Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
62 results
libextractor-privesc preview

libextractor-privesc

GitHubhaitam-lazaar/libextractor-privesc

Proof-of-concept for CVE-2026-100310, a local privilege escalation in GNU libextractor ≤1.15 via the LIBEXTRACTOR_PREFIX untrusted search path, with…

binary-exploitationeducationexploitation+3
1 day ago
rootkit preview

rootkit

GitHubnurupo/rootkit

Linux kernel module that grants root privileges, hides processes/files, and protects itself from unloading, designed for educational purposes on…

persistence-mechanismspost-exploitationprivilege-escalation
8262 years ago
krackattacks-scripts preview

krackattacks-scripts

GitHubvanhoefm/krackattacks-scripts

Scripts to verify WPA2 clients and APs for KRACK key reinstallation vulnerabilities using modified hostapd and monitor-mode frame replay.

penetration-testingvulnerability-analysiswi-fi-auditing+1
3.5k1 year ago
hostapd-mana preview

hostapd-mana

GitHubsensepost/hostapd-mana

SensePost's modified hostapd for wifi attacks.

penetration-testingred-teamingwi-fi-auditing+1
63416 days ago
wifispammer preview

wifispammer

GitHubcappricio-securities/wifispammer

A nodemcu powered wifi spammer

penetration-testingwi-fi-auditingwireless-security
1 year ago
rickmote preview

rickmote

GitHubbishopfox/rickmote

The Rickmote Controller: Hijack TVs using Google Chromecast

hardware-iot-securityred-teamingwi-fi-auditing+1
2266 years ago
wpa_supplicant_8_CVE-2021-0326. preview

wpa_supplicant_8_CVE-2021-0326.

GitHubnanopathi/wpa_supplicant_8_cve-2021-0326.

Implementation of wpa_supplicant and hostapd with documented CVE-2021-0326 vulnerability, intended for security research and vulnerability analysis.

vulnerability-analysiswi-fi-auditingwireless-security
4 years ago
hostap preview

hostap

GitHubjmalinen/hostap

Clone of w1.fi hostap.git - NOTE: This is not the main development location and pull requests for this repository are ignored. See the upstream…

authenticationwi-fi-auditingwireless-security
166 years ago
Snoopy preview

Snoopy

GitHubsensepost/snoopy

Snoopy: A distributed tracking and data interception framework

malware-analysisnetwork-mappingosint+5
61213 years ago
linset preview

linset

GitHubvk496/linset

Evil Twin Attack Bash script

educationphishingred-teaming+3
57712 years ago
evil-winrar preview

evil-winrar

GitHubyoumulijiang/evil-winrar

evil-winrar,CVE-2023-38831漏洞利用和社会工程学攻击框架 (evil-winrar, CVE-2023-38831 Vulnerability Exploitation and Social Engineering Attack Framework)

exploitationpayload-generationphishing-tools+3
112 years ago
wp-file-manager-exploit-CVE-2020-25213-with-Zerologon preview

wp-file-manager-exploit-CVE-2020-25213-with-Zerologon

GitHubkienhosd/wp-file-manager-exploit-cve-2020-25213-with-zerologon

Exploit Windows server 2019 vulnerable to Zerologon with Garble, Chisel, wp-file-manager vulnerability (have video demo)

educationexploitationlabs-practice+3
4 months ago
CVE-2023-38831-winrar-exploit preview

CVE-2023-38831-winrar-exploit

GitHubfa1c0n35/cve-2023-38831-winrar-exploit

Python-based exploit generator for CVE-2023-38831 WinRAR vulnerability. Creates malicious RAR archives with bait files (PDF, images) and payload…

exploitationpayload-generationpenetration-testing+2
3 years ago
evil-rmi-server preview

evil-rmi-server

GitHubhydragyrum/evil-rmi-server

An evil RMI server that can launch an arbitrary command. May be useful for CVE-2021-44228

exploitationpayload-generationpenetration-testing+2
124 years ago
so-crates preview

so-crates

GitHubdougburks/so-crates

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!

container-securitydigital-forensicseducation+8
6085 days ago
CVE-2023-38831 preview

CVE-2023-38831

GitHubngothienan/cve-2023-38831

Python-based exploit generator for CVE-2023-38831 (WinRAR remote code execution). Creates malicious RAR archives with bait files and payload scripts…

exploitationpayload-generationpenetration-testing+2
3 years ago
CVE-2019-5010 preview

CVE-2019-5010

GitHubjonathanwilbur/cve-2019-5010

CVE-2019-5010 Exploit PoC - Python Denial of Service via Malformed X.509v3 Extension

cryptographyexploitationpenetration-testing+1
3 years ago
CVE-2019-0887 preview

CVE-2019-0887

GitHubt43wiu6/cve-2019-0887

exp for CVE-2019-0887

binary-exploitationexploitationlateral-movement+4
195 years ago
Previous1234Next