Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
26 results
Januscape preview

Januscape

GitHubv4bel/januscape

KVM/x86 guest-to-host escape exploit (CVE-2026-53359) leveraging a use-after-free in shadow MMU emulation. Includes PoC for triggering host kernel…

binary-exploitationcloud-securityexploitation+4
572
1 month ago
anamnesis-release preview

anamnesis-release

GitHubseanheelan/anamnesis-release

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

ai-securitybinary-exploitationeducation+9
6338 months ago
Zapscape preview

Zapscape

GitHubv4bel/zapscape

PoC exploit for CVE-2026-64561, a KVM/x86 shadow MMU use-after-free enabling guest-to-host escape with kernel root code execution on the host.

binary-exploitationcloud-securityexploitation+3
1661 month ago
windows_kernel_shadow_stack preview

windows_kernel_shadow_stack

GitHubsynacktiv/windows_kernel_shadow_stack

Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.

binary-exploitationexploitationpapers-research+2
771 year ago
CVE-2026-64561 preview

CVE-2026-64561

GitHubhackspeak/cve-2026-64561

Zapscape (CVE-2026-64561) KVM/x86 shadow MMU UAF guest-to-host escape PoC mirror — V4bel/@v4bel, MIT; for authorized security testing

binary-exploitationexploitationred-teaming+2
21 month ago
CVE-2021-36934-HiveNightmare-Lab preview

CVE-2021-36934-HiveNightmare-Lab

GitHubd4yon/cve-2021-36934-hivenightmare-lab

Educational lab demonstrating CVE-2021-36934 (HiveNightmare) - Windows LPE via shadow copy ACL misconfiguration.

binary-exploitationeducationexploitation+4
17 months ago
CVE-2026-53359 preview

CVE-2026-53359

GitHub0xblackash/cve-2026-53359

CVE-2026-53359

binary-exploitationeducationexploitation+2
42 months ago
CVE-2020-17382 preview

CVE-2020-17382

GitHubtypeconfused/cve-2020-17382

CVE-2020-17382 Windows 10 x64 2004 Build 19041.264 Exploit

binary-exploitationexploitationprivilege-escalation+1
13 years ago
noir preview

noir

GitHubowasp-noir/noir

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

api-securitydevsecopspenetration-testing+3
1.4k14h 26m ago
Whisker preview

Whisker

GitHubeladshamir/whisker

Whisker is a C# tool for taking over Active Directory user and computer accounts by manipulating their msDS-KeyCredentialLink attribute, effectively…

authenticationexploitationpenetration-testing+4
9551 year ago
ShadowSpray preview

ShadowSpray

GitHubdec0ne/shadowspray

A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other objects in the…

authenticationexploitationpenetration-testing+3
4973 years ago
zBang preview

zBang

GitHubcyberark/zbang

Active Directory risk assessment tool that scans for privileged account threats, shadow admins, Skeleton Key malware, SID history abuse, risky SPNs,…

penetration-testingprivilege-escalationvulnerability-analysis
3434 years ago
Januscape-Hotfix preview

Januscape-Hotfix

GitHubaoripus-ltd/januscape-hotfix

Complete fix collection for the CVE-2026-53359 guest-to-host escape vulnerability in the KVM/x86 shadow MMU. From zero-downtime livepatch to kernel…

cloud-infrastructure-securityconfiguration-auditingincident-response+2
62 months ago
ShadowMem preview

ShadowMem

GitHubzjuwyh/shadowmem

Defensive framework that maintains a safety-focused shadow memory to detect and block prompt-injection and long-horizon threats against LLM agents…

ai-securitydefensive-toolseducation+4
24 days ago
poc_CVE-2021-36934 preview

poc_CVE-2021-36934

GitHubgrishinpv/poc_cve-2021-36934

POC experiments with Volume Shadow copy Service (VSS)

data-recoveryexploitationforensics+2
25 years ago
ESCepcion preview

ESCepcion

GitHubhackwarts12/escepcion

Passive AD CS auditor detecting ESC1–ESC16 and Shadow Credentials via read-only LDAP/ACL/registry checks, with prioritized remediation and SIEM-ready…

configuration-auditingdefensive-toolsmisconfiguration+4
23 months ago
CVE-2021-36934 preview

CVE-2021-36934

GitHubirissentinel/cve-2021-36934

PowerShell script to detect and remediate the CVE-2021-36934 HiveNightmare privilege escalation vulnerability on Windows 10 by checking SAM hive…

configuration-auditingincident-responseprivilege-escalation+2
15 years ago
CVE-2021-36934 preview

CVE-2021-36934

GitHubbytesizedalex/cve-2021-36934

PowerShell scripts to detect and remediate CVE-2021-36934 privilege escalation vulnerability via SAM permission validation and VSS shadow copy…

configuration-auditingexploitationincident-response+3
25 years ago
Previous12Next