Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
792 results
evil-winrm-py preview

evil-winrm-py

GitHubadityatelange/evil-winrm-py

Execute commands interactively on remote Windows machines using the WinRM protocol (just faster)

authenticationcommand-and-controllateral-movement+7
400
13 days ago
adm-zip_LPE-PoC preview

adm-zip_LPE-PoC

GitHubx86byte/adm-zip_lpe-poc

CVE-2026-102282: Local Privilege Escalation via SUID/SGID preservation during archive extraction

exploitationpayload-developmentprivilege-escalation+4
103 days ago
ps5-pihost preview

ps5-pihost

GitHubflex36ty/ps5-pihost

PS5 Exploit Web Server on a Raspberry Pi Powered by the PS5's USB Port

dns-analysisembedded-systems-securityexploitation+7
1 day ago
cve-2026-1668-poc preview

cve-2026-1668-poc

GitHubwuyou6956-glitch/cve-2026-1668-poc

Proof-of-concept exploit for CVE-2026-1668 in TP-Link switch firmware, delivering a MIPS payload that yields a root shell on vulnerable devices.

binary-exploitationembedded-systems-securityexploitation+6
4 days ago
injection-2 preview

injection-2

GitHubgmh5225/injection-2

Curated collection of Windows process injection techniques, linking write-ups on Conhost, PROPagate, KernelCallbackTable, KnownDlls poisoning and…

curated-resourcesdefensive-toolsexploitation+4
73 years ago
ghostlock-app preview

ghostlock-app

GitHubariyanpegu/ghostlock-app

GhostLock One-Tap Execution App (CVE-2026-43499)

android-securitybinary-analysisbinary-exploitation+8
10 days ago
Lenovo-TB365FC-GhostLock-CVE-2026-43499 preview

Lenovo-TB365FC-GhostLock-CVE-2026-43499

GitHubwonjj6768/lenovo-tb365fc-ghostlock-cve-2026-43499

GhostLock (CVE-2026-43499) root + KernelSU LKM for the Lenovo TB365FC (ZUXOS / Android 16, kernel 5.15.170)

android-securitybinary-exploitationexploitation+6
10 days ago
CVE-2026-43499-poc preview

CVE-2026-43499-poc

GitHubathbe1337/cve-2026-43499-poc

Local privilege escalation PoC for CVE-2026-43499, an rtmutex use-after-free in Qualcomm Android 4.19 kernels, using KASLR leak and cred patching to…

android-securitybinary-exploitationexploitation+3
9 days ago
DFRoot preview

DFRoot

GitHuba2333c/dfroot

Android root tool for Samsung Galaxy S25 Ultra (SM-S938B) that chains DirtyFrag CVE-2026-43284 and CVE-2026-43499 to gain root automatically at boot…

android-securityexploitationmobile-app-pentesting+7
36 days ago
POCO-M7-Plus-Jailbreak preview

POCO-M7-Plus-Jailbreak

GitHubaniketlab/poco-m7-plus-jailbreak

Temporary Root Research on Poco M7 Plus (SM6375) via Qualcomm GBL Exploit (CVE-2026-24088) + GhostLock Kernel Analysis (CVE-2026-43499)

android-securitybinary-exploitationeducation+7
32 days ago
Deserializer preview

Deserializer

GitHubjoshuaprovoste/deserializer

AST-based Static Code Analyzer with Agentic LLM-Powered Relationship Mapping to discover Python RCE paths and deep deserialization chains on AI, LLM,…

ai-securitycode-analysisexploitation+6
3 days ago
CVE-2026-34990-poc preview

CVE-2026-34990-poc

GitHubdennisdgr/cve-2026-34990-poc

LPE PoC for CVE-2026-34990 using a CUPS root file write vulnerability.

exploitationpayload-developmentpenetration-testing+2
16 days ago
CVE-2026-34990 preview

CVE-2026-34990

GitHubgbuyssens/cve-2026-34990

Local privilege escalation against a root `cupsd`.

exploitationpayload-developmentpenetration-testing+3
7 days ago
CVE-2026-34990-poc preview

CVE-2026-34990-poc

GitHubkhush-613/cve-2026-34990-poc

Proof-of-concept exploit for CVE-2026-34990, a CUPS 2.4.16 local privilege escalation via arbitrary file write through CUPS_CREATE_LOCAL_PRINTER and…

exploitationpayload-developmentpenetration-testing+4
26 days ago
DirtyFrag-Galaxy preview

DirtyFrag-Galaxy

GitHubcoey0814/dirtyfrag-galaxy

One-click temporary KernelSU root (late-load) for Samsung Galaxy via DirtyFrag (CVE-2026-43284). No Shizuku/PC/ADB.

android-securityexploitationmobile-app-pentesting+5
56 days ago
Relapse-Exploit preview

Relapse-Exploit

GitHubntfargo/relapse-exploit

PS5 exploit chain for firmware 7.00-13.60 combining a WebKit JSC info leak and typedarray corruption with an aio_multi_wait UAF race for kernel…

binary-exploitationeducationexploitation+5
8324 days ago
op13-cve-2026-64560 preview

op13-cve-2026-64560

GitHuba23bc/op13-cve-2026-64560

Device-specific Android kernel exploit for CVE-2026-64560 on OnePlus 13 builds, providing temporary root via ADB shell with verified payloads and…

android-securitybinary-exploitationexploitation+8
47 days ago
cve-2026-64560-a16 preview

cve-2026-64560-a16

GitHubbecome-illusory/cve-2026-64560-a16

CVE-2026-64560 toolkit: Go single-binary toolchain + realme RMX5010 (A16, SM8750) target port

android-securitybinary-exploitationexploitation+8
8 days ago
Previous12…44Next