Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
79 results
PPLcontrol preview

PPLcontrol

GitHubitm4n/pplcontrol

Windows tool to list, get, set, protect, and unprotect process protection levels (PP/L) for debugging, inspection, and privilege escalation.

defensive-toolsexploitationprivilege-escalation+1
407
3 years ago
Kitsune preview

Kitsune

GitHubjoelgmsec/kitsune

Polymorphic C2 framework with graphical interface, automatic reconnection, payload generation, and integrated hacking tools for red team operations…

command-and-controlexploit-frameworkspayload-generation+2
1051 year ago
poc-cve-2026-32255 preview

poc-cve-2026-32255

GitHubkoadt/poc-cve-2026-32255

This repository contains a proof of concept (POC) for CVE-2026-32255, a high-severity Server-Side Request Forgery (SSRF) vulnerability in Kan, an…

educationexploitationpenetration-testing+3
26 months ago
Salsa-tools preview

Salsa-tools

GitHubhackplayers/salsa-tools

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

command-and-controlencryption-decryption-toolsexploitation+7
5906 years ago
CVE-2019-0708-Tool preview

CVE-2019-0708-Tool

GitHubsqldebugger/cve-2019-0708-tool

50 first stargazers will get get the tool via email

exploitationpenetration-testingred-teaming+2
7 years ago
backcookie preview

backcookie

GitHubjofpin/backcookie

Small backdoor using cookie.

command-and-controlpayload-generationpenetration-testing+3
639 years ago
SharpNoPSExec preview

SharpNoPSExec

GitHubjuliourena/sharpnopsexec

Get file less command execution for lateral movement.

lateral-movementpenetration-testingpost-exploitation+1
6384 years ago
SMBRat preview

SMBRat

GitHuboperatorequals/smbrat

A Windows Remote Administration Tool in Visual Basic with UNC paths

command-and-controlexploitationlateral-movement+8
227 years ago
GIUDA preview

GIUDA

GitHubfoxlox/giuda

Ask a TGS on behalf of another user without password

authenticationexploitationimpersonation-tools+5
4811 year ago
cve-2025-50946 preview

cve-2025-50946

GitHubrunt1me/cve-2025-50946

Exploit script for CVE-2025-50946

exploitationpenetration-testingred-teaming+3
4 months ago
DiagTrackEoP preview

DiagTrackEoP

GitHubwh04m1001/diagtrackeop

Windows privilege-escalation exploit abusing SeImpersonate via DiagTrack RPC, using Secondary Logon to get an INTERACTIVE token and gain SYSTEM.

adversarial-attackexploitationpenetration-testing+3
884 years ago
CVE-2021-31761 preview

CVE-2021-31761

GitHubelectronicbots/cve-2021-31761

Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

command-and-controlexploitationpenetration-testing+3
45 years ago
CVE-2021-31760 preview

CVE-2021-31760

GitHubelectronicbots/cve-2021-31760

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

command-and-controlexploitationpenetration-testing+3
25 years ago
CVE-2021-31760 preview

CVE-2021-31760

GitHubmesh3l911/cve-2021-31760

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

command-and-controlexploitationpenetration-testing+3
35 years ago
MS15-011-Files preview

MS15-011-Files

GitHubfreakazoidile/ms15-011-files

Repo that the MS15-011 exploit clones to get required files. Avoids having to download all files from exploit_dev.

exploitationpenetration-testingred-teaming+1
36 years ago
CVE-2024-4157-SSRF-RCE-Reverse-Shell preview

CVE-2024-4157-SSRF-RCE-Reverse-Shell

GitHubch4os1/cve-2024-4157-ssrf-rce-reverse-shell

Chaining Havoc C2 SSRF with RCE to get reverse shell on Havoc C2 Server.

command-and-controlexploitationpayload-development+3
1 year ago
CVE-2021-32157 preview

CVE-2021-32157

GitHubmesh3l911/cve-2021-32157

Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's Scheduled Cron Jobs feature

exploitationpayload-developmentpenetration-testing+3
5 years ago
DirCreate2System preview

DirCreate2System

GitHubbinderlabs/dircreate2system

Weaponizing to get NT SYSTEM for Privileged Directory Creation Bugs with Windows Error Reporting

adversarial-attackeducationexploitation+4
3643 years ago
Previous12345Next