Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
781 results
wsuks preview

wsuks

GitHubneffisback/wsuks

Automated WSUS MITM tool that spoofs Windows Update traffic over ARP, serves a signed executable with PowerShell payload, and escalates to local…

exploitationmisconfigurationnetwork-security+5
398
1 month ago
pentest-mcp preview

pentest-mcp

GitHubdmontgomery40/pentest-mcp

NOT for educational purposes: An MCP server for professional penetration testers including STDIO/HTTP/SSE support, nmap, go/dirbuster, nikto, JtR,…

exploitationfuzzingnetwork-mapping+8
1414 months ago
copy-fail-mcp preview

copy-fail-mcp

GitHubsandraschi/copy-fail-mcp

CVE-2026-31431 Copy Fail — Linux kernel LPE tester via MCP

binary-exploitationcontainer-escapeexploitation+5
16 days ago
CVE-2026-61241 preview

CVE-2026-61241

GitHubgodliveanton/cve-2026-61241

Oracle OID LDAP Server Privileges Management Exploit

exploitationidentity-access-managementnetwork-security+3
1 day ago
Coercer preview

Coercer

GitHubp0dalirius/coercer

A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.

authenticationexploitationfuzzing+3
2.3k3 months ago
CVE-2025-33073 preview

CVE-2025-33073

GitHubmverschu/cve-2025-33073

PoC Exploit for the NTLM reflection SMB flaw.

authenticationexploitationnetwork-security+3
7136 months ago
zerologon preview

zerologon

GitHubcorelight/zerologon

Zeek package to detect Zerologon

defensive-toolsintrusion-detectionnetwork-security+2
114 years ago
sdwan-cve-2021-1480 preview

sdwan-cve-2021-1480

GitHubxmco/sdwan-cve-2021-1480

PoC materials to exploit the CVE-2021-1480 on Cico SD-WAN.

command-and-controlexploitationnetwork-security+3
45 years ago
NachoVPN preview

NachoVPN

GitHubamberwolfcyber/nachovpn

A delicious, but malicious SSL-VPN server 🌮

adversarial-attackexploitationnetwork-security+5
2675 months ago
dirtyfrag-detection-rules preview

dirtyfrag-detection-rules

GitHubmillikanjohnl-blip/dirtyfrag-detection-rules

Detection rules and analysis for Dirty Frag (CVE-2026-43284/CVE-2026-43500) Linux kernel LPE vulnerability. Based on community research and health…

defensive-toolsintrusion-detectionprivilege-escalation+1
15 days ago
r77-rootkit preview

r77-rootkit

GitHubbytecode77/r77-rootkit

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

command-and-controldefensive-toolsids-ips-evasion+6
2.2k1 month ago
emp3r0r preview

emp3r0r

GitHubjm33-m0/emp3r0r

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

anti-botcommand-and-controlids-ips-evasion+8
1.7k4 days ago
hidden preview

hidden

GitHubjkornev/hidden

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc

anti-botdefensive-toolsids-ips-evasion+3
2.1k4 years ago
Chaos-Rootkit preview

Chaos-Rootkit

GitHubzeromemoryex/chaos-rootkit

Windows x64 Ring 0 rootkit enabling DKOM process hiding, privilege elevation, driver swapping, and anti-malware evasion by redirecting file…

ids-ips-evasionpersistence-mechanismspost-exploitation+2
1.1k3 months ago
ExecuteAssembly preview

ExecuteAssembly

GitHubmed0x2e/executeassembly

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

command-and-controlexploitationids-ips-evasion+8
5975 years ago
Ghost-In-The-Logs preview

Ghost-In-The-Logs

GitHubbats3c/ghost-in-the-logs

Kernel-level tool to disable Sysmon and Windows Event Logging via driver-based hook injection, enabling stealthy post-exploitation operations on…

defensive-toolsids-ips-evasionprivilege-escalation
6266 years ago
Insanity-Framework preview

Insanity-Framework

GitHub4w4k3/insanity-framework

Generate Payloads and Control Remote Machines. [Discontinued]

command-and-controlexploitationids-ips-evasion+7
2249 years ago
DriverJack preview

DriverJack

GitHubklezvirus/driverjack

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

exploitationids-ips-evasionlateral-movement+5
3652 years ago
Previous12…44Next