Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
83 results
donut preview

donut

GitHubthewover/donut

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

exploitationids-ips-evasionmemory-forensics+6
4.7k
1 year ago
PowerSharpPack preview

PowerSharpPack

GitHubs3cur3th1ssh1t/powersharppack
exploit-frameworksinformation-gatheringlateral-movement+5
1.7k1 year ago
mortar preview

mortar

GitHub0xsp-srd/mortar

evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

exploit-frameworksids-ips-evasionpayload-generation+2
1.5k2 years ago
amber preview

amber

GitHubegebalci/amber

Reflective PE packer.

binary-exploitationencryption-decryption-toolsexploitation+6
1.4k2 years ago
DDexec preview

DDexec

GitHubarget13/ddexec

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

binary-exploitationpayload-generationpenetration-testing+3
8931 year ago
Kautilya preview

Kautilya

GitHubsamratashok/kautilya

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

command-and-controldata-exfiltrationhardware-iot-security+6
8719 years ago
monomorph preview

monomorph

GitHubdavidbuchanan314/monomorph

MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash

binary-exploitationcryptographyexploitation+5
7923 years ago
Ivy preview
Archived

Ivy

GitHuboptiv/ivy

Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by utilizing…

exploitationpayload-developmentpayload-generation+4
7433 years ago
HandleKatz preview

HandleKatz

GitHubcodewhitesec/handlekatz

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

defensive-toolsmemory-forensicspayload-generation+3
5983 years ago
IntelTXE-PoC preview
Archived

IntelTXE-PoC

GitHubptresearch/inteltxe-poc

Intel Management Engine JTAG Proof of Concept

binary-exploitationdebuggersembedded-systems-security+6
5486 years ago
meterssh preview

meterssh

GitHubtrustedsec/meterssh

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

command-and-controlexploitationpayload-development+4
5289 years ago
siofra preview

siofra

GitHubcybereason/siofra
binary-analysisbinary-exploitationpayload-generation+4
5128 years ago
InflativeLoading preview

InflativeLoading

GitHubsenzee1984/inflativeloading

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

binary-exploitationexploitationmalware-analysis+3
3272 years ago
Fritter preview

Fritter

GitHub0xrootpls/fritter

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

binary-exploitationexploitationpayload-development+5
24916 days ago
Insanity-Framework preview

Insanity-Framework

GitHub4w4k3/insanity-framework

Generate Payloads and Control Remote Machines. [Discontinued]

command-and-controlexploitationids-ips-evasion+7
2249 years ago
CVE-2020-0674-Exploit preview

CVE-2020-0674-Exploit

GitHubmaxpl0it/cve-2020-0674-exploit

This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.

binary-exploitationexploitationpayload-generation+3
2226 years ago
CVE-2019-11932 preview

CVE-2019-11932

GitHubawakened1712/cve-2019-11932

Simple POC for exploiting WhatsApp double-free bug in DDGifSlurp in decoding.c in libpl_droidsonroids_gif

binary-exploitationexploitationmobile-security+2
2086 years ago
DbgNexum preview

DbgNexum

GitHubdis0rder0x00/dbgnexum

Shellcode injection using the Windows Debugging API

binary-exploitationexploitationpayload-development+6
1827 months ago
Previous12345Next