Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
57 results
GIUDA preview

GIUDA

GitHubfoxlox/giuda

Ask a TGS on behalf of another user without password

authenticationexploitationimpersonation-tools+5
4801 year ago
CVE-2020-16938 preview

CVE-2020-16938

GitHubioncodes/cve-2020-16938

Bypassing NTFS permissions to read any files as unprivileged user.

data-exfiltrationexploitationforensics+2
1935 years ago
wasmforge preview

wasmforge

GitHubpraetorian-inc/wasmforge

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

binary-analysiscommand-and-controlexploit-frameworks+9
1313 months ago
voidmap preview

voidmap

GitHubsamueltulach/voidmap

Using CVE-2021-40449 to manual map kernel mode driver

binary-exploitationexploitationexploit-frameworks+2
1054 years ago
SharpAppLocker preview

SharpAppLocker

GitHubflangvik/sharpapplocker

C# port of the Get-AppLockerPolicy PS cmdlet

defensive-toolspenetration-testingprivilege-escalation+2
976 years ago
LSTAR-EN preview

LSTAR-EN

GitHubmoscowchill/lstar-en

LSTAR - CobaltStrike Translated to EN

command-and-controlexploitationids-ips-evasion+9
233 years ago
CVE-2026-32710 preview

CVE-2026-32710

GitHubdinosn/cve-2026-32710

Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

binary-exploitationdatabase-securityexploitation+4
154 months ago
refreshing-mcp-tool preview

refreshing-mcp-tool

GitHubrbowes-r7/refreshing-mcp-tool

An implementation of F5's `mcp` protocol, including MitM tooling to sniff traffic while vuln hunting

database-securityexploitationinformation-gathering+5
73 years ago
DirtyCow preview

DirtyCow

GitHublinuxkernelcontent/dirtycow

Below code takes advantage of a known vulnerability [Dirty COW (CVE-2016-5195)] 🔥

binary-exploitationexploitationpenetration-testing+3
33 years ago
CVE-2020-5752-Druva-inSync-Windows-Client-6.6.3---Local-Privilege-Escalation-PowerShell- preview

CVE-2020-5752-Druva-inSync-Windows-Client-6.6.3---Local-Privilege-Escalation-PowerShell-

GitHubyevh/cve-2020-5752-druva-insync-windows-client-6.6.3---local-privilege-escalation-powershell-

Druva inSync Windows Client 6.6.3 - Local Privilege Escalation (PowerShell) RCE

exploitationpayload-generationpenetration-testing+2
43 years ago
CVE-2021-3899_PoC preview

CVE-2021-3899_PoC

GitHubliumuqing/cve-2021-3899_poc

race condition in apport lead to Local Privilege Escalation on Ubuntu

exploitationpenetration-testingprivilege-escalation+1
34 years ago
Dirty-Pipe-Oneshot preview

Dirty-Pipe-Oneshot

GitHubb4dboy17/dirty-pipe-oneshot

Compled version of CVE-2022-0847 aka Dirty Pipe. Just one shot to root them all :D

binary-exploitationexploitationpenetration-testing+2
13 years ago
cve-2025-23266-migration-bypass preview

cve-2025-23266-migration-bypass

GitHubmindasy/cve-2025-23266-migration-bypass

cve-2025-23266-migration-bypass

container-escapeexploitationpost-exploitation+2
11 year ago
looneyCVE preview

looneyCVE

GitHubteragl/looneycve

Looney Tunables CVE-2023-4911

binary-exploitationexploitationpenetration-testing+2
12 years ago
CVE_Project preview

CVE_Project

GitHubmhe18/cve_project

CVE-2016-1240 exploit and patch

binary-exploitationexploitationprivilege-escalation+2
7 years ago
HTB-Reactor-Linux-Machine-Walkthrough preview

HTB-Reactor-Linux-Machine-Walkthrough

GitHubsonnycroco/htb-reactor-linux-machine-walkthrough

Full walkthrough of HTB's Reactor machine — exploit CVE-2025-55182 to gain a shell, then get root via an exposed Node.js debugger. Step-by-step with…

ctfeducationexploitation+8
13 months ago
iovy_root_research preview

iovy_root_research

GitHubmobilelinux/iovy_root_research

A root tool based on the [CVE-2015-1805 vulnerability](https://access.redhat.com/security/cve/cve-2015-1805) It supports 32 and 64bit, get sys call…

android-securitybinary-exploitationexploitation+2
7 years ago
CVE-2021-4034 preview

CVE-2021-4034

GitHubal1ex/cve-2021-4034

Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)

binary-exploitationeducationexploitation+2
44 years ago
Previous1234Next