Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
774 results
Chaos-Rootkit preview

Chaos-Rootkit

GitHubzeromemoryex/chaos-rootkit

Windows x64 Ring 0 rootkit enabling DKOM process hiding, privilege elevation, driver swapping, and anti-malware evasion by redirecting file…

ids-ips-evasionpersistence-mechanismspost-exploitation+2
1.1k3 months ago
HWSyscalls preview

HWSyscalls

GitHubdec0ne/hwsyscalls

HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.

ids-ips-evasionpayload-developmentpenetration-testing+2
7363 years ago
SysWhispers4 preview

SysWhispers4

GitHubjoasasantos/syswhispers4

AV/EDR evasion via direct and indirect system calls Windows NT 3.1 through Windows 11 24H2 · x64 · x86 · WoW64 · ARM64

adversarial-attackids-ips-evasionpayload-development+2
5545 months ago
ExecuteAssembly preview

ExecuteAssembly

GitHubmed0x2e/executeassembly

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

command-and-controlexploitationids-ips-evasion+8
5975 years ago
LetMeowIn preview

LetMeowIn

GitHubmeowmycks/letmeowin

A sophisticated, covert Windows-based credential dumper using C++ and MASM x64.

ids-ips-evasionpassword-attackspost-exploitation+1
4422 years ago
HTTP-revshell preview

HTTP-revshell

GitHub3v4si0n/http-revshell

Powershell reverse shell using HTTP/S protocol with AMSI bypass and Proxy Aware

command-and-controlids-ips-evasionpayload-generation+4
5981 year ago
redsails preview

redsails

GitHubbeetlechunks/redsails

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…

ids-ips-evasionpenetration-testingpersistence-mechanisms+2
3068 years ago
DriverJack preview

DriverJack

GitHubklezvirus/driverjack

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

exploitationids-ips-evasionlateral-movement+5
3652 years ago
PatchlessCLRLoader preview

PatchlessCLRLoader

GitHubvoldesec/patchlessclrloader

.NET assembly loader with patchless AMSI and ETW bypass

ids-ips-evasionpayload-developmentpost-exploitation+1
3893 years ago
UnhookingPatch preview

UnhookingPatch

GitHubsaadahla/unhookingpatch

Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime

adversarial-attackids-ips-evasionpayload-development+2
3093 years ago
NTDLLReflection preview

NTDLLReflection

GitHubsaadahla/ntdllreflection

Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll ,…

adversarial-attackids-ips-evasionpost-exploitation+1
3083 years ago
RustyWater-ShellCode-Dropper preview

RustyWater-ShellCode-Dropper

GitHubs3n4t0r-0x0/rustywater-shellcode-dropper

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

binary-exploitationcommand-and-controlexploitation+9
1041 month ago
SilentButDeadly preview

SilentButDeadly

GitHubloosehose/silentbutdeadly

SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using…

command-and-controldefensive-toolsexploitation+7
4569 months ago
EDRChoker preview

EDRChoker

GitHubtwosevenonet/edrchoker

A tool uses the QoS Policy (Pacer.sys) to throttle Endpoint Detection and Response (EDR) agents from connecting to the server.

defensive-toolsids-ips-evasionpersistence-mechanisms+3
3102 months ago
BokuLoader preview

BokuLoader

GitHubxforcered/bokuloader

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

adversarial-attackcommand-and-controlids-ips-evasion+4
3352 years ago
Split preview

Split

GitHubkudaes/split

Apply a divide and conquer approach to bypass EDRs

adversarial-attackids-ips-evasionpayload-development+3
2872 years ago
AMSI-ETW-Patch preview

AMSI-ETW-Patch

GitHubmr-un1k0d3r/amsi-etw-patch

Patch AMSI and ETW

adversarial-attackids-ips-evasionpost-exploitation+1
2512 years ago
rust_syscalls preview

rust_syscalls

GitHubjanoglezcampos/rust_syscalls

Single stub direct and indirect syscalling with runtime SSN resolving for windows.

ids-ips-evasionpayload-developmentpost-exploitation+1
2403 years ago
Previous123…43Next