Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
77 results
redamon preview

redamon

GitHubsamugit83/redamon

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

ai-securityexploit-frameworkslateral-movement+8
2.6k1 day ago
Shellcrypt preview

Shellcrypt

GitHubiilegacyyii/shellcrypt

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

cryptographyencryption-decryption-toolspayload-development+3
2165 days ago
CVE-2022-34302 preview

CVE-2022-34302

GitHubthemalwareguardian/cve-2022-34302

Demonstrates CVE-2022-34302, a Secure Boot bypass via the New Horizon Datasys signed bootloader whose built-in custom PE/COFF loader executes…

binary-exploitationembedded-systems-securityexploitation+7
11 days ago
CVE-2022-34303 preview

CVE-2022-34303

GitHubthemalwareguardian/cve-2022-34303

Demonstrates CVE-2022-34303 Secure Boot bypass via CryptoPro signed UEFI Shell, using the mm command to nullify gSecurity2 and load unsigned UEFI…

binary-exploitationeducationexploitation+7
11 days ago
CouchPotato preview

CouchPotato

GitHubaaron-kidwell/couchpotato

Windows privilege escalation tool that abuses SeImpersonatePrivilege via indirect syscalls, patching ETW and AMSI to elevate from service account or…

exploitationpayload-developmentpost-exploitation+2
11218 days ago
cve-2019-2215-markw preview

cve-2019-2215-markw

GitHubbegitdj/cve-2019-2215-markw

Exploit for CVE-2019-2215 to gain temporary root on Xiaomi MIUI devices, enabling bootloader unlock and system modifications.

android-securitybinary-exploitationexploitation+4
11 month ago
css-the-bomb-inside-your-inbox preview

css-the-bomb-inside-your-inbox

GitHubportswigger/css-the-bomb-inside-your-inbox

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

ai-securitycurated-resourcesdata-exfiltration+7
431 month ago
GhostLock-Galaxy preview

GhostLock-Galaxy

GitHubwxxsfxyzm/ghostlock-galaxy

Root your Galaxy using CVE-2026-43499

android-securitybinary-analysisexploitation+6
221 month ago
ransomwhere preview

ransomwhere

GitHubhazcod/ransomwhere

A PoC ransomware sample to test out your ransomware response strategy.

adversarial-attackencryption-decryption-toolsincident-response+3
2181 month ago
CVE-2022-23093 preview

CVE-2022-23093

GitHubsh4den/cve-2022-23093

The FreeBSD ICMP buffer overflow, freebsd buffer overflow poc

binary-exploitationexploitationpayload-development+2
102 months ago
Hollow preview

Hollow

GitHubchaelsoo/hollow

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

binary-exploitationencryption-decryption-toolsexploitation+7
1012 months ago
CVE-2026-0001 preview

CVE-2026-0001

GitHubhorkimhab/cve-2026-0001

CVE-2026-0001. Do with your own risk

educationexploitationpayload-development+3
3 months ago
Pi-Zero-2W-Bad-USB preview

Pi-Zero-2W-Bad-USB

GitHubpsycostea/pi-zero-2w-bad-usb

Configure your Pi Zero 2W to be a BadUSB

ctfeducationembedded-systems-security+6
394 months ago
CVE-2026-35031 preview

CVE-2026-35031

GitHubkeraattin/cve-2026-35031

Critical path traversal to RCE vulnerability in Jellyfin Media Server (CVSS 9.9). Includes proof-of-concept exploit, technical analysis, and…

educationexploitationpapers-research+5
25 months ago
stealth_call preview

stealth_call

GitHubkitsune-de/stealth_call

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

anti-botdefensive-toolsexploitation+3
65 months ago
chromium-exploit-dev preview

chromium-exploit-dev

GitHubpetitoto/chromium-exploit-dev

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

binary-exploitationcommand-and-controlexploitation+5
3116 months ago
CVE-2026-30345 preview

CVE-2026-30345

GitHubsyphonetic/cve-2026-30345

Proof-of-concept exploit for CVE-2026-30345, an arbitrary file write in CTFd backup import, enabling persistent backdoor via .bashrc.

exploitationpayload-developmentpenetration-testing+2
56 months ago
react2shell-lab preview

react2shell-lab

GitHubalsaut1/react2shell-lab

CVE-2025-55182 React2Shell PoC lab

code-analysisctfeducation+7
79 months ago
Previous12345Next