Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
324 results
SharpHide preview

SharpHide

GitHuboutflanknl/sharphide

Tool to create hidden registry keys.

persistence-mechanismspost-exploitationprivilege-escalation+1
489
6 years ago
ADCSPwn preview

ADCSPwn

GitHubbats3c/adcspwn

A tool to escalate privileges in an active directory network by coercing authenticate from machine accounts and relaying to the certificate service.

authenticationexploitationpenetration-testing+2
8785 years ago
ShadowSpray preview

ShadowSpray

GitHubdec0ne/shadowspray

A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other objects in the…

authenticationexploitationpenetration-testing+3
4913 years ago
PPLcontrol preview

PPLcontrol

GitHubitm4n/pplcontrol

Windows tool to list, get, set, protect, and unprotect process protection levels (PP/L) for debugging, inspection, and privilege escalation.

defensive-toolsexploitationprivilege-escalation+1
4043 years ago
autobloody preview

autobloody

GitHubcravaterouge/autobloody

Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound

exploitationpenetration-testingprivilege-escalation
71110 months ago
VMInjector preview

VMInjector

GitHubhzphreak/vminjector

DLL Injection tool to unlock guest VMs

authentication-authorizationbinary-exploitationexploitation+4
23813 years ago
MalSeclogon preview

MalSeclogon

GitHubantoniococo/malseclogon

A little tool to play with the Seclogon service

exploitationlateral-movementmemory-forensics+3
3274 years ago
Change-Lockscreen preview

Change-Lockscreen

GitHubnccgroup/change-lockscreen

Offensive tool to trigger network authentications as SYSTEM

exploitationpost-exploitationprivilege-escalation+1
1454 years ago
ExploitDotNetDCOM preview

ExploitDotNetDCOM

GitHubtyranid/exploitdotnetdcom

A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.

exploitationprivilege-escalationvulnerability-analysis
9211 years ago
swarmer preview

swarmer

GitHubpraetorian-inc/swarmer

A tool to convert windows registry export files into windows hive files that can be used to replace NTUSER.MAN

persistence-mechanismspost-exploitationprivilege-escalation+1
1786 months ago
getSPNless preview

getSPNless

GitHubjarnovandenbrink/getspnless

Python tool to automatically perform SPN-less RBCD attacks.

authenticationexploitationlateral-movement+3
1327 months ago
bissap preview

bissap

GitHubsynacktiv/bissap

A new open-source tool to quickly audit SAP permissions.

authentication-authorizationconfiguration-auditingdatabase-security+4
84 months ago
DLLirant preview
Archived

DLLirant

GitHubsh0ckfr/dllirant

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

binary-analysisexploitationprivilege-escalation+2
3233 years ago
metta preview

metta

GitHububer-common/metta

An information security preparedness tool to do adversarial simulation.

adversarial-attackdefensive-toolseducation+8
1.1k8 years ago
Backstab preview

Backstab

GitHubyaxser/backstab

A tool to kill antimalware protected processes

privilege-escalationred-teaming
1.5k5 years ago
ADCollector preview

ADCollector

GitHubdev-2null/adcollector

A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.

authenticationconfiguration-auditinginformation-gathering+4
63810 months ago
Ghost-In-The-Logs preview

Ghost-In-The-Logs

GitHubbats3c/ghost-in-the-logs

Kernel-level tool to disable Sysmon and Windows Event Logging via driver-based hook injection, enabling stealthy post-exploitation operations on…

defensive-toolsids-ips-evasionprivilege-escalation
6266 years ago
ibombshell preview

ibombshell

GitHubtelefonica/ibombshell

Tool to deploy a post-exploitation prompt at any time

command-and-controlids-ips-evasionpayload-generation+5
3215 years ago
Previous123…18Next