Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
159 results
MIDA-Multitool preview

MIDA-Multitool

GitHubnullarray/mida-multitool

Bash script purposed for system enumeration, vulnerability identification and privilege escalation.

information-gatheringpenetration-testingpost-exploitation+2
167
7 years ago
BlueSAM preview

BlueSAM

GitHubincursi0n/bluesam

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

command-and-controlexploitationpayload-development+3
1674 months ago
uacscript preview

uacscript

GitHubvozzie/uacscript

Windows 7 UAC Bypass Vulnerability in the Windows Script Host

adversarial-attackexploitationpenetration-testing+4
10810 years ago
Invoke-BadSuccessor.ps1 preview

Invoke-BadSuccessor.ps1

GitHubb5null/invoke-badsuccessor.ps1

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

authenticationexploitationpenetration-testing+4
472 months ago
CVE-2020-8559 preview

CVE-2020-8559

GitHubtdwyer/cve-2020-8559

This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability

cloud-securitycontainer-securityexploitation+5
546 years ago
Gideon preview

Gideon

GitHubcogensec/gideon

Autonomous security operations agent for threat intelligence, vulnerability research, IOC analysis, and red teaming. Supports dual-mode operations…

ai-securitycommand-and-controleducation+9
341 month ago
KSLDBYOVDARK preview

KSLDBYOVDARK

GitHubanylnk/ksldbyovdark

Exploits a KSLD anti-rootkit driver vulnerability (IOCTL 0x222044) to bypass PPL protection and access sensitive process memory, enabling local…

exploitationpenetration-testingpost-exploitation+3
414 months ago
CVE-2026-41940 preview

CVE-2026-41940

GitHubkill1234545/cve-2026-41940

cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

authentication-authorizationexploitationpenetration-testing+5
103 months ago
EPScalate preview

EPScalate

GitHub0xinfection/epscalate

Exploit for elevation of privilege vulnerability in QuickHeal's Seqrite EPS (CVE-2023-31497).

exploitationpenetration-testingpost-exploitation+2
192 years ago
CVE-2016-0040 preview

CVE-2016-0040

GitHubde7ec7ed/cve-2016-0040

CVE-2016-0040 Privilege Escalation Exploit For WMI Receive Notification Vulnerability (x86-64)

binary-exploitationexploitationpayload-development+3
139 years ago
SecureConnect-Auth-Bypass preview

SecureConnect-Auth-Bypass

GitHubhorizon3ai/secureconnect-auth-bypass

An exploit proof of concept for ConnectWise SecureConnect authentication bypass vulnerability.

authentication-authorizationexploitationpenetration-testing+3
132 years ago
CVE-2025-7771-Vulnerability-Exploration preview

CVE-2025-7771-Vulnerability-Exploration

GitHubd4rkks/cve-2025-7771-vulnerability-exploration

Escalating privilege in the system from unsigned driver using throttlestop vulnerability

binary-exploitationeducationexploitation+4
134 months ago
linux-privilege-escalation preview

linux-privilege-escalation

GitHubrexpository/linux-privilege-escalation

Scripted Linux Privilege Escalation for the CVE-2022-0847 "Dirty Pipe" vulnerability

binary-exploitationexploitationpenetration-testing+3
94 years ago
CVE-2024-43451-POC preview

CVE-2024-43451-POC

GitHubronf98/cve-2024-43451-poc

CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.

exploitationmalware-analysispassword-cracking+3
151 year ago
CVE-2025-7771 preview

CVE-2025-7771

GitHubxm0kht4r/cve-2025-7771

A simple PoC demonstrating the vulnerability in the ThrottleStop.sys driver, showcasing arbitrary physical memory read and write capabilities, as…

binary-exploitationmalware-analysispost-exploitation+3
107 months ago
CVE-2026-39987 preview

CVE-2026-39987

GitHubgbuyssens/cve-2026-39987

Marimo exploit prior to 0.23.0. Pre-Auth RCE vulnerability via websocket endpoint : /terminal/ws.

exploitationpayload-generationpenetration-testing+3
18 days ago
CVE-2026-53625-GLPI-PoC preview

CVE-2026-53625-GLPI-PoC

GitHub7h30th3r0n3/cve-2026-53625-glpi-poc

GLPI Privilege Escalation via authtype Manipulation PoC - CVE-2026-53625. Ethical PoC for the GLPI vulnerability allowing a Technician to take full…

api-security-testingauthentication-authorizationexploitation+4
19 days ago
PrintSpoofer-ReflectiveDLL preview

PrintSpoofer-ReflectiveDLL

GitHubjonyfilc/printspoofer-reflectivedll

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

exploitationlateral-movementpayload-development+4
26 days ago
Previous123…9Next