Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
243 results
mauidll preview

mauidll

GitHubbishopfox/mauidll

Extract the managed (.NET) assemblies out of a MAUI Android assembly store.

android-securitybinary-analysisdynamic-code-analysis+4
110 days ago
CVE-2017-13156 preview

CVE-2017-13156

GitHubm507/cve-2017-13156

To determine if an APK is vulnerable to CVE-2017-13156

android-securitybinary-analysismobile-security+2
34 years ago
CVE-2017-13208-Scanner preview

CVE-2017-13208-Scanner

GitHubidanshechter/cve-2017-13208-scanner

Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

android-securitybinary-analysisexploitation+3
15 years ago
YAASA preview

YAASA

GitHubmohammadnassiri/yaasa

Yet Another APK Static Analyzer

android-securitymalware-analysisstatic-analysis+1
18 years ago
MobSF_AI preview

MobSF_AI

GitHubashishsecdev/mobsf_ai

AI powered security analysis extension for Mobile Security Framework MobSF

ai-securityandroid-securityeducation+4
7 months ago
CVE-2022-0219 preview

CVE-2022-0219

GitHubhaxatron/cve-2022-0219

Proof-of-concept exploit for CVE-2022-0219, an XXE vulnerability in Jadx that allows local file disclosure when exporting malicious APK files via the…

android-securitycode-analysismobile-security+3
4 years ago
enjarify preview
Archived

enjarify

GitHubgoogle/enjarify

Translates Dalvik bytecode (DEX/APK) to equivalent Java bytecode, enabling Java analysis tools to process Android applications with high correctness…

android-securitybinary-analysiscode-analysis+3
2.7k6 years ago
kavanoz preview
Archived

kavanoz

GitHubeybisi/kavanoz

Statically unpacking common android banker malware.

android-securityencryption-decryption-toolsmalware-analysis+3
1591 year ago
nCPU preview

nCPU

GitHubrobertcprice/ncpu

Research runtime for differentiable neural computers, GPU-based CPU emulation, and program synthesis. Features neural ALU, constant-time crypto, JEPA…

ai-securitybinary-analysiscryptography+8
6602 months ago
YARA-Performance-Guidelines preview

YARA-Performance-Guidelines

GitHubneo23x0/yara-performance-guidelines

A guide on how to write fast and memory friendly YARA rules

educationmalware-analysisstatic-analysis
1751 year ago
flare-vm preview

flare-vm

GitHubmandiant/flare-vm

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

binary-analysisdebuggersdigital-forensics+10
9.1k3 months ago
SafeForge preview

SafeForge

GitLabroxanne_ardary/safeforge

SafeForge is an open-source mobile app hub built on GitLab that enables developers to build, upload, and share applications in a secure, AI-verified…

ai-securitydynamic-analysis-sandboxingeducation+8
1 month ago
vesta preview

vesta

GitHubkvesta/vesta

A static analysis of vulnerabilities, Docker and Kubernetes cluster configuration detect toolkit based on the real penetration of cloud computing

cloud-securityconfiguration-auditingcontainer-security+3
2051 year ago
jenkinsci__script-security-plugin_CVE-2023-24422_1228.vd93135a_2fb_25 preview

jenkinsci__script-security-plugin_CVE-2023-24422_1228.vd93135a_2fb_25

GitHubshoucheng3/jenkinsci__script-security-plugin_cve-2023-24422_1228.vd93135a_2fb_25

Jenkins plugin providing script approval workflows and Groovy sandboxing to enforce secure script execution, with ACL-aware permission checks and…

api-securityauthentication-authorizationcode-analysis+5
7 months ago
XSpear preview
Archived

XSpear

GitHubhahwul/xspear

🔱 Powerfull XSS Scanning and Parameter analysis tool&gem

dynamic-analysis-sandboxingfuzzinginformation-gathering+8
1.4k7 months ago
CakeFuzzer preview

CakeFuzzer

GitHubzigrin-security/cakefuzzer

Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based on specific…

dynamic-analysis-sandboxingfuzzingpenetration-testing+4
1041 year ago
jetty-line-check preview

jetty-line-check

GitHubxiaoqimikko/jetty-line-check

CVE-2026-2332 and 4 more 2026 Jetty CVEs: which does your Jetty (or Spring Boot) build hit, and does the fixed version Jetty names even exist on…

configuration-auditingdefensive-toolsstatic-analysis+4
15 days ago
rails-activestorage-vips-audit preview

rails-activestorage-vips-audit

GitHubpaveg/rails-activestorage-vips-audit

Agent skill that audits a Rails codebase for CVE-2026-66066 (KindaRails2Shell) — Active Storage + libvips arbitrary file read / RCE, checking Rails…

configuration-auditingdevsecopseducation+3
2 months ago
Previous1…11121314Next