Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1583 results
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
38.9k
4h 11m ago
CVE-2025-49844 preview

CVE-2025-49844

GitHubzain3311/cve-2025-49844

Exploit CVE-2025-49844 Redis Lua UAF vulnerability to execute arbitrary shellcode and establish persistent backdoor access on vulnerable Redis…

command-and-controlexploitationpayload-development+3
25h 40m ago
yakit preview

yakit

GitHubyaklang/yakit

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

command-and-controlexploit-frameworksfuzzing+9
7.7k10h 2m ago
cve-2025-66398 preview

cve-2025-66398

GitHubshowy-headteacher114/cve-2025-66398

Demonstrate exploitation of Signal K Server CVE-2025-66398 allowing unauthenticated attackers to inject backdoor and enable remote code execution.

exploitationpayload-developmentpenetration-testing+3
113h 20m ago
k50g-pocof4gt-cve-2026-43499-poc preview

k50g-pocof4gt-cve-2026-43499-poc

GitHubcxyofficial/k50g-pocof4gt-cve-2026-43499-poc

Local privilege escalation exploit for Redmi K50G/POCO F4 GT using CVE-2026-43499 (futex UAF) to gain temporary root and load KernelSU without…

android-securitybinary-exploitationexploitation+5
1 day ago
CVE-2026-27475 preview

CVE-2026-27475

GitHubtrachinus/cve-2026-27475

Proof-of-concept exploit for CVE-2026-27475, an authenticated insecure deserialization vulnerability in SPIP 4.4.8 leading to remote code execution.

exploitationpayload-developmentpenetration-testing+2
1 day ago
CVE-2026-20841 preview

CVE-2026-20841

GitHubhamzamalik3461/cve-2026-20841

🛠 Demonstrate remote code execution in Windows Notepad via markdown links exploiting unsecured URL protocols.

command-and-controlexploitationpayload-development+3
11 day ago
CVE-2026-82222 preview

CVE-2026-82222

GitHubr0x19/cve-2026-82222

GiveWP <= 4.16.7.1 Unauthenticated PHP Object Injection → RCE

exploitationpayload-developmentpenetration-testing+3
2 days ago
ghostlock-x200-app preview

ghostlock-x200-app

GitHubxiaohj233/ghostlock-x200-app

vivo X200 设备端一键 root App(Shizuku 授权 shell 域执行,CVE-2026-43499)

android-securityexploitationexploit-frameworks+4
12 days ago
ghostlock-x200-root preview

ghostlock-x200-root

GitHubxiaohj233/ghostlock-x200-root

GhostLock-X200 v1.0 - temporary root toolchain for vivo X200 (PD2415 / b57 kernel) based on CVE-2026-43499. For authorized security research only.

android-securitybinary-exploitationexploitation+5
62 days ago
Root-My-Galaxy preview

Root-My-Galaxy

GitHubalk601/root-my-galaxy

KSU installer for supported Samsung Galaxy firmware with CVE-2026-43499

android-securityexploitationhardware-iot-security+2
2 days ago
CVE-2025-66478-PoC-Reverse-Shell preview

CVE-2025-66478-PoC-Reverse-Shell

GitHubjotaespig/cve-2025-66478-poc-reverse-shell

Proof-of-concept exploit for CVE-2025-55182/66478, a React Server Components deserialization RCE, delivering a reverse shell via crafted multipart…

exploitationpayload-developmentpenetration-testing+3
12 days ago
rmgp-complete-handoff preview

rmgp-complete-handoff

GitHubabdgalaxy36-code/rmgp-complete-handoff

Complete RMGP (CVE-2026-43499) workspace + experiment-state handoff for SM-A376B/A376BXXU1AZB7

android-securitybinary-exploitationexploitation+5
2 days ago
cve-2026-67363-67364 preview

cve-2026-67363-67364

GitHublulztigre/cve-2026-67363-67364

PoC and detection templates for pre-auth RCE and payment tampering in Balbooa Forms (Joomla), including Python exploit and Nuclei detection template.

exploitationpayload-developmentpenetration-testing+3
3 days ago
RootMyVivo preview

RootMyVivo

GitHubzenyxx-xd/rootmyvivo

One-click root for vivo/iQOO devices on locked bootloader | CVE-2026-43499 + KernelSU

android-securityexploitationexploit-frameworks+3
14 days ago
SecureForce preview

SecureForce

GitHubhackops-academy/secureforce

A simplified but capable penetration testing framework with exploit library, payload creation, and interactive console for authorized security testing

command-and-controlexploitationexploit-frameworks+6
4 days ago
Root-My-Device preview

Root-My-Device

GitHubwitaqua-tools/root-my-device

KSU installer for supported firmware with CVE-2026-43499

android-securitybinary-exploitationexploitation+6
144 days ago
CVE-2025-55182-poc preview

CVE-2025-55182-poc

GitHubuwugreed/cve-2025-55182-poc

I know you are probably here from Hack the Box, if so, yes this one actually works.

exploitationpayload-developmentpenetration-testing+3
5 days ago
Previous12…88Next