Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
277 results
CVE-2024-26229-BOF preview

CVE-2024-26229-BOF

GitHubapkc/cve-2024-26229-bof

BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel

binary-exploitationexploitationexploit-frameworks+5
29
2 years ago
GTFOBLookup preview

GTFOBLookup

GitHubnccgroup/gtfoblookup

Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

information-gatheringlateral-movementpenetration-testing+3
2903 years ago
cve_2024_0044 preview

cve_2024_0044

GitHubk4ran909/cve_2024_0044

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

android-securitydata-exfiltrationexploitation+5
1 year ago
OverlayFS-PrivEsc-CVE-2022-0944 preview

OverlayFS-PrivEsc-CVE-2022-0944

GitHubneoartemis37/overlayfs-privesc-cve-2022-0944

Educational exploit for CVE-2022-0944 OverlayFS privilege escalation with reverse shell payload delivery and kernel version detection scripts.

educationexploitationprivilege-escalation+1
3 months ago
php-bypass-disable-functions preview

php-bypass-disable-functions

GitHubirsl/php-bypass-disable-functions

Demo project how to bypass the disable_functions security control of PHP on Linux

binary-exploitationexploitationpost-exploitation+3
277 years ago
CVE-2022-0847-DirtyPipe-Exploits preview

CVE-2022-0847-DirtyPipe-Exploits

GitHuborsuprasad/cve-2022-0847-dirtypipe-exploits

C exploit collection for Linux Dirty Pipe (CVE-2022-0847) local privilege escalation, including read-only file overwrite and SUID binary hijacking,…

binary-exploitationexploitationpenetration-testing+3
3 years ago
OffensiveNim preview

OffensiveNim

GitHubbyt3bl33d3r/offensivenim

My experiments in weaponizing Nim (https://nim-lang.org/)

binary-exploitationcode-analysiscommand-and-control+8
3.1k2 years ago
CVE-2026-15409-15410-Framework preview

CVE-2026-15409-15410-Framework

GitHubtc4dy/cve-2026-15409-15410-framework

Multi-exploit framework for SonicWall SMA1000 chaining SSRF (CVE-2026-15409) to Erlang RCE and root privilege escalation (CVE-2026-15410). Features…

command-and-controleducationexploitation+7
51 month ago
Langflow-cve-2026-33017-exploit preview

Langflow-cve-2026-33017-exploit

GitHubcerberusmrxi/langflow-cve-2026-33017-exploit

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated…

command-and-controldata-exfiltrationexploitation+8
11 month ago
CVE-2022-29072 preview

CVE-2022-29072

GitHubkagancapar/cve-2022-29072

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents…

binary-exploitationcommand-and-controlexploitation+5
6734 years ago
CVE-2020-0728 preview

CVE-2020-0728

GitHubirsl/cve-2020-0728

Proof-of-concept exploit for CVE-2020-0728 demonstrating local privilege escalation via Windows TrustedInstaller COM service abuse to bypass file…

binary-exploitationexploitationpost-exploitation+2
466 years ago
CVE-2021-30357_CheckPoint_SNX_VPN_PoC preview

CVE-2021-30357_CheckPoint_SNX_VPN_PoC

GitHubjoaovarelas/cve-2021-30357_checkpoint_snx_vpn_poc

Proof-of-Concept for privileged file read through CheckPoint SNX VPN Linux Client

exploitationpenetration-testingprivilege-escalation+2
63 years ago
CVE-2025-8110-gogs-poc preview

CVE-2025-8110-gogs-poc

GitHubshirouuu/cve-2025-8110-gogs-poc

PoC for CVE-2025-8110 - Gogs arbitrary file write via symlink

educationexploitationpenetration-testing+3
51 month ago
MSAPer preview

MSAPer

GitHubim-hanzou/msaper

Automatic Mass Tool for check and exploiting vulnerability in CVE-2023-3076 - MStore API < 3.9.9 - Unauthenticated Privilege Escalation (Mass Add…

exploitationprivilege-escalationvulnerability-scanners+1
162 years ago
EQGRP preview

EQGRP

GitHubx0rz/eqgrp

Decrypted content of eqgrp-auction-file.tar.xz

command-and-controldata-exfiltrationexploitation+8
4.2k9 years ago
BetterAndroRAT preview

BetterAndroRAT

GitHubmwsrc/betterandrorat

Android Remote Access Trojan

android-securitycommand-and-controldata-exfiltration+8
5429 years ago
CVE-2025-47181 preview

CVE-2025-47181

GitHubencrypter15/cve-2025-47181

Educational Python model demonstrating CVE-2025-47181 link following privilege escalation in Microsoft Edge. Simulates symlink abuse, trusted process…

binary-exploitationeducationexploitation+4
51 year ago
CVE-2026-65400 preview

CVE-2026-65400

GitHubhorkimhab/cve-2026-65400

Proof-of-concept exploit for CVE-2026-65400 enabling authenticated file read/write, reverse shells, and persistence on macOS via Apple ScreenSharing.

authenticationeducationexploitation+4
312 days ago
Previous12…16Next