Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
78 results
cve-2025-9951-ffmpeg-jp2-poc preview

cve-2025-9951-ffmpeg-jp2-poc

GitHubfm0ss/cve-2025-9951-ffmpeg-jp2-poc

Proof-of-concept for CVE-2025-9951 demonstrating controlled callback execution in FFmpeg via JPEG 2000 component-mapping mismatch. Includes write-up,…

binary-exploitationexploitationfuzzing+3
1 month ago
the-backdoor-factory preview

the-backdoor-factory

GitHubsecretsquirrel/the-backdoor-factory

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

binary-exploitationexploitationmalware-analysis+6
3.4k2 years ago
SilentMoonwalk preview

SilentMoonwalk

GitHubklezvirus/silentmoonwalk

PoC Implementation of a fully dynamic call stack spoofer

binary-analysisexploitationpayload-development+2
9932 years ago
riscy-business preview

riscy-business

GitHubthesecretclub/riscy-business

RISC-V Virtual Machine

payload-developmentreverse-engineeringsecurity-virtualization
2981 year ago
chrome_v8_ndays preview

chrome_v8_ndays

GitHubanvbis/chrome_v8_ndays

Chrome V8 n-day exploits that I've written.

binary-exploitationexploitationpayload-development+5
2083 years ago
CVE-2020-1066-EXP preview

CVE-2020-1066-EXP

GitHubcbwang505/cve-2020-1066-exp

Local privilege escalation exploit for CVE-2020-1066 targeting Windows 7 and Server 2008 R2. Leverages arbitrary file replacement via Windows…

binary-exploitationexploitationpayload-development+3
1866 years ago
VectoredOverloading preview

VectoredOverloading

GitHubcheckpointsw/vectoredoverloading

Local PE injection technique using hardware breakpoints and vectored exception handling to manipulate DLL loading and execute arbitrary payloads, as…

binary-exploitationexploitationmalware-analysis+6
1278 months ago
Rusty-Playground preview

Rusty-Playground

GitHubblacksnufkin/rusty-playground

Some Rust program I wrote while learning Malware Development

binary-analysisexploitationmalware-analysis+6
1611 year ago
koppeling-p preview

koppeling-p

GitHubklezvirus/koppeling-p

Adaptive DLL hijacking / dynamic export forwarding - EAT preserve

binary-exploitationexploitationpayload-development+3
792 years ago
ditto preview

ditto

GitHubairbus-cert/ditto

Obfuscates PowerShell and JavaScript scripts using tree-sitter-based parsing with multiple configurable impostor profiles for stealth, size, and…

code-analysismalware-analysispayload-development+2
4012 days ago
DRMBinViaOrdinalImports preview

DRMBinViaOrdinalImports

GitHubmaldev-academy/drmbinviaordinalimports

Create Anti-Copy DRM Malware

adversarial-attackbinary-analysismalware-analysis+2
722 years ago
CVE-2018-4878 preview

CVE-2018-4878

GitHubmdsecactivebreach/cve-2018-4878

Proof-of-concept exploit for CVE-2018-4878, a Use-After-Free vulnerability in Adobe Flash Player 32-bit, providing a ByteArray object for process…

binary-exploitationexploitationmalware-analysis+3
238 years ago
SnatchBox preview

SnatchBox

GitHubliji32/snatchbox

SnatchBox (CVE-2020-27935) is a sandbox escape vulnerability and exploit affecting macOS up to version 10.15.x

binary-exploitationexploitationpayload-development+2
325 years ago
PHPStudy-Backdoor preview

PHPStudy-Backdoor

GitHubjas502n/phpstudy-backdoor

phpstudy dll backdoor for v2016 and v2018

command-and-controlmalware-analysispayload-development+4
196 years ago
CVE-2017-3000 preview

CVE-2017-3000

GitHubdangokyo/cve-2017-3000

A full exploit of CVE-2017-3000 on Flash Player Constant Blinding PRNG

binary-exploitationexploitationpayload-development+2
108 years ago
CVE-2026-15718-who-put-ptrs-in-my-wasm preview

CVE-2026-15718-who-put-ptrs-in-my-wasm

GitHubsneakynachos/cve-2026-15718-who-put-ptrs-in-my-wasm

PoC exploit chain for CVE-2026-15718: SpiderMonkey wasm baseline compiler array.fill missing-sync -> invalid pointer -> addrOf/fakeobj -> arbitrary…

binary-exploitationexploitationpayload-development+3
113 days ago
CVE-2019-16941 preview

CVE-2019-16941

GitHubpurpleracc00n/cve-2019-16941

PoC for CVE-2019-16941

binary-exploitationcode-analysisexploitation+3
46 years ago
pyshell2bin preview

pyshell2bin

GitHubelevenpaths/pyshell2bin

pyshell2bin

binary-analysisexploitationpayload-development+2
36 years ago
Previous12345Next