Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
83 results
DetectionLab preview

DetectionLab

GitHubclong/detectionlab

Automate the creation of a lab environment complete with security tooling and logging best practices

configuration-auditingdefensive-toolsdigital-forensics+5
5.0k
3 years ago
Hypervisor-From-Scratch preview

Hypervisor-From-Scratch

GitHubsinakarvandi/hypervisor-from-scratch

Source code of a multiple series of tutorials about the hypervisor. Available at: https://rayanfam.com/tutorials

dynamic-analysis-sandboxingeducationlearning-paths-courses+2
2.7k3 months ago
qubes-core-admin preview

qubes-core-admin

GitHubqubesos/qubes-core-admin

Manages the core lifecycle of Qubes OS domains via a Python admin API, handling secure compartmentalization with Xen and exposing an event system for…

defensive-toolssecurity-virtualizationutilities-frameworks
1444 days ago
Zapscape preview

Zapscape

GitHubv4bel/zapscape

PoC exploit for CVE-2026-64561, a KVM/x86 shadow MMU use-after-free enabling guest-to-host escape with kernel root code execution on the host.

binary-exploitationcloud-securityexploitation+3
1611 month ago
device-modeling-language preview

device-modeling-language

GitHubintel/device-modeling-language

Domain-specific language for writing fast functional device models for virtual platforms. Compiles DML to C with API calls tailored for the Intel…

embedded-systems-securityfirmware-analysishardware-iot-security+2
1396 days ago
chimera preview

chimera

GitHubpenberg/chimera

Sandbox untrusted code with safe access to the host.

binary-analysiscode-analysisdynamic-analysis-sandboxing+3
1311 month ago
hyperpom preview

hyperpom

GitHubimpalabs/hyperpom

AArch64 fuzzer based on the Apple Silicon hypervisor

binary-analysisdynamic-analysis-sandboxingfuzzing+2
2032 years ago
vpod preview

vpod

GitHubcapsulerun/vpod

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

ai-securitycontainer-securitydefensive-tools+3
716 days ago
libloong preview

libloong

GitHublibriscv/libloong

The fastest LoongArch sandbox

binary-analysisembedded-systems-securityfuzzing+3
647 months ago
wasm2c-tableflip preview

wasm2c-tableflip

GitHubtrustsig-eu/wasm2c-tableflip

wasm2c sandbox escape. An untrusted WebAssembly module breaks out of the generated C sandbox and executes an arbitrary shell command on the host.

binary-exploitationexploitationsecurity-virtualization+1
519 days ago
nbox-pwnage preview

nbox-pwnage

GitHubjavuto/nbox-pwnage

Here comes the paintrain!

configuration-auditingpenetration-testingsecurity-virtualization+2
1110 years ago
januscape preview

januscape

GitHubsuominen/januscape

Tracking Januscape (CVE-2026-53359), the KVM/x86 guest-to-host escape

security-virtualizationthreat-intelligencevulnerability-analysis
1 month ago
itscape preview

itscape

GitHubsuominen/itscape

Tracking ITScape (CVE-2026-46316), the KVM/arm64 guest-to-host escape

curated-resourcessecurity-virtualizationthreat-intelligence+1
1 month ago
CVE-2026-2441_PoC preview

CVE-2026-2441_PoC

GitHubatiilla/cve-2026-2441_poc

Proof-of-concept exploit for CVE-2026-2441, demonstrating the vulnerability and providing a working exploit for security testing and validation.

exploitationpenetration-testingsecurity-virtualization+2
6 months ago
SpeculativeExecutionAssessment preview

SpeculativeExecutionAssessment

GitHubgregaskew/speculativeexecutionassessment

Assesses a system for the "speculative execution" vulnerabilities described in CVE-2017-5715, CVE-2017-5753, CVE-2017-5754

cloud-securityconfiguration-auditinghardware-security+3
6 years ago
CVE-2026-27607 preview
Archived

CVE-2026-27607

GitHubnikeee/cve-2026-27607

Proof-of-concept exploit for CVE-2026-27607, a missing post-policy validation in RustFS, demonstrating the vulnerability with a Node.js script and…

exploitationpenetration-testingsecurity-virtualization+2
16 months ago
edk2 preview

edk2

GitHubtianocore/edk2

EDK II

cryptographyeducationembedded-systems-security+3
6.2k24 days ago
terminal-bench-2 preview

terminal-bench-2

GitHubharbor-framework/terminal-bench-2

Benchmark for evaluating AI agents on real-world tasks including vulnerability resolution, code debugging, and protein assembly in containerized…

ctfdevsecopseducation+5
4014 months ago
Previous12345Next