Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
387 results
CVE-2017-0213 preview

CVE-2017-0213

GitHubanonymous-family/cve-2017-0213

Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows…

binary-exploitationexploitationprivilege-escalation+1
4 years ago
RobbinHood preview

RobbinHood

GitHubfriarfukd/robbinhood

# NDPROXY Local SYSTEM privilege escalation # http://www.offensive-security.com # Tested on Windows XP SP3 #…

binary-exploitationexploitationprivilege-escalation+1
12 years ago
CVE-2010-5230 preview

CVE-2010-5230

GitHubotofoto/cve-2010-5230

Multiple untrusted search path vulnerabilities in MicroStation 7.1 allow local users to gain privileges via a Trojan horse (1) mptools.dll, (2)…

binary-exploitationexploitationpayload-development+2
5 years ago
CVE-2022-21894 preview

CVE-2022-21894

GitHubwack0/cve-2022-21894

baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

binary-exploitationdata-exfiltrationencryption-decryption-tools+5
3533 years ago
RingReaper preview

RingReaper

GitHubmatheuzsecurity/ringreaper

Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.

adversarial-attackcommand-and-controldata-exfiltration+5
38411 months ago
Pentest-Tools-Collection preview

Pentest-Tools-Collection

GitHubluemmelsec/pentest-tools-collection
command-and-controlcurated-resourcesexploitation+7
90629 days ago
redsnarf preview

redsnarf

GitHubnccgroup/redsnarf

RedSnarf is a pen-testing / red-teaming tool for Windows environments

command-and-controlexploitationhash-analysis+9
1.2k9 years ago
GodPotato preview

GodPotato

GitHubbeichendream/godpotato

DCOM-based privilege escalation tool for Windows Server 2012-2022 and Windows 8-11, elevating users with ImpersonatePrivilege to NT AUTHORITY\SYSTEM…

exploitationpenetration-testingpost-exploitation+1
2.3k2 years ago
PrivExchange preview

PrivExchange

GitHubdirkjanm/privexchange

Exchange your privileges for Domain Admin privs by abusing Exchange

authenticationexploitationpenetration-testing+1
1.1k6 years ago
Ninja preview

Ninja

GitHubahmedkhlief/ninja

Open source C2 server created for stealth red team operations

command-and-controlexploitationinformation-gathering+6
8403 years ago
RottenPotato preview

RottenPotato

GitHubfoxglovesec/rottenpotato

Local privilege escalation exploit for Windows service accounts, leveraging token impersonation to gain SYSTEM-level access via Meterpreter and…

exploitationpenetration-testingprivilege-escalation
6948 years ago
security-labs-pocs preview

security-labs-pocs

GitHubdatadog/security-labs-pocs

Proof of concept code for Datadog Security Labs referenced exploits.

container-escapecurated-resourcesexploitation+4
4501 day ago
WHP preview

WHP

GitHub51x/whp

Micro$oft Windows Hacking Pack

exploitationlateral-movementpassword-cracking+5
5268 years ago
Pixel_GPU_Exploit preview

Pixel_GPU_Exploit

GitHub0x36/pixel_gpu_exploit

Android 14 kernel exploit for Pixel7/8 Pro

android-securitybinary-exploitationeducation+4
5622 years ago
DirtyPipe-Android preview

DirtyPipe-Android

GitHubpolygraphene/dirtypipe-android

Dirty Pipe root exploit for Android (Pixel 6)

android-securitybinary-exploitationexploitation+5
8524 years ago
ldap_shell preview

ldap_shell

GitHubpshlyundin/ldap_shell

Interactive shell for Active Directory enumeration and ACL abuse via LDAP/LDAPS. Supports DCSync, RBCD, Shadow Credentials, password changes, and…

authenticationinformation-gatheringpenetration-testing+1
4065 days ago
PowerShell-Red-Team preview

PowerShell-Red-Team

GitHubtobor88/powershell-red-team

Collection of PowerShell functions a Red Teamer may use in an engagement

information-gatheringlateral-movementpassword-attacks+3
5502 years ago
EvilAbigail preview

EvilAbigail

GitHubstrozfriedberg/evilabigail

Automated Linux evil maid attack

exploitationpassword-attackspayload-development+3
43510 years ago
Previous1…789…22Next