Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1774 results
CVE-2023-38831-WinRAR-Vulnerability-Analysis preview

CVE-2023-38831-WinRAR-Vulnerability-Analysis

GitHubolowostandard1/cve-2023-38831-winrar-vulnerability-analysis

This project is a cybersecurity research and analysis project focused on CVE-2023-38831, a critical WinRAR vulnerability that allows attackers to…

educationexploitationlabs-practice+3
1
4 months ago
Awesome-Cellular-Hacking preview

Awesome-Cellular-Hacking

GitHubw00t3k/awesome-cellular-hacking

Awesome-Cellular-Hacking

curated-resourceseducationexploitation+6
4.0k24 days ago
Hacking-pdf.js-vulnerability preview

Hacking-pdf.js-vulnerability

GitHubbhavyakcwestern/hacking-pdf.js-vulnerability

CVE-2024-4367

code-analysiseducationexploitation+3
1 year ago
grandstream-cve-2026-2329-analysis preview

grandstream-cve-2026-2329-analysis

GitHubvivianuba/grandstream-cve-2026-2329-analysis

Defensive vulnerability-research project comparing vulnerable and patched Grandstream GXP1600 firmware for CVE-2026-2329, using SquashFS extraction,…

binary-analysiseducationfirmware-analysis+4
1 month ago
VMDragonSlayer preview

VMDragonSlayer

GitHubpoppopjmp/vmdragonslayer

Multi-engine framework for unpacking and analyzing VM-protected binaries using dynamic taint tracking, symbolic execution, pattern classification,…

binary-analysisdebuggersdynamic-analysis-sandboxing+8
43511 months ago
Obfuscapk preview
Archived

Obfuscapk

GitHubclaudiugeorgiu/obfuscapk

An automatic obfuscation tool for Android apps that works in a black-box fashion, supports advanced obfuscation features and has a modular…

android-securitydynamic-analysis-sandboxingeducation+4
1.3k2 years ago
security-research preview

security-research

GitHubgoogle/security-research

This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…

curated-resourceseducationexploitation+3
4.6k12h 29m ago
OWASP-MCP-Governance-and-Risk-Project preview

OWASP-MCP-Governance-and-Risk-Project

GitHubowasp/owasp-mcp-governance-and-risk-project

Project focused on governance and risk in application security, providing resources and frameworks for security maturity and risk management.

curated-resourceseducationpapers-research
8613 days ago
API-Security preview

API-Security

GitHubowasp/api-security

OWASP-maintained Top 10 API security risks document and documentation portal with best practices for building, breaking, and defending APIs.

api-securitycurated-resourceseducation+3
2.4k13h 46m ago
blue-team-capstone preview

blue-team-capstone

GitHubkyaw-tun/blue-team-capstone

CVSS v3.1 assessment of CVE-2009-0658 (Adobe Acrobat Buffer Overflow), including Base, Temporal, and Environmental scoring and remediation…

curated-resourceseducationpapers-research+1
10 days ago
Hardware-Vulnerability-with-Proof-of-Concept- preview

Hardware-Vulnerability-with-Proof-of-Concept-

GitHubiamshivambhatt/hardware-vulnerability-with-proof-of-concept-

Research and hands-on PoC of Spectre Variant 2 (CVE-2017-5715), a hardware side-channel vulnerability exploiting CPU speculative execution and branch…

educationexploitationhardware-security+2
2 months ago
cve-2015-2315-report preview

cve-2015-2315-report

GitHubweidongl74/cve-2015-2315-report

Simulation code and report for CVE-2015-2315, demonstrating the vulnerability exploitation scenario for educational analysis.

binary-exploitationeducationexploitation+2
211 years ago
CVE-2026-3494_Verfication preview

CVE-2026-3494_Verfication

GitHubkelnor/cve-2026-3494_verfication

Reproduces and analyzes CVE-2026-3494, an audit logging bypass in MariaDB server_audit plugin, using Docker-based multi-version testing to compare…

database-securityeducationexploitation+2
4 months ago
SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis preview

SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis

GitHubzedocun/sharepoint-toolshell-cve-2025-53770-incident-analysis

Technical analysis of a SharePoint ToolShell (CVE-2025-53770) exploitation attempt involving RCE, webshell deployment, and MachineKey extraction.

digital-forensicseducationexploitation+7
15 months ago
Defenses-for-Tool-Integrated-LLM preview

Defenses-for-Tool-Integrated-LLM

GitHubxiaoyan-lisa/defenses-for-tool-integrated-llm

Research code and experiments for defending tool-integrated LLM agents against adversarial attacks, extending Agent Security Bench with new defense…

adversarial-attackai-securitydefensive-tools+3
11 months ago
CVE-2024-36886 preview

CVE-2024-36886

GitHubabubakar-shahid/cve-2024-36886

Academic research on N-Day Linux kernel vulnerabilities, analyzing CVE-2024-36886 in the TIPC networking subsystem, lifecycle, impact, and mitigation…

dynamic-code-analysiseducationexploitation+5
1 year ago
cybersecurity-projects preview

cybersecurity-projects

GitHubosxninja/cybersecurity-projects

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

ai-securitycurated-resourcesdigital-forensics+7
283 days ago
CVE-2026-42089 preview

CVE-2026-42089

GitHub0xmrma/cve-2026-42089

A local package installation helper trusted caller-supplied package names too much. In yeoman-environment, missing generators could be installed…

code-analysiseducationexploitation+3
2 months ago
Previous12…99Next