Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
387 results
CVE-2026-28992-IOHIDFamily-FastPathUserClient-Race-Conditions preview

CVE-2026-28992-IOHIDFamily-FastPathUserClient-Race-Conditions

GitHub0xjohnnydev/cve-2026-28992-iohidfamily-fastpathuserclient-race-conditions

UAF and AOP coprocessor panic in IOHIDEventServiceFastPathUserClient. No entitlements, reachable from app sandbox.

binary-exploitationexploitationios-security+5
14
1 month ago
appinfo-standalone preview

appinfo-standalone

GitHubredcivet/appinfo-standalone

method 59 from UACME in a standalone .C

exploitationpenetration-testingpost-exploitation+2
204 months ago
CVE-2020-14321 preview

CVE-2020-14321

GitHublanzt/cve-2020-14321

Python script to exploit CVE-2020-14321 - Moodle 3.9 - Course enrollments allowed privilege escalation from teacher role into manager role to RCE.

exploitationpayload-generationpenetration-testing+3
214 years ago
kprotect preview

kprotect

GitHubkhoinp1012/kprotect

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

authentication-authorizationcloud-securitydefensive-tools+4
365 months ago
CVE-2021-21389 preview

CVE-2021-21389

GitHubhoangkien1020/cve-2021-21389

BuddyPress is an open source WordPress plugin to build a community site. In releases of BuddyPress from 5.0.0 before 7.2.1 it's possible for a…

exploitationpenetration-testingprivilege-escalation+3
195 years ago
CVE-2022-26923-Powershell-POC preview

CVE-2022-26923-Powershell-POC

GitHublsecqt/cve-2022-26923-powershell-poc

A powershell poc to load and automatically run Certify and Rubeus from memory.

educationexploitationlabs-practice+3
174 years ago
CVE-2026-0047-poc preview

CVE-2026-0047-poc

GitHubmobilehackinglab/cve-2026-0047-poc

CVE-2026-0047: Missing permission check in ActivityManagerService.dumpBitmapsProto() — steal UI bitmaps from every running app with zero permissions…

android-securitybinary-exploitationeducation+6
153 months ago
cmdchamp preview

cmdchamp

GitHubmellen9999/cmdchamp

bash CLI trainer — 30 levels from ls to privilege escalation

ctfeducationforensics+8
1219h 50m ago
CVE-2025-7771-Vulnerability-Exploration preview

CVE-2025-7771-Vulnerability-Exploration

GitHubd4rkks/cve-2025-7771-vulnerability-exploration

Escalating privilege in the system from unsigned driver using throttlestop vulnerability

binary-exploitationeducationexploitation+4
134 months ago
wp2exp-2026 preview

wp2exp-2026

GitHubrechandra/wp2exp-2026

WordPress All-in-One Exploit Framework — detector, scanner, enumerator, exploit, escalation. 10 CVEs from the 2026-08 wave incl. CVE-2026-63030…

exploit-frameworkspayload-developmentpenetration-testing+5
516 days ago
docker_cve-2015-2925 preview

docker_cve-2015-2925

GitHubkagami/docker_cve-2015-2925

Docker + CVE-2015-2925 = escaping from --volume

container-escapeexploitationpenetration-testing+3
1111 years ago
Metasploit-CVE-2026-54121-Certighost preview

Metasploit-CVE-2026-54121-Certighost

GitHubnafiez/metasploit-cve-2026-54121-certighost

A Metasploit auxiliary module that escalates from any low-privileged domain user to full domain compromise by abusing the AD CS enrollment "chase"…

exploitationexploit-frameworkspenetration-testing+3
421 days ago
Xiaomi-C200-Firmware-Analysis preview

Xiaomi-C200-Firmware-Analysis

GitHubh3xdum/xiaomi-c200-firmware-analysis

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

data-recoveryembedded-systems-securityexploitation+6
118 months ago
CVE-2026-14459-14460-pardus-software preview

CVE-2026-14459-14460-pardus-software

GitHubdasokkk/cve-2026-14459-14460-pardus-software

Pardus Software Local Privilege Escalation PoC - affected from <= 1.0.4

binary-exploitationeducationexploitation+3
1 month ago
CVE-2022-0441 preview

CVE-2022-0441

GitHubdappanism/cve-2022-0441

Mirrored from tegal1337/CVE-2022-0441

exploitationpenetration-testingprivilege-escalation+2
1 month ago
CVE-2015-1328 preview

CVE-2015-1328

GitHubfernandocassiodev/cve-2015-1328

Step-by-step walkthrough for exploiting CVE-2015-1328 (OverlayFS) to escalate privileges from a low-privileged user to root on Ubuntu 14.04. Includes…

binary-exploitationctfeducation+3
28 days ago
Triple_Fetch-Kernel-Creds preview

Triple_Fetch-Kernel-Creds

GitHubjosephshenton/triple_fetch-kernel-creds

Attempt to steal kernelcredentials from launchd + task_t pointer (Based on: CVE-2017-7047)

exploitationexploit-frameworksios-security+3
79 years ago
CVE-2024-21338-x64-build- preview

CVE-2024-21338-x64-build-

GitHubzombie-kaiser/cve-2024-21338-x64-build-

Local Privilege Escalation from Admin to Kernel vulnerability on Windows 10 and Windows 11 operating systems with HVCI enabled.

binary-exploitationexploitationprivilege-escalation+1
72 years ago
Previous1…456…22Next