Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
421 results
CVE_2019_2215 preview

CVE_2019_2215

GitHub0xbinder/cve_2019_2215

Proof-of-concept LPE exploit for Android Binder UAF that uses iovec spraying and addr_limit overwrite to achieve arbitrary kernel read/write.

android-securitybinary-exploitationeducation+5
1
1 day ago
ghostlock-cve-2026-43499 preview

ghostlock-cve-2026-43499

GitHubgitchw/ghostlock-cve-2026-43499

CVE-2026-43499 (GhostLock) — Linux kernel futex PI rt_mutex UAF ARM32 privilege escalation research targeting Huawei Watch 4 Pro (kernel 5.4.210)

binary-exploitationembedded-systems-securityexploitation+5
2 days ago
CVE-2025-49132 preview

CVE-2025-49132

GitHubaleewyy/cve-2025-49132

Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

database-securityexploitationinformation-gathering+3
2 months ago
Revenant preview

Revenant

GitHubdefineid/revenant

CVE-2026-74943 · Use after free in Firefox RasterImage (sec-high)

binary-analysisbinary-exploitationcode-analysis+3
3 days ago
jit preview

jit

GitHubjitpass/jit

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…

authentication-authorizationconfiguration-auditingdevsecops+3
145 days ago
CVE-2026-73678-PoC preview

CVE-2026-73678-PoC

GitHubboreas37/cve-2026-73678-poc

CVE-2026-73678 — MindsDB Minds Platform unauthenticated RCE via scratchpad exec (CVSS 10.0). Verified end-to-end with real LLM

ai-securityexploitationvulnerability-analysis+1
14 days ago
xss2shell-check preview

xss2shell-check

GitHubsanaullahamanullah/xss2shell-check

Non-destructive detector for CVE-2026-64638 (XSS2Shell) — WordPress pre-auth XSS reflection primitive

defensive-toolsinformation-gatheringpenetration-testing+4
4 days ago
GhostLock preview

GhostLock

GitHubwzhdgithub/ghostlock

CVE-2026-43499 futex PI stack UAF ???????? - Android GKI 6.1~6.12 ??????? pselect() + futex PI ????????????,??? root ??? SELinux??? OPPO Find…

android-securitybinary-exploitationexploitation+3
6 days ago
CVE-2026-25938-FUXA-Unauthenticated-RCE preview

CVE-2026-25938-FUXA-Unauthenticated-RCE

GitHubjudgedbykira/cve-2026-25938-fuxa-unauthenticated-rce

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

exploitationiot-securitypayload-development+6
17 days ago
CVE-2026-68398 preview

CVE-2026-68398

GitHubaramosf/cve-2026-68398

CVE-2026-68398 Ubuntu PPPoL2TP use-after-free local privilege escalation

binary-exploitationexploitationprivilege-escalation
108 days ago
briefr preview

briefr

GitHubsoldier0x0/briefr

Open Vulnerability Intelligence platform, aggregated intel in one dashboard, with correlation and IOC lookups, completely self hosted. All resources…

defensive-toolsioc-managementthreat-feeds-aggregators+2
11 day ago
bad_garbage preview

bad_garbage

GitHubsgkdev/bad_garbage

CVE-2026-53361 AF_UNIX GC vs MSG_PEEK use-after-free container escape

binary-exploitationcontainer-escapecontainer-security+2
229 days ago
project_bias preview

project_bias

GitHubeliavila10/project_bias

High-performance, bias-free cryptographic engine in Ada/SPARK leveraging native OS entropy pools.

cryptographyencryption-decryption-toolsutilities-frameworks
213 days ago
CVE-2026-2764-but-with-wasm preview

CVE-2026-2764-but-with-wasm

GitHubsneakynachos/cve-2026-2764-but-with-wasm

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

binary-exploitationexploitationpayload-development+3
19 days ago
GhostLock-OPPO-PCKM00 preview

GhostLock-OPPO-PCKM00

GitHubyijiacloud/ghostlock-oppo-pckm00

CVE-2026-43499 GhostLock futex UAF LPE PoC for OPPO PCKM00 (SM6150) / Linux 4.14.180

android-securitybinary-exploitationexploitation+6
19 days ago
sctphantom preview

sctphantom

GitHubsuominen/sctphantom

Tracking SCTPhantom (CVE-2026-64564), the Linux kernel SCTP ASCONF transport use-after-free

curated-resourcesthreat-intelligencevulnerability-analysis
13 days ago
honda preview

honda

GitLabnu11secur1ty/0
binary-exploitationexploitationpayload-development+3
2 months ago
redact preview

redact

GitLabphpboyscout/go/redact

Strip credential-like content from free-form strings before they reach logs or telemetry. Part of the phpboyscout Go toolkit. ·…

defensive-toolslog-analysisprivacy+1
6 days ago
Previous12…24Next