Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
133 results
RunPE preview

RunPE

GitHubnettitude/runpe

C# Reflective loader for unmanaged binaries.

adversarial-attackimpersonation-toolspayload-development+6
4473 years ago
Shellcrypt preview

Shellcrypt

GitHubiilegacyyii/shellcrypt

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

cryptographyencryption-decryption-toolspayload-development+3
2173 years ago
Shellcode-Hide preview

Shellcode-Hide

GitHubsaadahla/shellcode-hide

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

cryptographyencryption-decryption-toolsids-ips-evasion+4
4413 years ago
Shinigami preview

Shinigami

GitHubbuzzer-re/shinigami

Dynamic unpacker for Windows that hooks NT APIs to detect process hollowing, extracts injected PE implants, and uses guard pages to trace shellcode…

binary-analysisdynamic-analysis-sandboxingmalware-analysis+2
1522 years ago
Kernel_VADInjector preview

Kernel_VADInjector

GitHublleon1435/kernel_vadinjector

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

adversarial-attackids-ips-evasionpayload-development+3
542 years ago
ByteCaster preview

ByteCaster

GitHubprint3m/bytecaster

Swiss Army Knife for payload encryption, obfuscation, and conversion to byte arrays – all in a single command (14 output formats supported)! ☢️

encryption-decryption-toolspayload-developmentred-teaming+1
2305 months ago
NullGate preview

NullGate

GitHub0xsch1zo/nullgate

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

adversarial-attackencryption-decryption-toolspayload-development+3
1681 year ago
Powshell-decode-payload preview

Powshell-decode-payload

GitHubjas502n/powshell-decode-payload

Tool and reference for decoding obfuscated PowerShell payloads, extracting Base64, GZip, and Deflate encoded shellcode for digital forensics and…

educationforensicsmalware-analysis+2
86 years ago
Ascii-And-Sub-Encoder preview

Ascii-And-Sub-Encoder

GitHubxen0vas/ascii-and-sub-encoder

This is a custom ASCII AND/SUB Encoder developed during my preparation for the legacy OSCE/CTP course

binary-exploitationeducationexploitation+2
4 years ago
ZeroRAT preview

ZeroRAT

GitHub5alt/zerorat

Windows remote access tool with one-command client execution, file transfer, Meterpreter shellcode injection, and persistence via Task Scheduler and…

command-and-controldata-exfiltrationexploitation+9
6310 years ago
PCShare preview

PCShare

GitHubxdnice/pcshare

HTTP-based remote access tool with DLL injection, process hollowing, and system hooking for persistent control, screen monitoring, file exfiltration,…

command-and-controldata-exfiltrationlateral-movement+9
5699 years ago
React-Server-Components-RCE preview

React-Server-Components-RCE

GitHubgelukcrab/react-server-components-rce

GUI-based RCE exploit tool for React Server Components and Next.js (CVE-2025-55182). Supports command execution, memory shell injection, reverse…

command-and-controlctfeducation+8
108 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubfaithtiannn/cve-2025-55182

Java Swing GUI tool for detecting and exploiting CVE-2025-55182 in Next.js. Supports batch scanning, command execution, memory shell injection, and…

command-and-controlexploitationpayload-development+5
27 months ago
metasploit-framework-nu11secur1ty preview

metasploit-framework-nu11secur1ty

GitHubnu11secur1ty/metasploit-framework-nu11secur1ty

Extensible exploitation framework with modular payload generation, auxiliary scanners, and post-exploitation agents for penetration testing and…

command-and-controlexploitationexploit-frameworks+9
110 months ago
sh1mazu preview

sh1mazu

GitHubnu11secur1ty/sh1mazu

Automated Meterpreter payload generator and reverse shell exploit tool for remote exploitation of OS vulnerabilities, enabling post-exploitation…

command-and-controlexploitationpayload-generation+4
3 years ago
NyxInvoke preview

NyxInvoke

GitHubblacksnufkin/nyxinvoke

Rust-based tool for executing .NET assemblies, PowerShell, BOFs, and PE files with patchless AMSI/ETW bypass and NTDLL unhooking. Supports encrypted…

command-and-controlexploitationids-ips-evasion+6
2421 year ago
flowinspect preview

flowinspect

GitHub7h3ram/flowinspect

Network traffic inspection tool that reassembles TCP/UDP flows and inspects them using regex, fuzzy string matching, shellcode detection (libemu),…

forensicsfuzzingintrusion-detection+5
828 years ago
stackflow preview

stackflow

GitHubd4rkcat/stackflow

Universal stack-based buffer overfow exploitation tool

binary-exploitationdebuggersexploitation+5
2312 years ago
Previous12…8Next