Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
43 results
CVE-2026-28576-poc preview

CVE-2026-28576-poc

GitHubmobilehackinglab/cve-2026-28576-poc

Educational proof-of-concept demonstrating a SQL injection vulnerability in Android 17's Contacts Provider, allowing a zero-permission app to…

android-securityeducationexploitation+4
1
1 day ago
CVE-2026-27280 preview

CVE-2026-27280

GitHubr3n3r0/cve-2026-27280

In-depth analysis and proof-of-concept for CVE-2026-27280, an out-of-bounds write in Adobe DNG SDK's dng_render_task::ProcessArea, reachable via…

android-securitybinary-exploitationexploitation+5
112 days ago
TheLastBundleMismatch preview

TheLastBundleMismatch

GitHubmichalbednarski/thelastbundlemismatch

Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mitigation

android-securitybinary-analysisexploitation+2
1012 years ago
ResourcePoison preview

ResourcePoison

GitHubmichalbednarski/resourcepoison

Writeup and exploit for CVE-2025-22441: Privilege escalation from installed app to SystemUI process on Android due to pass of untrusted…

android-securityexploitationmobile-security+3
10611 months ago
CVE-2026-20841-PoC preview

CVE-2026-20841-PoC

GitHubdogukankurnaz/cve-2026-20841-poc

Proof-of-concept demonstrating command injection in Windows Notepad via crafted Markdown links, enabling remote code execution. Includes attack…

educationexploitationpapers-research+2
26 months ago
CyberMeowfiaNS preview

CyberMeowfiaNS

GitHubxingchenrs/cybermeowfians

The next stage of CyberMeowfil (CVE-2026-43499 and 43074),Possibly biased toward vivo devices?

android-securitybinary-analysiscurated-resources+4
116 days ago
rasputin preview

rasputin

GitHubfrenchyeti/rasputin

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…

android-securitybinary-analysiscurated-resources+4
623 years ago
TEE-reversing preview

TEE-reversing

GitHubenovella/tee-reversing

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

android-securitybinary-analysiscurated-resources+9
1.0k8 months ago
ConPresentations preview

ConPresentations

GitHubmaddiestone/conpresentations

Slide decks from my conference presentations

android-securitycurated-resourceseducation+5
3682 years ago
CVE-2026-0049 preview

CVE-2026-0049

GitHubr3n3r0/cve-2026-0049

PoC and analysis of a zero-click DoS in Android's DNG SDK, with crafted DNG samples, an NDK crash harness, and UBSan/IntSan reproduction of the…

android-securitybinary-analysiseducation+4
1 month ago
slides preview

slides

GitHubthomasking2014/slides

Curated collection of security conference slide decks covering Android rooting, kernel exploitation, browser memory corruption, JIT mitigations, and…

android-securitybinary-exploitationcurated-resources+4
658 months ago
inside-pegasus preview

inside-pegasus

GitHubamnestytech/inside-pegasus

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

android-securitycurated-resourceseducation+6
501 month ago
NoFrak preview

NoFrak

GitHubgeorgiev-martin/nofrak

Proof Of Concept for Android. NoFrak is designed to prevent fracking attacks, as described in "Breaking and Fixing Origin-Based Access Control in…

android-securitydefensive-toolsmobile-security+2
1012 years ago
huawei-p10-cve-2017-8890-unlock preview

huawei-p10-cve-2017-8890-unlock

GitHubsweatyrocket/huawei-p10-cve-2017-8890-unlock

Huawei P10 VTR-L29C432B151 CVE-2017-8890 exploit research and bootloader-unlock journey

android-securitybinary-exploitationeducation+4
1 month ago
CVE-2026-43499-S24U preview

CVE-2026-43499-S24U

GitHubfusiondrive/cve-2026-43499-s24u

CVE-2026-43499 research port for Galaxy S24 Ultra SM-S928U1 DZF2 (COMPLETED)

android-securitybinary-exploitationexploitation+5
428 days ago
BIDO preview

BIDO

GitHubwhatishope/bido

Image-based Android malware detection framework tackling obfuscation and concept drift. Includes curated datasets and Python code for training…

android-securityeducationmachine-learning+3
27 months ago
FreeMOCA preview

FreeMOCA

GitHubiqsec-lab/freemoca

Memory-free continual learning framework for malware classification using mode connectivity-based interpolation. Supports class-incremental and…

android-securityeducationmachine-learning+3
2 months ago
maswe preview

maswe

GitHubowasp/maswe

OWASP enumeration of common security and privacy weaknesses in mobile applications, serving as a reference bridging the MASVS verification standard…

android-securitycurated-resourceseducation+4
4222 days ago
Previous123Next