Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
48 results
Principal-HackTheBox preview

Principal-HackTheBox

GitHubledksv/principal-hackthebox

Detailed walkthrough of exploiting CVE-2026-29000 in pac4j-jwt to bypass authentication, extract credentials from API settings, and escalate…

authenticationcryptographyctf+5
3 months ago
BloodBash preview

BloodBash

GitHubsquidsec/bloodbash

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

cloud-securityconfiguration-auditingidentity-access-management+6
4748 days ago
ACEshark preview

ACEshark

GitHubt3l3machus/aceshark

ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminating the need…

configuration-auditinginformation-gatheringpenetration-testing+4
1491 year ago
pmp-exploit preview

pmp-exploit

GitHubs3bap3/pmp-exploit

Password Manager Pro Exploit

data-exfiltrationexploitationpassword-attacks+3
210 years ago
mindmanager-poc preview

mindmanager-poc

GitHubpawlokk/mindmanager-poc

public disclosure

exploitationprivilege-escalationvulnerability-analysis
22 years ago
msiscan preview

msiscan

GitHubsec-consult/msiscan

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

configuration-auditingpenetration-testingprivilege-escalation+2
1291 year ago
WhoWasI preview

WhoWasI

GitHubnccgroup/whowasi

Impersonate Logged In Accounts & Execute Commands

impersonation-toolslateral-movementpenetration-testing+3
3511 years ago
PwnKit-Hunter preview

PwnKit-Hunter

GitHubcyberark/pwnkit-hunter

PwnKit-Hunter is here to help you check if your systems are vulnerable to CVE-2021-4043, a.k.a. PwnKit

configuration-auditingpenetration-testingprivilege-escalation+1
284 years ago
qu1ckr00t preview

qu1ckr00t

GitHubgrant-h/qu1ckr00t

A PoC application demonstrating the power of an Android kernel arbitrary R/W.

android-securitybinary-exploitationexploitation+2
4456 years ago
CVE-2026-6356 preview

CVE-2026-6356

GitHubpenguinsecq/cve-2026-6356

Exploit PoC of CVE-2026-6356

educationexploitationpenetration-testing+3
4 months ago
Elite preview

Elite

GitHubcobbr/elite

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

command-and-controldynamic-code-analysisencryption-decryption-tools+6
1217 years ago
macOS-enterprise-privileges preview

macOS-enterprise-privileges

GitHubsap/macos-enterprise-privileges

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

authentication-authorizationconfiguration-auditingdefensive-tools+2
2.0k16 days ago
OffensiveDLR preview

OffensiveDLR

GitHubbyt3bl33d3r/offensivedlr

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

code-analysiscommand-and-controldynamic-code-analysis+9
5255 years ago
msi-central_privesc preview

msi-central_privesc

GitHubnam3lum/msi-central_privesc

CVE-2022-38532 - Local Privilege Escalation vulnerability in MSI Center Application

binary-analysisexploitationpenetration-testing+3
71 year ago
React2Shell-CVE-Lab preview

React2Shell-CVE-Lab

GitHubxxxtectationxxx/react2shell-cve-lab

A self-hosted vulnerable Next.js environment running on Docker for simulating CVE-2025-55182. Built for educational security research and CTF…

container-securityctfeducation+6
18 months ago
SeriousSam preview

SeriousSam

GitHubshaktavist/serioussam

Windows Elevation of Privilege Vulnerability CVE-2021-36934

configuration-auditingexploitationincident-response+2
5 years ago
PoCForCVE-2015-1528 preview

PoCForCVE-2015-1528

GitHubsecmob/pocforcve-2015-1528

I'll submit the poc after blackhat

android-securitybinary-exploitationexploitation+4
11711 years ago
cve-2026-11837-ansible-posix-authorized-key preview

cve-2026-11837-ansible-posix-authorized-key

GitHubm8seven/cve-2026-11837-ansible-posix-authorized-key

CVE-2026-11837: local privilege escalation in the ansible.posix authorized_key module via symlink-following chown. Technical writeup; sibling of…

code-analysisconfiguration-auditingdevsecops+3
12 months ago
Previous123Next