Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
58 results
boopkit preview

boopkit

GitHubkrisnova/boopkit

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.

command-and-controlexploitationids-ips-evasion+6
1.7k3 years ago
Cuteit preview

Cuteit

GitHubd4vinci/cuteit

IP obfuscator made to make a malicious ip a bit cuter

command-and-controlids-ips-evasionpayload-generation+4
5461 year ago
OffensivePipeline preview

OffensivePipeline

GitHubaetsu/offensivepipeline

OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.

ids-ips-evasionpayload-generationred-teaming+1
8212 years ago
AMSI.fail preview

AMSI.fail

GitHubflangvik/amsi.fail

C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.

defensive-toolsexploitationids-ips-evasion+2
4687 months ago
bad_ducky preview

bad_ducky

GitHubmharjac/bad_ducky

Rubber Ducky compatible clone based on CJMCU BadUSB HW.

hardware-hackingids-ips-evasionimpersonation-tools+5
3018 years ago
meterpeter preview

meterpeter

GitHubr00t-3xp10it/meterpeter

C2 Powershell Command & Control Framework with BuiltIn Commands

command-and-controlids-ips-evasionpayload-generation+4
5072 years ago
HTTP-revshell preview

HTTP-revshell

GitHub3v4si0n/http-revshell

Powershell reverse shell using HTTP/S protocol with AMSI bypass and Proxy Aware

command-and-controlids-ips-evasionpayload-generation+4
6002 years ago
trojanizer preview

trojanizer

GitHubr00t-3xp10it/trojanizer

Trojanize your payload - WinRAR (SFX) automatization - under Linux distros

command-and-controlexploitationids-ips-evasion+6
2948 years ago
ibombshell preview

ibombshell

GitHubtelefonica/ibombshell

Tool to deploy a post-exploitation prompt at any time

command-and-controlids-ips-evasionpayload-generation+5
3205 years ago
Insanity-Framework preview

Insanity-Framework

GitHub4w4k3/insanity-framework

Generate Payloads and Control Remote Machines. [Discontinued]

command-and-controlexploitationids-ips-evasion+7
2279 years ago
metasploitavevasion preview

metasploitavevasion

GitHubnccgroup/metasploitavevasion

Metasploit AV Evasion Tool

command-and-controlexploitationids-ips-evasion+4
25610 years ago
bluffy preview

bluffy

GitHubpreemptdev/bluffy

Convert shellcode into :sparkles: different :sparkles: formats!

ids-ips-evasionpayload-generationshellcode+1
3553 years ago
Amsi_Bypass_In_2023 preview

Amsi_Bypass_In_2023

GitHubsenzee1984/amsi_bypass_in_2023

Amsi Bypass payload that works on Windwos 11

adversarial-attackexploitationids-ips-evasion+4
3783 years ago
AsmLdr preview

AsmLdr

GitHub0xninjacyclone/asmldr

Dynamic shellcode loader with sophisticated evasion capabilities

ids-ips-evasionpayload-developmentpayload-generation+3
3450 years ago
fileless-xec preview

fileless-xec

GitHubariary/fileless-xec

Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)

command-and-controlexploitationids-ips-evasion+7
2102 years ago
nim-shell preview

nim-shell

GitHubemrekybs/nim-shell

Reverse shell that can bypass windows defender detection

command-and-controlexploitationids-ips-evasion+5
1796 months ago
zombie-zip preview

zombie-zip

GitHubbombadil-systems/zombie-zip

Malformed ZIP archive that evades antivirus detection by declaring Method=0 (stored) while containing DEFLATE-compressed payload.

exploitationids-ips-evasionmalware-analysis+5
1966 months ago
PowerShx preview

PowerShx

GitHubiomoath/powershx

Run Powershell without software restrictions.

command-and-controldefensive-toolsids-ips-evasion+7
2815 years ago
Previous1234Next