Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
197 results
androrat preview

androrat

GitHubdesignativedave/androrat

Remote Administration Tool for Android devices

android-securitycommand-and-controldata-exfiltration+9
1.7k13 years ago
AndroRAT preview

AndroRAT

GitHubthe404hacking/androrat

AndroRAT | Remote Administrator Tool for Android OS Hacking

android-securitycommand-and-controlexploitation+4
1.7k8 years ago
XploitSPY preview

XploitSPY

GitHubxploitwizer-community/xploitspy

Cloud-based Android monitoring tool with GPS tracking, microphone recording, SMS/call logging, live notification capture, file explorer, and built-in…

android-securityeducationinformation-gathering+3
1.3k5 years ago
PhoneMonitor preview

PhoneMonitor

GitHubglobalpolicy/phonemonitor

A Remote Administration Tool for Android devices

android-securitycommand-and-controldata-exfiltration+3
2685 years ago
CVE-2019-19781 preview

CVE-2019-19781

GitHubjas502n/cve-2019-19781

Python exploit for CVE-2019-19781 targeting Citrix ADC with template injection to achieve remote code execution on vulnerable gateways.

exploitationpenetration-testingred-teaming+3
856 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubl0n3m4n/cve-2024-6387

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

exploitationnetwork-securitypayload-development+6
1142 years ago
android-c-sharp-rat-server preview

android-c-sharp-rat-server

GitHubadvancedhacker101/android-c-sharp-rat-server

This is a plugin for the c# R.A.T server providing extension to android based phone systems

android-securitycommand-and-controldata-exfiltration+3
208 years ago
FreeRDP-Out-of-Bounds-Read-CVE-2024-32459- preview

FreeRDP-Out-of-Bounds-Read-CVE-2024-32459-

GitHubabsholi7ly/freerdp-out-of-bounds-read-cve-2024-32459-

The FreeRDP - Out-of-Bounds Read (CVE-2024-32459) vulnerability concerns FreeRDP, a free implementation of Remote Desktop Protocol. FreeRDP-based…

binary-analysisexploitationinformation-gathering+2
42 years ago
provisioner preview

provisioner

GitHubalessandrocarminati/provisioner

Provisioning and sharing system for SBCs

embedded-systems-securityfirmware-analysishardware-iot-security+3
77 months ago
CVE-2025-26326 preview

CVE-2025-26326

GitHubazurejoga/cve-2025-26326

Critical security vulnerability in NVDA remote connection add-ons.

exploitationinformation-gatheringpassword-attacks+3
11 year ago
Gorsair preview
Archived

Gorsair

GitHubullaakut/gorsair

Gorsair gives root access on remote docker containers that expose their APIs

cloud-securitycontainer-securityexploitation+6
8482 years ago
adbsploit preview
Archived

adbsploit

GitHubmesquidar/adbsploit

A python based tool for exploiting and managing Android devices via ADB

android-securitydata-exfiltrationexploitation+6
9073 years ago
Radium preview
Archived

Radium

GitHubmehulj94/radium

Python logger with multiple features.

command-and-controldata-exfiltrationinformation-gathering+7
5255 years ago
androrat preview

androrat

GitHubwszf/androrat

androrat

android-securitycommand-and-controldata-exfiltration+6
2.1k6 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubkarmakstylez/cve-2024-6387

Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (CVE-2024-6387)

exploitationnetwork-securitypenetration-testing+3
1962 years ago
poet preview

poet

GitHubofflinemark/poet

[unmaintained] Post-exploitation tool

command-and-controldata-exfiltrationpayload-generation+4
18110 years ago
CVE-2026-57827 preview

CVE-2026-57827

GitHubshinthink/cve-2026-57827

CVE-2026-57827 — RSFiles! Joomla Component Unauthenticated File Upload RCE. Split-controller upload bypass. CVSS 9.8 | CWE-434 | com_rsfiles < 1.17.12

exploitationinformation-gatheringpayload-development+6
162 months ago
CVE-2026-13249 preview

CVE-2026-13249

GitHubmurrez/cve-2026-13249

Unauthenticated arbitrary file upload on Honeywell PD45 web admin (firmware F10.19.010040–before F10.22.030745) leading to RCE. Python check/exploit…

embedded-systems-securityexploitationhardware-iot-security+6
14 days ago
Previous1234…11Next