Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2417 results
CVE-2026-66804-CrossDevice-Service-EoP preview

CVE-2026-66804-CrossDevice-Service-EoP

GitHubzerodayvpn/cve-2026-66804-crossdevice-service-eop

Proof-of-concept exploit for CVE-2026-66804, a privilege escalation vulnerability in the CrossDevice Service component.

exploitationpenetration-testingprivilege-escalation+2
1
1 month ago
CVE-2026-60137-and-CVE-2026-63030 preview

CVE-2026-60137-and-CVE-2026-63030

GitHubivanesk315/cve-2026-60137-and-cve-2026-63030

Docker-based WordPress lab reproducing CVE-2026-60137 and CVE-2026-63030 pre-auth RCE, with a Python PoC exploit for SQLi, privilege escalation, and…

educationexploitationlabs-practice+6
19h 54m ago
RootMyVivo-Exploit preview

RootMyVivo-Exploit

GitHubzenyxx-xd/rootmyvivo-exploit

GhostLock (CVE-2026-43499) exploit fork for RootMyVivo Neo — iQOO Neo 11 (PD2520, SM8750, 6.6.89). For authorized research on own devices only.

android-securitybinary-exploitationexploitation+5
19h 40m ago
CVE-2022-24637 preview

CVE-2022-24637

GitHubprinceaikinsbaidoo/cve-2022-24637

Defensive notes on CVE-2022-24637 in Open Web Analytics before 1.7.4, covering unauthenticated information disclosure, privilege escalation impact,…

defensive-toolseducationinformation-gathering+3
16h 39m ago
CVE-2022-0847 preview

CVE-2022-0847

GitHubvudangducminh/cve-2022-0847

Proof-of-concept exploit for CVE-2022-0847 (Dirty Pipe), a Linux kernel race condition enabling unprivileged writes to read-only files and privilege…

binary-exploitationeducationexploitation+3
19h 44m ago
ShieldCrash preview

ShieldCrash

GitHubmsnightmare/shieldcrash

Proof-of-concept exploit for CVE-2026-69414, a Windows Defender 0day enabling arbitrary file read as SYSTEM on all supported Windows versions.

exploitationexploit-frameworksprivilege-escalation+1
1622 days ago
LSPromise preview

LSPromise

GitHublsposed/lspromise

Android complete exploit chain that enables privilege escalation from a local untrusted app to root/kernel, combined of CVE-2026-49881 and…

android-securityexploitationexploit-frameworks+4
512 days ago
GhostLock-NVIDIA-Shield-9.2.4 preview

GhostLock-NVIDIA-Shield-9.2.4

GitHubcyberbalsa/ghostlock-nvidia-shield-9.2.4

Validated GhostLock CVE-2026-43499 port for NVIDIA Shield TV Pro mdarcy 9.2.4

android-securitybinary-exploitationexploitation+5
2 days ago
CVE-2026-30225-OliveTin-RCE preview

CVE-2026-30225-OliveTin-RCE

GitHubhackerking24/cve-2026-30225-olivetin-rce

Proof-of-concept exploit for OliveTin unauthenticated RCE (CVE-2026-30225) via insecure guest defaults and unvalidated argument types, enabling root…

ctfeducationexploitation+5
2 days ago
CVE-2025-8110 preview

CVE-2025-8110

GitHubr3vpwnx/cve-2025-8110

Proof-of-concept exploit for CVE-2025-8110 in Gogs <=0.13.x, enabling authenticated symlink bypass to arbitrary file write as the Gogs process user,…

exploitationpenetration-testingprivilege-escalation+2
2 days ago
TLPE preview

TLPE

GitHubsupersonic/tlpe

CVE-2026-49881, a logic issue in the InCallController class in Android 17's Telecom service that allows an unprivileged app to gain arbitrary code…

android-securitybinary-exploitationexploitation+4
111 day ago
Copy-Fail-CVE-2026-31431-Kubernetes-PoC preview

Copy-Fail-CVE-2026-31431-Kubernetes-PoC

GitHubstarscow/copy-fail-cve-2026-31431-kubernetes-poc

Proof-of-concept demonstrating container escape on Kubernetes via CVE-2026-31431 kernel page-cache corruption, achieving node-level code execution…

container-escapeeducationexploitation+2
4 months ago
ctf-tracker preview

ctf-tracker

GitHubxxdndxx/ctf-tracker

Offline-first dashboard for tracking CTF machines and labs, with attack lifecycle management, dynamic reverse shell builder, and embedded writeup…

ctfeducationexploitation+6
24 days ago
CVE-2026-69451-PoC preview

CVE-2026-69451-PoC

GitHubfj016/cve-2026-69451-poc

Proof-of-concept exploit for CVE-2026-69451, a privilege escalation vulnerability in Fastprox. Executes arbitrary commands with elevated privileges…

exploitationpenetration-testingprivilege-escalation+2
2 days ago
0xM0nCrush preview

0xM0nCrush

GitHubdeathshotxd/0xm0ncrush

Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.

defensive-toolsexploitationpayload-development+4
498 days ago
GhostLock preview

GhostLock

GitHubr0rt1z2/ghostlock

Kernel root exploit (CVE-2026-43499) for some 5.X devices (mostly Amazon)

android-securityexploitationexploit-frameworks+4
182 days ago
CVE-2026-8069 preview

CVE-2026-8069

GitHubs1eezer/cve-2026-8069

Technical write-up and proof-of-concept for CVE-2026-8069, a local privilege escalation in Acer NitroSense and PredatorSense services, exploiting a…

binary-analysisexploitationexploit-frameworks+3
2 days ago
Stuxnet preview

Stuxnet

GitHubsadpainy/stuxnet

Educational reconstruction of the Stuxnet worm for malware analysis and defensive research. Includes modules for privilege escalation, rootkit…

educationexploitationlateral-movement+4
14 days ago
Previous12…100Next