Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
268 results
Mi8E5-Unlocker-by-CVE-2026-43499 preview

Mi8E5-Unlocker-by-CVE-2026-43499

GitHubjoehquak/mi8e5-unlocker-by-cve-2026-43499

Multi OS Support: Version for MacOS/Linux and Windows, Fully translated to English

android-securitybinary-exploitationexploitation+6
71 month ago
EvilOSX preview

EvilOSX

GitHubmarten4n6/evilosx

An evil RAT (Remote Administration Tool) for macOS / OS X.

command-and-controlinformation-gatheringpassword-cracking+6
2.4k5 years ago
Priv2Admin preview

Priv2Admin

GitHubgtworek/priv2admin

Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.

exploitationpenetration-testingpost-exploitation+1
2.5k3 years ago
cve-2026-41940-PoC preview

cve-2026-41940-PoC

GitHublanicer/cve-2026-41940-poc

Exploits cPanel/WHM CVE-2026-41940 authentication bypass via CRLF session injection for unauthenticated root-level WHM access, then lists accounts,…

authentication-authorizationpenetration-testingpersistence-mechanisms+5
5296 days ago
PrivKit preview

PrivKit

GitHubmertdas/privkit

PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.

binary-analysisexploitationpenetration-testing+4
6117 months ago
inficere preview

inficere

GitHubenzolovesbacon/inficere

Mac OS X rootkit - for learning purposes

educationpersistence-mechanismsprivilege-escalation
12912 years ago
Credential-Hunting preview

Credential-Hunting

GitHubnecr00/credential-hunting

CredsHunter - Credential Hunting scripts for Windows and Linux OS

forensicsincident-responseinformation-gathering+7
1777 days ago
PegasusX preview

PegasusX

GitHubjndok/pegasusx

OS X 10.11.6 LPE PoC for CVE-2016-4655 / CVE-2016-4656

binary-exploitationeducationexploitation+3
1039 years ago
rootsh preview

rootsh

GitHubbazad/rootsh

Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.

binary-exploitationexploitationprivilege-escalation+1
8610 years ago
mach_race preview

mach_race

GitHubgdbinit/mach_race

Local privilege escalation exploit for macOS (CVE-2016-1757) using Mach IPC race condition to bypass SIP and SUID protections, targeting multiple OS…

binary-exploitationexploitationexploit-frameworks+2
8510 years ago
RootPipeTester preview

RootPipeTester

GitHubsideeffect42/rootpipetester

RootPipe (CVE-2015-1130) and Phoenix (CVE-2015-3673) vulnerability testing utility for Mac OS X 10.2.8 and later

educationexploitationpenetration-testing+2
1811 years ago
CVE-2026-67599_ClearOS_RCE preview

CVE-2026-67599_ClearOS_RCE

GitHublazytitan33/cve-2026-67599_clearos_rce

Authenticated Blind OS Command Injection in ClearOS

exploitationpenetration-testingpost-exploitation+3
25 days ago
Termix-research preview

Termix-research

GitHubgabrielha12/termix-research

CVE-2026-45746, CVE-2026-45750, CVE-2026-53547 — three critical vulnerabilities in Termix: cross-tenant session hijacking, OS command injection, and…

exploitationpapers-researchprivilege-escalation+2
228 days ago
Hack-The-Box-Enigma-Findings-Report preview

Hack-The-Box-Enigma-Findings-Report

GitHubmmoobbeeiidat-design/hack-the-box-enigma-findings-report

HTB_Enigma Security Assessment – Full pentest completed, chaining NFS disclosure, IMAPS password reuse, and OS Command Injection in OpenSTAManager…

ctfeducationexploitation+8
1 month ago
RootPipe-Demo preview

RootPipe-Demo

GitHubshmoopi/rootpipe-demo

Proof of Concept OS X Application for RootPipe Privilege Escalation Vulnerability (CVE-2015-1130)

binary-exploitationexploitationpenetration-testing+2
211 years ago
os-experiment-4 preview

os-experiment-4

GitHubfloridsleeves/os-experiment-4

os experiment 4 CVE-2016-5195

binary-exploitationeducationexploitation+2
29 years ago
CVE-2025-61304 preview

CVE-2025-61304

GitHubpentastic-be/cve-2025-61304

OS command injection vulnerability in Dynatrace ActiveGate ping extension up to 1.016 via crafted ip address

exploitationpayload-generationpost-exploitation+3
210 months ago
Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover preview

Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover

GitHubmrk336/cluster-chaos-exploiting-cve-2025-59359-for-kubernetes-takeover

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

cloud-securitycommand-and-controlcontainer-security+8
11 months ago
Previous12…15Next