Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
26 results
backdoorme preview

backdoorme

GitHubkkevsterrr/backdoorme

powerful auto-backdooring utility

command-and-controlpayload-generationpenetration-testing+5
747
8 years ago
r0ak preview

r0ak

GitHubharryanon/r0ak

Windows command-line utility for reading, writing, and executing kernel-mode code from Administrator context using a font validation execution…

binary-exploitationdebuggersexploitation+5
1088 years ago
RunAs-Stealer preview

RunAs-Stealer

GitHubdarkspacesecurity/runas-stealer

RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging

adversarial-attackpassword-attackspost-exploitation+1
2091 year ago
GTFOBLookup preview

GTFOBLookup

GitHubnccgroup/gtfoblookup

Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

information-gatheringlateral-movementpenetration-testing+3
2913 years ago
doublepulsar-usermode-injector preview

doublepulsar-usermode-injector

GitHubwithsecurelabs/doublepulsar-usermode-injector

A utility to use the usermode shellcode from the DOUBLEPULSAR payload to reflectively load an arbitrary DLL into another process, for use in testing…

exploitationmalware-analysispayload-development+2
1239 years ago
TokenStealer preview

TokenStealer

GitHubdecoder-it/tokenstealer

Windows token manipulation utility that lists, steals, and impersonates process or user tokens to execute commands as other users, leveraging…

impersonation-toolspost-exploitationprivilege-escalation+1
1652 years ago
ACEshark preview

ACEshark

GitHubt3l3machus/aceshark

ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminating the need…

configuration-auditinginformation-gatheringpenetration-testing+4
1511 year ago
r0ak preview

r0ak

GitHubown2pwn/r0ak

r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems

binary-analysisexploitationpenetration-testing+3
278 years ago
AzTokenFinder preview

AzTokenFinder

GitHubhackmichnet/aztokenfinder

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

authenticationcloud-securitymemory-forensics+3
1093 years ago
SharpSCOM preview

SharpSCOM

GitHubbreakfix/sharpscom

A C# utility for interacting with SCOM

authentication-authorizationexploitationimpersonation-tools+3
979 months ago
zygote-injection-toolkit preview

zygote-injection-toolkit

GitHubanonymous941/zygote-injection-toolkit

A command-line utility to exploit Android Zygote injection (CVE-2024-31317)

android-securitydata-exfiltrationexploitation+5
629 months ago
breakcyserver preview

breakcyserver

GitHubwaawaa/breakcyserver

Red-team EDR evasion utility that terminates security services by abusing Process Explorer driver functionality to bypass PPL and ObRegisterCallbacks.

exploitationids-ips-evasionpost-exploitation+2
524 years ago
ntdsdotsqlite preview

ntdsdotsqlite

GitHubalmandin/ntdsdotsqlite

A small utility to translate NTDS.dit files to SQLite format.

digital-forensicsencryption-decryption-toolspassword-attacks+2
852 years ago
OwnershipStealer preview

OwnershipStealer

GitHubadpunisher/ownershipstealer

Command-line utility for Windows that enables SeTakeOwnershipPrivilege and modifies file ownership to the current user, granting access to otherwise…

adversarial-attackpenetration-testingpost-exploitation+2
283 years ago
Metamorph preview

Metamorph

GitHubsynacktiv/metamorph

A command-line utility for Windows written in C that creates and configures persistent Event Tracing for Windows (ETW) AutoLogger sessions.

defensive-toolsincident-responseinformation-gathering+3
83 months ago
exploithosting preview

exploithosting

GitHubpeewpw/exploithosting

Host-based exploitation utility for penetration testing and red team operations, enabling payload delivery and post-exploitation actions on target…

command-and-controlexploitationpayload-generation+3
27 years ago
RefleXXion preview
Archived

RefleXXion

GitHubhlldz/reflexxion

RefleXXion is a utility designed to aid in bypassing user-mode hooks utilised by AV/EPP/EDR etc. In order to bypass the user-mode hooks, it first…

defensive-toolsids-ips-evasionpersistence-mechanisms+3
4984 years ago
invoker preview
Archived

invoker

GitHubivan-sincek/invoker

Penetration testing utility and antivirus assessment tool.

binary-analysiseducationexploitation+6
3123 years ago
Previous12Next