Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
71 results
universal-android-debloater-next-generation preview

universal-android-debloater-next-generation

GitHubuniversal-debloater-alliance/universal-android-debloater-next-generation

Cross-platform GUI written in Rust using ADB to debloat non-rooted Android devices. Improve your privacy, the security and battery life of your…

android-securitymobile-securityprivacy+1
9.0k
14 days ago
mvt preview

mvt

GitHubmvt-project/mvt

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

android-securitydigital-forensicsdisk-forensics+7
13.0k2 days ago
android-reverse-engineering-skill preview

android-reverse-engineering-skill

GitHubsimoneavogadro/android-reverse-engineering-skill

Decompiles Android APK/XAPK/JAR/AAR files and extracts HTTP APIs, authentication patterns, and call flows using jadx, with R8-resistant Kotlin name…

android-securityapi-security-testingbinary-analysis+8
7.7k2 months ago
frida-ios-dump preview

frida-ios-dump

GitHubalonemonkey/frida-ios-dump

Extracts decrypted IPA files from jailbroken iOS devices using Frida for reverse engineering, security analysis, and mobile app pentesting.

encryption-decryption-toolsios-securitymobile-app-pentesting+4
3.9k3 years ago
WireTapper preview

WireTapper

GitHubh9zdev/wiretapper

Passive wireless OSINT platform that detects and maps Wi-Fi, Bluetooth, CCTV, IoT devices, and cell towers using radio signal intelligence for…

bluetooth-securitydns-subdomain-enumerationembedded-systems-security+9
2.4k1 day ago
quark-engine preview

quark-engine

GitHubev-flow/quark-engine

Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

android-securitydynamic-analysis-sandboxingmalware-analysis+3
1.7k1 day ago
columba preview

columba

GitHubtorlando-tech/columba

Native Android messaging app using Bluetooth LE, TCP, or RNode (LoRa) over LXMF and Reticulum

bluetooth-securityencryption-decryption-toolsinformation-gathering+5
1.1k3 days ago
super-tart-vphone-writeup preview

super-tart-vphone-writeup

GitHubwh1te4ever/super-tart-vphone-writeup

Guide to building a virtual iPhone using VPHONE600AP components from Apple's PCC firmware, with firmware patching, bootchain modification, and kernel…

binary-exploitationdebuggersexploitation+7
1.2k6 months ago
ExtractKeyMaster preview

ExtractKeyMaster

GitHublaginimaineb/extractkeymaster

Exploit that extracts Qualcomm's KeyMaster keys using CVE-2015-6639 and CVE-2016-2431

android-securitybinary-exploitationembedded-systems-security+4
36310 years ago
AndBug preview

AndBug

GitHubswdunlop/andbug

Scriptable debugger for Android Dalvik VM using JDWP/DDM interfaces to hook methods, inspect process state, and modify runtime behavior without…

android-securitydebuggersdynamic-code-analysis+2
59911 years ago
LeakValue preview

LeakValue

GitHubmichalbednarski/leakvalue

Exploit for CVE-2022-20452, privilege escalation on Android from installed app to system app (or another app) via LazyValue using Parcel after…

android-securitybinary-exploitationexploitation+3
3494 years ago
WDBFontOverwrite preview

WDBFontOverwrite

GitHubginsudev/wdbfontoverwrite

Proof-of-concept app to overwrite fonts on iOS using CVE-2022-46689.

exploitationios-securitymobile-app-pentesting+2
8913 years ago
rdroid preview

rdroid

GitHubhuntoai/rdroid

[Android RAT] Remotely manage your android phone using PHP Interface

android-securitycommand-and-controldata-exfiltration+3
2478 years ago
toothpicker preview

toothpicker

GitHubseemoo-lab/toothpicker

Coverage-guided in-process fuzzer for iOS Bluetooth daemon (bluetoothd) using FRIDA, with over-the-air fuzzing for MagicPairing protocol and crash…

bluetooth-securitydynamic-analysis-sandboxingfuzzing+3
2464 years ago
finalrun-agent preview

finalrun-agent

GitHubdroid-ash/finalrun-agent

AI-driven CLI for testing Android and iOS apps using natural language. Generates, runs, and fixes end-to-end tests on emulators/simulators with…

ai-securityandroid-securityeducation+2
3051 month ago
pois0nSword preview

pois0nSword

GitHubgenericcoding/pois0nsword

A demonstration of read write using cve-2025-43529 on iOS 26.1

binary-exploitationexploitationexploit-frameworks+5
621 month ago
QuestStack preview

QuestStack

GitHubstarseed12345/queststack

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

android-securitybinary-exploitationembedded-systems-security+5
1537 days ago
cve-2015-6639 preview

cve-2015-6639

GitHublaginimaineb/cve-2015-6639

QSEE Privilege Escalation Exploit using PRDiag* commands (CVE-2015-6639)

binary-exploitationembedded-systems-securityexploitation+4
1257 years ago
Previous1234Next