Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2332 results
CVE-2025-29824-Exploit preview

CVE-2025-29824-Exploit

GitHubafanpan/cve-2025-29824-exploit

Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

binary-exploitationexploitationmalware-analysis+6
20
1 year ago
Winstrument preview

Winstrument

GitHubnccgroup/winstrument

Winstrument is a framework of modular scripts to aid in instrumenting Windows software using Frida for reverse engineering and attack surface…

binary-analysisdynamic-code-analysisreverse-engineering+1
686 years ago
conti-ransomware-writeup preview

conti-ransomware-writeup

GitHubjustjeff211/conti-ransomware-writeup

Conducted a full SOC investigation into a Conti ransomware compromise of an Exchange server using Splunk 8.2.2. Analysed 28,145 events across Windows…

digital-forensicseducationforensics+6
6 months ago
SpecuCheck preview

SpecuCheck

GitHubionescu007/specucheck

Windows utility that queries kernel API to report software and hardware mitigation status against speculative execution vulnerabilities (Meltdown,…

educationhardware-securityvulnerability-analysis
5857 years ago
Invoke-HiveNightmare preview

Invoke-HiveNightmare

GitHubwiredpulse/invoke-hivenightmare

PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version…

data-exfiltrationexploitationpost-exploitation+2
355 years ago
CVE-2022-37969 preview

CVE-2022-37969

GitHubfortra/cve-2022-37969

Proof-of-concept exploit for CVE-2022-37969, a Windows Common Log File System driver local privilege escalation. Demonstrates heap spray, token…

binary-exploitationexploitationmemory-forensics+2
1343 years ago
CVE-2023-28252 preview

CVE-2023-28252

GitHubfortra/cve-2023-28252

Technical analysis and proof-of-concept exploit for CVE-2023-28252, a Windows Common Log File System (CLFS) driver privilege escalation vulnerability…

binary-exploitationdebuggersexploitation+4
1843 years ago
log4j-fix-CVE-2021-44228 preview

log4j-fix-CVE-2021-44228

GitHubchandru-gunasekaran/log4j-fix-cve-2021-44228

Windows Batch Scrip to Fix the log4j-issue-CVE-2021-44228

general-purpose-utilitiesmisconfigurationscripting-automation+2
24 years ago
CLFS preview

CLFS

GitHubbyt3n33dl3/clfs

it's a CVE-2023-28252 (Patched), but feel free to use it for check any outdated software or reseach

binary-exploitationeducationexploitation+2
62 years ago
AnySniff preview

AnySniff

GitHubmkultra6969/anysniff

AnySniff is a tool for monitoring TCP connections of processes like AnyDesk on Windows. It uses the CVE-2024-52940 vulnerability to track open…

exploitationinformation-gatheringnetwork-security+3
41 year ago
CrackKeyIso preview

CrackKeyIso

GitHubbyt3n33dl3/crackkeyiso

it's a CVE-2023-28229 (Patched), but feel free to use it for check any outdated software or reseach

educationexploitationprivilege-escalation+1
52 years ago
KasperMeow preview

KasperMeow

GitHubmein-0/kaspermeow

Proof-of-concept that exploits a Kaspersky driver vulnerability to leak kernel pointers and bypass KASLR on Windows, enabling kernel exploit chain…

binary-analysisexploitationreverse-engineering+1
1429 days ago
fleet-cve-scanner preview

fleet-cve-scanner

GitHubboostedchaos/fleet-cve-scanner

An open-source, single-script CVE scanner for RMM-managed fleets. Pure PowerShell 7 — joins your RMM software inventory against NVD, CISA KEV, EPSS…

configuration-auditingincident-responselog-analysis+3
122 months ago
MFASweep preview

MFASweep

GitHubdafthack/mfasweep

A tool for checking if MFA is enabled on multiple Microsoft Services

authenticationcloud-securitypenetration-testing+2
1.7k5 months ago
hack-winrar preview

hack-winrar

GitHubtechnicaldada/hack-winrar

WinRar is a very widely known software for windows. Previous version of WinRaR was a vulnerability which has been patched in Feb-2019. Most of the…

exploitationpayload-generationpenetration-testing+3
17 years ago
CVE-2021-43224-POC preview

CVE-2021-43224-POC

GitHubkalendsi/cve-2021-43224-poc

Windows Common Log File System Driver POC

binary-exploitationexploitationvulnerability-analysis
944 years ago
CVE-2025-29824-CLFS-Local-privilege-escalation preview

CVE-2025-29824-CLFS-Local-privilege-escalation

GitHubzmkeh/cve-2025-29824-clfs-local-privilege-escalation

Local privilege escalation exploit for CVE-2025-29824 targeting the Windows Common Log File System (CLFS) driver, providing proof-of-concept code for…

binary-exploitationexploitationexploit-frameworks+2
211 months ago
CVE-2023-26469-Jorani preview

CVE-2023-26469-Jorani

GitHubkairo-one/cve-2023-26469-jorani

Proof-of-concept exploit for CVE-2023-26469 targeting Jorani 1.0.0. Combines path traversal and log injection to achieve remote code execution with…

educationexploitationpenetration-testing+3
110 months ago
Previous12…100Next