Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
53 results
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
38.9k17h 31m ago
LaZagne preview

LaZagne

GitHubalessandroz/lazagne

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

encryption-decryption-toolsforensicshash-analysis+8
11.0k11 months ago
Seatbelt preview

Seatbelt

GitHubghostpack/seatbelt

C# host-survey tool for offensive and defensive security, performing extensive safety checks on Windows systems including user, system, and network…

defensive-toolsinformation-gatheringpenetration-testing+6
4.7k1 year ago
BlackLotus preview

BlackLotus

GitHubldpreload/blacklotus

UEFI bootkit for Windows with Secure Boot bypass, kernel-level persistence, and encrypted HTTPS C2. Features HVCI/UAC bypass, API hooking, and…

command-and-controldefensive-toolsexploitation+8
2.2k2 years ago
PersistenceSniper preview

PersistenceSniper

GitHublast-byte/persistencesniper

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines.…

defensive-toolsforensicsincident-response+1
2.1k1 year ago
Remote-Access-Trojan preview

Remote-Access-Trojan

GitHubmalwares/remote-access-trojan

Windows-based remote access trojan (RAT) for covert system control, payload delivery, and data exfiltration. Intended for authorized security…

command-and-controldata-exfiltrationpayload-development+3
7509 years ago
PCShare preview

PCShare

GitHubxdnice/pcshare

HTTP-based remote access tool with DLL injection, process hollowing, and system hooking for persistent control, screen monitoring, file exfiltration,…

command-and-controldata-exfiltrationlateral-movement+9
5699 years ago
SmmBackdoor preview

SmmBackdoor

GitHubcr4sh/smmbackdoor

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

exploitationfirmware-analysishardware-hacking+4
6332 years ago
paradoxiaRAT preview

paradoxiaRAT

GitHubquantumcore/paradoxiarat

Native Windows remote access tool with stealth client, reflective DLL injection, keylogger, Chrome password recovery, reverse shell, file system…

command-and-controlpassword-crackingpenetration-testing+4
8263 years ago
CdpSvcLPE preview

CdpSvcLPE

GitHubsailay1996/cdpsvclpe

Windows Local Privilege Escalation via CdpSvc service (Writeable SYSTEM path Dll Hijacking)

exploitationpayload-developmentpenetration-testing+3
2563 years ago
USP preview

USP

GitHubgrahamhelton/usp

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

payload-developmentpersistence-mechanismspost-exploitation+2
1531 year ago
macos-collector preview

macos-collector

GitHublethal-forensics/macos-collector

Shell script for automated collection and analysis of macOS forensic artifacts, including persistence enumeration, unified logs, and file system…

digital-forensicsforensicsincident-response+2
491 month ago
wptsextensions.dll preview

wptsextensions.dll

GitHubphackt/wptsextensions.dll

Builds a malicious DLL that abuses Windows Task Scheduler's DLL search order to execute a script as SYSTEM during local privilege escalation.

exploitationpayload-developmentpersistence-mechanisms+3
575 years ago
phantom-keylogger preview

phantom-keylogger

GitHubmattiaalessi/phantom-keylogger

Stealth-enabled keystroke and visual intelligence gathering system for authorized red team operations. Features persistent surveillance, C2 tunnel,…

command-and-controldata-exfiltrationids-ips-evasion+6
778 months ago
wildlogger preview

wildlogger

GitHubmustafadalga/wildlogger

This is a keylogger that collects all the data and e-mail it in a set time with system information which includes device S/N and hardware specs,…

data-exfiltrationinformation-gatheringpassword-attacks+1
4510 months ago
Monitor preview

Monitor

GitHubal1ex/monitor

Windows persistence technique using AddMonitor to load a malicious DLL with SYSTEM privileges, enabling remote C2 via Meterpreter.

command-and-controlexploitationpayload-generation+4
535 years ago
Schwarze-Sonne-RAT preview

Schwarze-Sonne-RAT

GitHubmwsrc/schwarze-sonne-rat

Remote Access Trojan (RAT) providing covert command-and-control, payload delivery, and post-exploitation capabilities for targeted system access and…

command-and-controldata-exfiltrationlateral-movement+6
299 years ago
telegram-c2 preview

telegram-c2

GitHubtomiwa-ot/telegram-c2

Telegram bot-based C2 framework for remote system control, file exfiltration, screen/webcam capture, and service enumeration with stealthy deployment.

command-and-controlinformation-gatheringpersistence-mechanisms+4
491 year ago
Previous123Next