Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
MESH preview

MESH

GitHubbarghest-ngo/mesh

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

android-securitydigital-forensicsencryption-decryption-tools+8
188
17h 13m ago
Claude-BugHunter preview

Claude-BugHunter

GitHubelementalsouls/claude-bughunter

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24…

api-securitycloud-securitycurated-resources+8
3.8k22h 9m ago
awesome-game-security preview

awesome-game-security

GitHubgmh5225/awesome-game-security

Curated index of game security research: anti-cheat internals, DMA attacks, reverse engineering, kernel/mobile protections, and graphics API hooking…

android-securitybinary-analysiscurated-resources+8
3.4k5 days ago
pentest-ai preview

pentest-ai

GitHub0xsteph/pentest-ai

Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.

ai-securityapi-security-testingcloud-security+9
1.6k9 days ago
pentest-ai-agents preview

pentest-ai-agents

GitHub0xsteph/pentest-ai-agents

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements,…

ai-securitycloud-securityeducation+8
2.2k10 days ago
Root-My-Device preview

Root-My-Device

GitHubwitaqua-tools/root-my-device

KSU installer for supported firmware with CVE-2026-43499

android-securitybinary-exploitationexploitation+6
1124 days ago
CVE-2026-43499-pmg110-root preview

CVE-2026-43499-pmg110-root

GitHubsoralis0912/cve-2026-43499-pmg110-root

Android LPE exploit for CVE-2026-43499 targeting OPPO PMG110 (kernel 6.6). Uses futex PI UAF to gain root and install a su daemon via LD_PRELOAD.

android-securitybinary-exploitationexploitation+7
21 month ago
CVE-2026-43499-S25U preview

CVE-2026-43499-S25U

GitHubbusung-dev/cve-2026-43499-s25u

Standalone CVE-2026-43499 PoC for Galaxy S25 Ultra SM-S938N S938NKSUACZF1

android-securitybinary-exploitationexploitation+4
411 month ago
CVE-2026-28992-IOHIDFamily-FastPathUserClient-Race-Conditions preview

CVE-2026-28992-IOHIDFamily-FastPathUserClient-Race-Conditions

GitHub0xjohnnydev/cve-2026-28992-iohidfamily-fastpathuserclient-race-conditions

UAF and AOP coprocessor panic in IOHIDEventServiceFastPathUserClient. No entitlements, reachable from app sandbox.

binary-exploitationexploitationios-security+5
151 month ago
Chimera preview

Chimera

GitHubcipher-attack/chimera

Payload injector and HID emulator for Android like Hak5 and rubber ducky

android-securitybluetooth-securitycommand-and-control+4
242 months ago
tap-ducky preview

tap-ducky

GitHubiodn/tap-ducky

Turns any rooted phone into the legendary USB Rubber Ducky. Android USB HID Keystroke Injector

android-securityexploitationhardware-hacking+5
1573 months ago
frida-c2-mcp preview

frida-c2-mcp

GitHubs4dp4nd4/frida-c2-mcp

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

android-securitycommand-and-controldynamic-analysis-sandboxing+8
625 months ago
GeckoDroid preview

GeckoDroid

GitHubblacksnufkin/geckodroid

Android client for Adaptix C2 framework enabling remote agent management, interactive command shells, listener control, payload generation, and…

android-securitycommand-and-controlmobile-security+4
385 months ago
CVE-2024-23700 preview

CVE-2024-23700

GitHubcanyie/cve-2024-23700

PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls…

android-securityexploitationmobile-app-pentesting+5
717 months ago
CVE-2025-14174-Poc preview

CVE-2025-14174-Poc

GitHubsatirush/cve-2025-14174-poc

Proof-of-Concept exploit for CVE-2025-14174 (EUVD-2025-203113) - Memory corruption in ANGLE allowing out-of-bounds access and RCE in web browsers.…

android-securitybinary-exploitationexploitation+8
108 months ago
DDexec preview

DDexec

GitHubarget13/ddexec

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

binary-exploitationpayload-generationpenetration-testing+3
8951 year ago
CVE-2022-46395 preview

CVE-2022-46395

GitHubsmiletablabo/cve-2022-46395

Exploit for CVE-2022-46395, an Arm Mali kernel driver vulnerability, achieving arbitrary kernel code execution to disable SELinux and gain root on…

android-securitybinary-exploitationexploitation+3
22 years ago
CVE-2022-20186 preview

CVE-2022-20186

GitHubsmiletablabo/cve-2022-20186

Exploit for CVE-2022-20186 in the Arm Mali kernel driver, achieving arbitrary kernel code execution to disable SELinux and gain root on Google Pixel…

android-securitybinary-exploitationexploitation+3
12 years ago
Previous12Next