Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
97 results
scalpel preview

scalpel

GitHubsleuthkit/scalpel

File carving and indexing tool for digital forensics, recovering files from disk images based on header/footer pattern matching, regular expressions,…

data-recoverydigital-forensicsdisk-forensics+1
687
2 years ago
honggfuzz preview

honggfuzz

GitHubgoogle/honggfuzz

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

dns-fuzzingdynamic-code-analysisfuzzing+1
3.4k2 months ago
sigma-cli preview

sigma-cli

GitHubsigmahq/sigma-cli

The Sigma command line interface based on pySigma

defensive-toolsintrusion-detectionlog-analysis+2
2071 month ago
Cronos preview

Cronos

GitHubidov31/cronos

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

cryptographyids-ips-evasionpayload-development+2
6272 years ago
SuperMem preview

SuperMem

GitHubcrowdstrike/supermem

A python script developed to process Windows memory images based on triage type.

digital-forensicsforensicsincident-response+2
2672 years ago
vbSparkle preview

vbSparkle

GitHubairbus-cert/vbsparkle

VBScript & VBA source-to-source deobfuscator with partial-evaluation

code-analysisdefensive-toolsmalware-analysis+2
832 years ago
LOAD preview

LOAD

GitHub0xballpoint/load

Lord Of Active Directory - automatic vulnerable active directory on AWS

cloud-infrastructure-securityeducationlabs-practice+3
1562 years ago
NTDLLReflection preview

NTDLLReflection

GitHubsaadahla/ntdllreflection

Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll ,…

adversarial-attackids-ips-evasionpost-exploitation+1
3073 years ago
Lockbit3.0-MpClient-Defender-PoC preview

Lockbit3.0-MpClient-Defender-PoC

GitHubsh0ckfr/lockbit3.0-mpclient-defender-poc

DLL hijacking proof-of-concept that weaponizes Microsoft Defender's MpClient.dll to load Cobalt Strike, demonstrating LockBit-style defense evasion.

adversarial-attackexploitationmalware-analysis+2
1754 years ago
RendezvousRAT preview

RendezvousRAT

GitHubrvrsh3ll/rendezvousrat

Minimal proof-of-concept remote access trojan in Go using libp2p rendezvous and pubsub for self-healing command-and-control over Linux and Windows…

command-and-controlpost-exploitationred-teaming+1
885 years ago
CallstackSpoofingPOC preview

CallstackSpoofingPOC

GitHubpard0p/callstackspoofingpoc

C++ self-Injecting dropper based on various EDR evasion techniques.

adversarial-attackids-ips-evasionpayload-development+1
4422 years ago
cloudflare-bypass-2026 preview

cloudflare-bypass-2026

GitHub1837620622/cloudflare-bypass-2026

Cloudflare Turnstile 绕过工具 | Cloudflare Bypass Tool based on SeleniumBase UC Mode | 支持 Mac/Windows/Linux

anti-botcaptcha-bypassfingerprint-spoofing+3
4211 month ago
mimikatz-detector-condrv preview

mimikatz-detector-condrv

GitHubnccgroup/mimikatz-detector-condrv

Kernel-mode filter driver that monitors ConDrv traffic to detect mimikatz execution in real-time, logging detection events via ETW for incident…

anomaly-detectiondefensive-toolsincident-response+3
423 years ago
Kernel-Arbitrary-Read-Vulnerability-Superfetch-EOP preview

Kernel-Arbitrary-Read-Vulnerability-Superfetch-EOP

GitHubspiralbl0ck/kernel-arbitrary-read-vulnerability-superfetch-eop

Windows kernel exploit leveraging an arbitrary read vulnerability combined with Superfetch to achieve elevation of privilege from low integrity.

binary-exploitationexploitationpenetration-testing+3
12 years ago
PacketPirate preview

PacketPirate

GitHubd0rb/packetpirate

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

api-security-testingeducationinformation-gathering+6
8 months ago
CVE-2020-17057 preview

CVE-2020-17057

GitHublsw29475/cve-2020-17057

Windows kernel exploit for CVE-2020-17057 using palette objects with dangling data pointers, targeting type isolation bypass for privilege escalation.

binary-exploitationexploitationmemory-forensics+1
25 years ago
cve-2024-49113-ldap_nightmare_reproduction preview

cve-2024-49113-ldap_nightmare_reproduction

GitHubrazureink/cve-2024-49113-ldap_nightmare_reproduction

Proof-of-concept exploit for CVE-2024-49113 (LDAP Nightmare), a critical heap-based buffer overflow in Windows LDAP client (wldap32.dll). Includes a…

binary-exploitationeducationexploitation+4
1 month ago
android-c-sharp-rat-server preview

android-c-sharp-rat-server

GitHubadvancedhacker101/android-c-sharp-rat-server

This is a plugin for the c# R.A.T server providing extension to android based phone systems

android-securitycommand-and-controldata-exfiltration+3
208 years ago
Previous123456Next