Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
18 results
browser-pwn preview

browser-pwn

GitHubm1ghtym0/browser-pwn

An updated collection of resources targeting browser-exploitation.

binary-exploitationctfcurated-resources+4
831
5 years ago
V8-sbx-bypass-collection preview

V8-sbx-bypass-collection

GitHubxv0nfers/v8-sbx-bypass-collection

Curated collection of V8 sandbox escape, bypass, and violation reports with issue tracker links, articles, papers, slides, and design documents for…

binary-exploitationcurated-resourcesexploitation+3
2921 year ago
slides preview

slides

GitHubthomasking2014/slides

Curated collection of security conference slide decks covering Android rooting, kernel exploitation, browser memory corruption, JIT mitigations, and…

android-securitybinary-exploitationcurated-resources+4
658 months ago
SetCookieAnalysisInBrowsers preview

SetCookieAnalysisInBrowsers

GitHubnccgroup/setcookieanalysisinbrowsers

SetCookie Analysis in Browser Research Results

educationpapers-researchprivacy+1
1011 years ago
CVE-2026-32722 preview

CVE-2026-32722

GitHub0xmrma/cve-2026-32722

Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata

educationpapers-researchpenetration-testing+3
15 months ago
CVE-2025-68116 preview

CVE-2025-68116

GitHubx0root/cve-2025-68116

A Documentation of CVE-2025-68116

educationexploitationpapers-research+3
8 months ago
CVE-2012-1723 preview

CVE-2012-1723

GitHubethannjc/cve-2012-1723

Proof of concept exploit for CVE-2012-1723

educationexploitationpapers-research+2
9 years ago
py_trustwallet_wasm preview

py_trustwallet_wasm

GitHubohexa/py_trustwallet_wasm

(CVE-2023-31290) Trust Wallet Core before 3.1.1, as used in the Trust Wallet browser extension before 0.0.183, allows theft of funds because the…

cryptographyeducationexploitation+2
2 years ago
CVE-2024-4367-Analysis preview

CVE-2024-4367-Analysis

GitHubmasamuneee/cve-2024-4367-analysis

Analysis and PoC for CVE-2024-4367: arbitrary JavaScript execution (XSS) in PDF.js

educationexploitationpapers-research+3
41 year ago
CVE-2018-4416-exploit preview

CVE-2018-4416-exploit

GitHuberupmi/cve-2018-4416-exploit

Educational walkthrough of CVE-2018-4416, a WebKit JavaScriptCore type confusion vulnerability, with PoC, debugging setup, and analysis of common…

binary-exploitationeducationexploitation+4
102 years ago
CVE-2017-0037 preview

CVE-2017-0037

GitHubchattopadhyaykittu/cve-2017-0037

Technical analysis of CVE-2017-0037, a Microsoft browser memory corruption vulnerability enabling remote code execution via type confusion in CSS/JS…

binary-exploitationeducationexploitation+3
4 years ago
CVE-2026-29971 preview

CVE-2026-29971

GitHubtharooon/cve-2026-29971

An attacker can execute arbitrary JavaScript in the victim's browser, potentially leading to session hijacking or privilege escalation.

educationpapers-researchpenetration-testing+3
3 months ago
Consent-O-Matic preview

Consent-O-Matic

GitHubcavi-au/consent-o-matic

Browser extension that automatically fills out cookie popups based on your preferences

anti-botcurated-resourceseducation+3
4.2k9 months ago
browser-xpi-malware-scanner preview

browser-xpi-malware-scanner

GitHubernos/browser-xpi-malware-scanner

A comprehensive browser extension (.xpi) malware scanner which checks for many common malware tricks like:, credential-stealers obfuscation tactics,…

code-analysiseducationforensics+5
84 months ago
CVE-2025-10585-The-Chrome-V8-Zero-Day preview

CVE-2025-10585-The-Chrome-V8-Zero-Day

GitHubadityabhatt3010/cve-2025-10585-the-chrome-v8-zero-day

Google patched CVE-2025-10585, a Chrome V8 zero-day under active exploitation — here’s what it is, why it matters, and how to stay safe.

educationexploitationpapers-research+3
1311 months ago
PyStegosploit preview

PyStegosploit

GitHubcharmve/pystegosploit

PoC - Exploit Delivery via Steganography and Polyglots, CVE-2014-0282

educationexploit-frameworkspapers-research+5
542 years ago
CVE-2026-46552 preview

CVE-2026-46552

GitHub0xmrma/cve-2026-46552

NocoDB Shared-Base Links Could Invite Real Base Members and Survive Share Revocation

authentication-authorizationeducationpapers-research+3
2 months ago
datadome-vm-internals preview

datadome-vm-internals

GitHubmanjustice/datadome-vm-internals

Analysis of DataDome's custom obfuscated VM and bytecode format, revealing string encryption, S-box ciphers, and browser fingerprinting signals for…

anti-botbinary-analysiseducation+3
274 months ago