

GitHubv3ng4mxv1p3r/mobile-drop-device-soc-detection

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

educationexploitationincident-response+6
14 months ago
cve-2022-46718-leaky-location preview

cve-2022-46718-leaky-location

GitHubbiscuitehh/cve-2022-46718-leaky-location

CVE-2022-46718: an app may be able to read sensitive location information.

exploitationinformation-gatheringios-security+3
273 years ago
CVE-2026-22012-Diameter-Protocol-Credit-Control-Bypass-in-5G preview

CVE-2026-22012-Diameter-Protocol-Credit-Control-Bypass-in-5G

GitHubgeorge0papasotiriou/cve-2026-22012-diameter-protocol-credit-control-bypass-in-5g

Python simulation of CVE-2026-22012, showing how a missing Final-Unit-Indication in Diameter Credit-Control allows unlimited quota and service bypass…

exploitationmobile-securitynetwork-security+1
28 days ago
cve-2023-40429-ez-device-name preview

cve-2023-40429-ez-device-name

GitHubbiscuitehh/cve-2023-40429-ez-device-name

CVE-2023-40429: An app may be able to access sensitive user data.

exploitationinformation-gatheringios-security+3
52 years ago
universal-android-debloater-next-generation preview

universal-android-debloater-next-generation

GitHubuniversal-debloater-alliance/universal-android-debloater-next-generation

Cross-platform GUI written in Rust using ADB to debloat non-rooted Android devices. Improve your privacy, the security and battery life of your…

android-securitymobile-securityprivacy+1
9.0k11 days ago
blue-pigeon preview

blue-pigeon

GitHubbluepigeonproject/blue-pigeon

Blue Pigeon is a Bluetooth-based data exfiltration and proxy tool to enable communication between a remote Command and Control (C2) server and a…

android-securitybluetooth-securitycommand-and-control+4
565 years ago
Previous12Next