Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
830 results
CVE-2023-7231 preview

CVE-2023-7231

GitHubbbo513/cve-2023-7231

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

cloud-securitycontainer-securitydata-exfiltration+6
1
1 year ago
CVE-2025-4796 preview

CVE-2025-4796

GitHubanothersec/cve-2025-4796

eventin <= 4.0.34 - privilege escalation via user email change / account takeover for authenticated contributor+

exploitationpassword-attackspenetration-testing+3
19 months ago
copyfail preview

copyfail

GitHubkwilck/copyfail

Copy Fail (CVE-2026-31431) is a logic flaw in the Linux kernel's algif_aead module — part of the AF_ALG userspace crypto API. It was disclosed on…

configuration-auditingdefensive-toolsprivilege-escalation+2
13 months ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubadityabhatt3010/cve-2026-31431

Local privilege escalation exploit for CVE-2026-31431, abusing AF_ALG AEAD socket handling to achieve root shell access on vulnerable Linux kernels.

binary-exploitationexploitationexploit-frameworks+1
33 months ago
CVE-2026-31431-Advanced-Exploit preview

CVE-2026-31431-Advanced-Exploit

GitHubsndav/cve-2026-31431-advanced-exploit

Exploit for CVE-2026-31431, a Linux kernel AF_ALG AEAD page-cache write vulnerability enabling unprivileged arbitrary 4-byte writes to readable files…

binary-exploitationexploitationexploit-frameworks+3
1123 months ago
PayloadsAllTheThings preview

PayloadsAllTheThings

GitHubswisskyrepo/payloadsallthethings

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

ctfcurated-resourceseducation+8
80.4k1 day ago
impacket preview

impacket

GitHubfortra/impacket

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

authenticationcommand-and-controldatabase-security+17
16.0k3 days ago
pacu preview

pacu

GitHubrhinosecuritylabs/pacu

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

cloud-infrastructure-securitycloud-securitydata-exfiltration+7
5.3k5 months ago
taowu-cobalt_strike preview

taowu-cobalt_strike

GitHubpandasec888/taowu-cobalt_strike

Red team automation framework built on Cobalt Strike, integrating exploit modules, post-exploitation tools, and lateral movement capabilities for…

command-and-controlexploit-frameworkslateral-movement+7
1.8k9 months ago
OffensiveVBA preview

OffensiveVBA

GitHubs3cur3th1ssh1t/offensivevba

This repo covers some code execution and AV Evasion methods for Macros in Office documents

curated-resourceseducationids-ips-evasion+7
1.3k4 years ago
security-labs-pocs preview

security-labs-pocs

GitHubdatadog/security-labs-pocs

Proof of concept code for Datadog Security Labs referenced exploits.

container-escapecurated-resourcesexploitation+4
4492 days ago
Exploits preview

Exploits

GitHubkmkz/exploits

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

command-and-controlcontainer-escapeeducation+6
21723 days ago
Kerbeus-BOF preview

Kerbeus-BOF

GitHubralfhacker/kerbeus-bof

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

authenticationcommand-and-controlexploitation+6
6099 months ago
SpoolSploit preview

SpoolSploit

GitHubbeetlechunks/spoolsploit

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

container-securityexploitationexploit-frameworks+4
5525 years ago
VectorKernel preview

VectorKernel

GitHubdaem0nc0re/vectorkernel

PoCs for Kernelmode rootkit techniques research.

educationexploitationmalware-analysis+3
4435 months ago
SAMDump preview

SAMDump

GitHubricardojoserf/samdump

Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#, C++,…

data-exfiltrationencryption-decryption-toolspost-exploitation+3
38411 days ago
mimikatz-missing-manual preview

mimikatz-missing-manual

GitHubdarkoperator/mimikatz-missing-manual

Comprehensive self-paced manual on Windows identity, Kerberos, and PKI internals, covering credential dumping, ticket forgery, domain persistence,…

authenticationcryptographyeducation+6
4626 months ago
Byepervisor preview

Byepervisor

GitHubps5dev/byepervisor

A PS5 hypervisor exploit for 1.xx-2xx firmwares.

binary-exploitationembedded-systems-securityexploitation+4
3561 year ago
Previous1…8910…47Next