Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
23 results
TelemetrySourcerer preview

TelemetrySourcerer

GitHubjthuraisamy/telemetrysourcerer

Enumerate and disable common sources of telemetry used by AV/EDR.

defensive-toolsred-teaming
8645 years ago
AMSI.fail preview

AMSI.fail

GitHubflangvik/amsi.fail

C# Azure Function with an HTTP trigger that generates obfuscated PowerShell snippets that break or disable AMSI for the current process.

defensive-toolsexploitationids-ips-evasion+2
4687 months ago
VEN0m-Ransomware preview

VEN0m-Ransomware

GitHubxm0kht4r/ven0m-ransomware

Fully undetectable and evasive ransomware written in Rust, leveraging a BYOVD technique to disable AV/EDR solutions on the infected systems.

encryption-decryption-toolsexploitationids-ips-evasion+6
3687 months ago
LightsOut preview

LightsOut

GitHubicyguider/lightsout

Generate an obfuscated DLL that will disable AMSI & ETW

defensive-toolsexploitationpayload-generation+1
3342 years ago
Disable-TamperProtection preview

Disable-TamperProtection

GitHubalteredsecurity/disable-tamperprotection

A POC to disable TamperProtection and other Defender / MDE components

adversarial-attackpenetration-testingpost-exploitation+1
2582 years ago
grlh preview

grlh

GitHubbrl/grlh

Proof-of-concept exploiting a weakness to disable the eBPF verifier, enabling arbitrary eBPF code execution for kernel-level privilege escalation.

binary-exploitationexploitationprivilege-escalation+2
948 years ago
MoveEdr preview

MoveEdr

GitHubduhirsch/moveedr

Permanently disable EDRs as local admin

anti-botdefensive-toolsids-ips-evasion+5
1319 months ago
MaFrida preview

MaFrida

GitHubtheshinigami/mafrida

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

android-securitydynamic-analysis-sandboxingdynamic-code-analysis+5
412 days ago
badepoll-selinux-disabler preview

badepoll-selinux-disabler

GitHubperongh/badepoll-selinux-disabler

Use CVE-2026-43074 to disable SELinux on Android (Linux 6.6/6.12)

android-securitybinary-exploitationexploitation+4
82 months ago
CVE-2026-25961-SumatraPDF-3.5.0---3.5.2-RCE preview

CVE-2026-25961-SumatraPDF-3.5.0---3.5.2-RCE

GitHubmbanyamer/cve-2026-25961-sumatrapdf-3.5.0---3.5.2-rce

SumatraPDF versions 3.5.0 to 3.5.2 disable TLS hostname verification during update checks # (using INTERNET_FLAG_IGNORE_CERT_CN_INVALID) and do not…

exploitationpayload-generationpenetration-testing+3
27 months ago
CVE-2022-46395 preview

CVE-2022-46395

GitHubsmiletablabo/cve-2022-46395

Exploit for CVE-2022-46395, an Arm Mali kernel driver vulnerability, achieving arbitrary kernel code execution to disable SELinux and gain root on…

android-securitybinary-exploitationexploitation+3
22 years ago
CVE-2022-20186 preview

CVE-2022-20186

GitHubsmiletablabo/cve-2022-20186

Exploit for CVE-2022-20186 in the Arm Mali kernel driver, achieving arbitrary kernel code execution to disable SELinux and gain root on Google Pixel…

android-securitybinary-exploitationexploitation+3
12 years ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubr0xdb/cve-2024-23897

Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a…

exploitationinformation-gatheringpenetration-testing+3
2 years ago
CVE-2020-15780-exploit preview

CVE-2020-15780-exploit

GitHubannavid/cve-2020-15780-exploit

Exploits to disable kernel lockdown via ACPI table injection, targeting Ubuntu 18.04 and mainline kernels with two distinct techniques.

exploitationpenetration-testingprivilege-escalation+2
2 years ago
no-defender preview
Archived

no-defender

GitHubes3n1n/no-defender

A slightly more fun way to disable windows defender + firewall. (through the WSC api)

adversarial-attackids-ips-evasionpenetration-testing+3
2.0k2 years ago
ettercap preview

ettercap

GitHubettercap/ettercap

Ettercap Project

dns-analysisexploitationinformation-gathering+6
2.8k13 days ago
BYOVD preview

BYOVD

GitHubblacksnufkin/byovd

BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609,…

educationexploitationids-ips-evasion+4
9611 month ago
InlineExecute-Assembly preview

InlineExecute-Assembly

GitHubanthemtotheego/inlineexecute-assembly

Cobalt Strike BOF for in-process .NET assembly execution with AMSI/ETW bypass, custom AppDomain, and named pipe/mailslot output redirection.

post-exploitationred-teaming
7695 years ago
Previous12Next