Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
55 results
CVE-2025-24813 preview

CVE-2025-24813

GitHubseahcy/cve-2025-24813

Instructions for rapid deployment of Tomcat v9.0.90 with java 25.0.1 2025-10-21 LTS on Windows Server 2019 Standard for lazy researchers.

educationexploitationpayload-development+3
1
8 months ago
DarkLoadLibrary preview

DarkLoadLibrary

GitHubbats3c/darkloadlibrary

LoadLibrary for offensive operations

binary-analysisdefensive-toolsexploitation+2
1.2k4 years ago
awesome-edr-bypass preview

awesome-edr-bypass

GitHubtkmru/awesome-edr-bypass

Curated collection of EDR bypass resources including PoCs, tools, workshops, presentations, and blogs for ethical hacking and red team operations.

curated-resourcesdefensive-toolseducation+6
1.6k7 months ago
LazySign preview

LazySign

GitHubjfmaes/lazysign

Create fake certs for binaries using windows binaries and the power of bat files

binary-analysisdefensive-toolsimpersonation-tools+6
5702 years ago
GoPurple preview

GoPurple

GitHubsh4hin/gopurple

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

defensive-toolseducationexploitation+6
4975 years ago
p3-loader preview

p3-loader

GitHuborange-cyberdefense/p3-loader

P³-Shellcode Loader is a loader that implements a code injection technique which leverages the Process Parameters structure as an execution and…

binary-exploitationdefensive-toolseducation+8
2132 months ago
EDRception preview

EDRception

GitHubmalwaretech/edrception

A proof of concept for abusing exception handlers to hook and bypass user mode EDR hooks.

defensive-toolsexploitationids-ips-evasion+3
2022 years ago
dropengine preview

dropengine

GitHubs0lst1c3/dropengine

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

defensive-toolsexploit-frameworkspayload-development+5
2145 years ago
Follina_MSDT_CVE-2022-30190 preview

Follina_MSDT_CVE-2022-30190

GitHubmuhammad-ali007/follina_msdt_cve-2022-30190

Educational exploit for CVE-2022-30190 (Follina) demonstrating MSDT remote code execution via malicious Office documents, with detection and…

command-and-controldefensive-toolseducation+8
13 years ago
CVE-2025-60709 preview

CVE-2025-60709

GitHubkondordevsecuritycorp/cve-2025-60709

Windows CLFS LPE exploit PoC for security research

binary-exploitationdefensive-toolseducation+4
5 months ago
Dent preview
Archived

Dent

GitHuboptiv/dent

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

defensive-toolsexploit-frameworksids-ips-evasion+2
2973 years ago
BlackLotus preview

BlackLotus

GitHubldpreload/blacklotus

BlackLotus UEFI Windows Bootkit

command-and-controldefensive-toolsexploitation+8
2.2k2 years ago
UnhookMe preview

UnhookMe

GitHubmgeeky/unhookme

Dynamic Windows API resolver and unhooker that detects and restores hooked functions (IAT, EAT, inline patches) to invoke unmonitored system calls…

defensive-toolspayload-developmentred-teaming
3484 years ago
stealth_call preview

stealth_call

GitHubkitsune-de/stealth_call

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

anti-botdefensive-toolsexploitation+3
74 months ago
FunctionStomping preview
Archived

FunctionStomping

GitHubidov31/functionstomping

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

binary-exploitationdefensive-toolsexploitation+7
7062 years ago
Amsi-Bypass-Powershell preview

Amsi-Bypass-Powershell

GitHubs3cur3th1ssh1t/amsi-bypass-powershell

This repo contains some Amsi Bypass methods i found on different Blog Posts.

defensive-toolsexploitationids-ips-evasion+2
2.2k1 year ago
SysWhispers2 preview

SysWhispers2

GitHubjthuraisamy/syswhispers2

AV/EDR evasion via direct system calls.

binary-exploitationdefensive-toolsids-ips-evasion+5
1.8k4 years ago
Invisi-Shell preview

Invisi-Shell

GitHubomerya/invisi-shell

Hide your Powershell script in plain sight. Bypass all Powershell security features

defensive-toolsexploitationids-ips-evasion+9
1.3k7 years ago
Previous1234Next