Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
90 results
covert-control preview

covert-control

GitHubricardojoserf/covert-control

Google Drive, OneDrive and Youtube as covert-channels - Control systems remotely by uploading files to Google Drive, OneDrive, Youtube or Telegram

command-and-controldata-exfiltrationencryption-decryption-tools+2
72
4 years ago
submonitor preview

submonitor

GitHubxpl0ited1/submonitor

Subdomain monitor with reporting capabilities to Slack, Discord and Telegram

dns-subdomain-enumerationinformation-gatheringosint+2
143 years ago
CVE-2026-41940 preview

CVE-2026-41940

GitHubdennisec/cve-2026-41940

Exploit script for CVE-2026-41940, an authentication bypass in cPanel/WHM using CRLF injection to gain admin access and change root password, with…

authentication-authorizationexploitationpenetration-testing+3
4 months ago
CVE-2024-54916 preview

CVE-2024-54916

GitHubsahalll/cve-2024-54916

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

android-securityauthenticationbinary-analysis+4
1 year ago
tgspyder preview

tgspyder

GitHubdarksight-analytics/tgspyder

CLI tool for structured Telegram OSINT data collection. Scrapes members, messages, invite links, and user metadata from public/private groups,…

crawlerdata-exfiltrationeducation+4
3599 months ago
lazywarden preview

lazywarden

GitHubquerylab/lazywarden

Automated Bitwarden vault backup tool with AES-256 encryption, Argon2 key derivation, multi-cloud upload support, and real-time notifications via…

cloud-securityencryption-decryption-tools
8281 year ago
OpenClaw_Termux preview

OpenClaw_Termux

GitHubandroidmalware/openclaw_termux

How to Install OpenClaw on an Android Phone and Control It via WhatsApp

android-securityeducationinformation-gathering+4
3237 months ago
CANalyse preview

CANalyse

GitHubkartheeklade/canalyse

A vehicle network analysis and attack tool.

exploitationhardware-hackingremote-access-tool
1205 years ago
Phoenix-Framework preview

Phoenix-Framework

GitHubxm0kht4r/phoenix-framework

Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.

command-and-controldata-exfiltrationpayload-development+5
714 months ago
PowerGram preview

PowerGram

GitHubjoelgmsec/powergram

Multiplatform Telegram Bot in pure PowerShell

scripting-automationutilities-frameworks
553 years ago
Samuraizer preview

Samuraizer

GitHubzomry1/samuraizer

NotebookLM on steroids — purpose-built for security researchers.

crawlercurated-resourceseducation+5
295 months ago
CVE-2019-15514 preview

CVE-2019-15514

GitHubbibi1959/cve-2019-15514

telegram bug that discloses user's hidden phone number (still unpatched) (exploit included)

data-exfiltrationexploitationinformation-gathering+3
254 years ago
Pegasus-Gram preview

Pegasus-Gram

GitHubsobri3195/pegasus-gram

Python-based keylogger and surveillance tool with Telegram C2, capturing keystrokes, screenshots, webcam, audio, clipboard, and system activity for…

command-and-controldata-exfiltrationinformation-gathering+2
131 year ago
PoC-for-CVE-2024-7014-Exploit preview

PoC-for-CVE-2024-7014-Exploit

GitHubabsholi7ly/poc-for-cve-2024-7014-exploit

Proof of Concept (PoC) for CVE-2024-7014 (EvilVideo) Exploit

android-securityexploitationmobile-security+3
121 year ago
CVE-2024-9821 preview

CVE-2024-9821

GitHubrandomrobbiebf/cve-2024-9821

Bot for Telegram on WooCommerce <= 1.2.4 - Authenticated (Subscriber+) Telegram Bot Token Disclosure to Authentication Bypass

authentication-authorizationexploitationinformation-gathering+3
11 year ago
PersonalStuff preview

PersonalStuff

GitHubrootup/personalstuff

Research artifact repository containing fuzzing corpora (liblnk, tcpdump, vim), a Telegram privacy vulnerability report, and supporting scripts for…

curated-resourceseducationfuzzing+1
1745 months ago
pyradm preview

pyradm

GitHubakhomlyuk/pyradm

🔮 Python Remote administration tool via telegram

remote-access-tool
541 year ago
T3SF preview

T3SF

GitHubbase4security/t3sf

Technical Tabletop Exercises Simulation Framework

educationlabs-practice
492 years ago
Previous12345Next