Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
198 results
CVE-2026-31431 preview

CVE-2026-31431

GitHubexploiteoom/cve-2026-31431

Exploit for CVE-2026-31431 that escalates privileges by altering user ID, with a verification script and mitigation instructions for the algif_aead…

binary-analysisexploitationexploit-frameworks+2
2
4 months ago
AzureRedOps preview

AzureRedOps

GitHubmr-un1k0d3r/azureredops

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

authenticationcloud-securityexploitation+8
1821 month ago
CVE-2025-4162029 preview

CVE-2025-4162029

GitHubnotitssixtyn3in/cve-2025-4162029

Security advisory detailing a critical authentication vulnerability (CVE-2025-4162029) in Copilot, enabling unauthorized account access via user ID…

authenticationexploitationinformation-gathering+3
1 year ago
NfSpy preview

NfSpy

GitHubbonsaiviking/nfspy

ID-spoofing NFS client

authenticationexploitationinformation-gathering+4
3006 years ago
CVE-2026-18366 preview

CVE-2026-18366

GitHubnxploited/cve-2026-18366

Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator

exploitationinformation-gatheringpost-exploitation+3
22 days ago
CVE-2025-27237 preview

CVE-2025-27237

GitHubhackinglz/cve-2025-27237

CVE 2025 27237 Zabbix LPE proof of concept.

binary-analysiscode-analysisexploitation+3
207 months ago
DirtyPipe-Exploit preview

DirtyPipe-Exploit

GitHubkaranlvm/dirtypipe-exploit

Proof-of-concept exploit for CVE-2022-0847 (Dirty Pipe) enabling local privilege escalation on Linux kernels 5.8 through 5.16.10 by overwriting…

binary-exploitationeducationexploitation+3
210 months ago
POC-of-CVE-2022-36271 preview

POC-of-CVE-2022-36271

GitHubsaumyajeetdas/poc-of-cve-2022-36271

This is working POC of CVE-2022-36271

binary-exploitationexploitationmalware-analysis+3
94 years ago
OutOfTune preview

OutOfTune

GitHubstra-x/outoftune

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

authentication-authorizationcloud-securityconfiguration-auditing+9
325 months ago
EntraGoat preview

EntraGoat

GitHubsemperis/entragoat

A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.

authenticationcloud-securityctf+7
9814 months ago
CVE-2025-32463-Chwoot-POC preview

CVE-2025-32463-Chwoot-POC

GitHubkrypton-0x00/cve-2025-32463-chwoot-poc

Rust-based proof-of-concept exploit for CVE-2025-32463, a Sudo privilege escalation vulnerability. Spawns an interactive root shell or executes…

binary-exploitationexploitationpenetration-testing+2
11 year ago
CVE-2024-56433 preview

CVE-2024-56433

GitHubjonnywhatshisface/cve-2024-56433

Proof-of-concept exploit for CVE-2024-56433, demonstrating privilege escalation via shadow-utils subordinate ID collision to access other users' data.

exploitationpenetration-testingprivilege-escalation+2
1 year ago
sudo-cve-2019-14287 preview

sudo-cve-2019-14287

GitHubfauxfaux/sudo-cve-2019-14287

Exploit for CVE-2019-14287, a sudo vulnerability allowing privilege escalation to root via crafted user ID specification. Provides a proof-of-concept…

exploitationpenetration-testingpost-exploitation+3
16 years ago
CVE-2026-8181 preview

CVE-2026-8181

GitHubez4rd1x1/cve-2026-8181

Proof-of-concept exploit for CVE-2026-8181, an authentication bypass in the Burst Statistics WordPress plugin. Demonstrates remote, unauthenticated…

authentication-authorizationctfeducation+5
3 months ago
Sudo-Vulnerability-Exploit-CVE-2019-14287 preview

Sudo-Vulnerability-Exploit-CVE-2019-14287

GitHubhasintha-98/sudo-vulnerability-exploit-cve-2019-14287

Exploit for CVE-2019-14287, a sudo vulnerability allowing privilege escalation via user ID -1 on Linux systems. Enables arbitrary command execution…

command-and-controlexploitationpenetration-testing+3
4 years ago
ageverificationbypass preview

ageverificationbypass

GitHubhaplessidiot/ageverificationbypass

Bypass age verification service from redhat

defensive-toolseducationids-ips-evasion+3
944 months ago
CVE-2024-33352 preview

CVE-2024-33352

GitHubmmiszczyk/cve-2024-33352

BlueStacks privilege escalation through VM backdooring

android-securityexploitationhardware-iot-security+3
212 years ago
Azure preview

Azure

GitHuboffsecpierogi/azure

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

cloud-infrastructure-securitycloud-securityconfiguration-auditing+8
11 month ago
Previous12…11Next