Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
26 results
windows-coerced-authentication-methods preview

windows-coerced-authentication-methods

GitHubp0dalirius/windows-coerced-authentication-methods

A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) with various…

authenticationcurated-resourcesexploitation+3
603
1 year ago
DiagTrackEoP preview

DiagTrackEoP

GitHubwh04m1001/diagtrackeop

Windows privilege-escalation exploit abusing SeImpersonate via DiagTrack RPC, using Secondary Logon to get an INTERACTIVE token and gain SYSTEM.

adversarial-attackexploitationpenetration-testing+3
884 years ago
RPC-Backdoor preview

RPC-Backdoor

GitHubeladshamir/rpc-backdoor

A basic emulation of an "RPC Backdoor"

command-and-controllateral-movementpost-exploitation+3
2414 years ago
Elevator preview

Elevator

GitHubkudaes/elevator

UAC bypass by abusing RPC and debug objects.

exploitationpenetration-testingpost-exploitation+2
6312 years ago
DCOMPotato preview

DCOMPotato

GitHubzcgonvh/dcompotato

Some Service DCOM Object and SeImpersonatePrivilege abuse.

exploitationpenetration-testingpost-exploitation+2
3713 years ago
ShimMe preview

ShimMe

GitHubdeepinstinct/shimme

PoC for Windows privilege escalation and code injection using OfficeClickToRun RPC and undocumented shim manipulation to inject DLLs into SYSTEM…

adversarial-attackexploitationpost-exploitation+2
1471 year ago
SysmonEoP preview

SysmonEoP

GitHubwh04m1001/sysmoneop

PoC for CVE-2022-41120/CVE-2022-44704: arbitrary file delete/write in Sysmon via ClipboardChange RPC leading to local privilege escalation on Windows.

exploitationprivilege-escalationvulnerability-analysis
1813 years ago
DoubleStar preview

DoubleStar

GitHubforrest-orr/doublestar

A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of my own…

binary-exploitationexploitationpayload-development+4
1474 years ago
printerbugnew preview

printerbugnew

GitHubdecoder-it/printerbugnew

The DCERPC only printerbug.py version

authenticationcommand-and-controlexploitation+5
23510 months ago
RAITrigger preview

RAITrigger

GitHubrteccybersec/raitrigger

Local SYSTEM auth trigger for relaying

authenticationexploitationlateral-movement+2
1741 year ago
CVE-2025-33073 preview

CVE-2025-33073

GitHubobscura-cert/cve-2025-33073

Proof-of-concept tool that chains DNS injection, NTLM relay, and RPC-based coercion to test authentication relay paths in Windows Active Directory…

authenticationcommand-and-controldns-analysis+7
11 year ago
Titanis preview

Titanis

GitHubtrustedsec/titanis

Windows protocol library, including SMB and RPC implementations, among others.

authenticationcryptographyexploitation+7
8321 day ago
CVE-2022-22814_PoC preview

CVE-2022-22814_PoC

GitHubdshankle/cve-2022-22814_poc

Proof-of-concept exploit for CVE-2022-22814 demonstrating local privilege escalation on Windows via vulnerable ASUS SystemDiagnosis ALPC RPC…

binary-exploitationexploitationpenetration-testing+2
4 years ago
CVE-2021-1675 preview

CVE-2021-1675

GitHubdll00p/cve-2021-1675

Proof-of-concept exploit for CVE-2021-1675 (PrintNightmare) targeting Windows Print Spooler. Uses msfvenom-generated malicious DLL delivered via SMB…

exploitationlateral-movementpayload-generation+4
11 year ago
Penetration-Testing-Walkthrough-Hacksudo-Thor preview

Penetration-Testing-Walkthrough-Hacksudo-Thor

GitHubheventafese/penetration-testing-walkthrough-hacksudo-thor

Black-box penetration test against HackSudo Thor : CVE-2014-6271 Shellshock RCE through Apache mod_cgi, chained with sudo misconfiguration and bash…

ctfeducationexploitation+8
4 months ago
WPTaskScheduler_CVE-2024-49039 preview

WPTaskScheduler_CVE-2024-49039

GitHubje5442804/wptaskscheduler_cve-2024-49039

WPTaskScheduler RPC Persistence & CVE-2024-49039 via Task Scheduler

exploitationpayload-developmentpersistence-mechanisms+4
1491 year ago
CrackKeyIso preview

CrackKeyIso

GitHubbyt3n33dl3/crackkeyiso

it's a CVE-2023-28229 (Patched), but feel free to use it for check any outdated software or reseach

educationexploitationprivilege-escalation+1
52 years ago
CVE-2023-28229 preview

CVE-2023-28229

GitHuby3a/cve-2023-28229

Proof-of-concept exploit for Windows CNG KeyIso RPC elevation of privilege and sandbox escape, demonstrating exploitation of CVE-2023-28229.

binary-exploitationexploitationexploit-frameworks+2
1362 years ago
Previous12Next