Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1540 results
Project-CVE-2026-75604 preview

Project-CVE-2026-75604

GitHube4zyy/project-cve-2026-75604

Python-based exploitation framework for CVE-2026-75604, enabling authorized pentesters to validate Next.js Windows cache traversal vulnerabilities…

exploitationpayload-developmentpenetration-testing+4
2
21 days ago
pocs preview

pocs

GitHubv12-security/pocs

poc it like it's hot

exploitationexploit-frameworkspayload-development+2
98522 days ago
CVE-2026-68820_Mass_Exploit preview

CVE-2026-68820_Mass_Exploit

GitHubmaxprog-svg/cve-2026-68820_mass_exploit

Automated local privilege escalation exploit for Windows 10/11 targeting AFD.sys use-after-free to gain SYSTEM, with PPL bypass and EDR evasion for…

exploitationexploit-frameworkslateral-movement+5
22 days ago
CVE-2020-1472 preview

CVE-2020-1472

GitHubckq7703/cve-2020-1472

Exploit for CVE-2020-1472 (Zerologon) that exploits a cryptographic flaw in Netlogon to escalate privileges to domain admin in Active Directory…

exploitationexploit-frameworkspenetration-testing+2
22 days ago
vulhunt preview

vulhunt

GitHubvulhunt-re/vulhunt

Vulnerability detection framework by Binarly's REsearch team

ai-assisted-reversingbinary-analysisfirmware-analysis+4
88323 days ago
CVE-2026-4692-trust-me-im-in-rdm preview

CVE-2026-4692-trust-me-im-in-rdm

GitHubsneakynachos/cve-2026-4692-trust-me-im-in-rdm

Proof-of-concept exploit for Firefox BrowsingContext authorization bypass (CVE-2026-4692), demonstrating forged IPC messages to set InRDMPane and…

exploitationexploit-frameworkspayload-development+4
123 days ago
Reconator preview

Reconator

GitHubgokulapap/reconator

Automated reconnaissance framework with 17+ modules for subdomain enumeration, directory brute-forcing, JS/link mining, WAF fingerprinting, and…

dns-subdomain-enumerationfuzzinginformation-gathering+6
44123 days ago
CVE-2026-74939-escape-the-mac-n-cheese-box preview

CVE-2026-74939-escape-the-mac-n-cheese-box

GitHubsneakynachos/cve-2026-74939-escape-the-mac-n-cheese-box

Firefox content-to-parent IPDL privilege escalation (N-day, bug 2054416): forged PDocumentChannel with RemoteTypeOverride -> privilegedabout process…

binary-exploitationexploitationexploit-frameworks+3
123 days ago
CVE-2025-48595-Exploit preview

CVE-2025-48595-Exploit

GitHubxiaobailovesstirring/cve-2025-48595-exploit

CVE-2025-48595 Android Framework Integer Overflow PoC - 优化版

android-securitybinary-exploitationexploitation+2
24 days ago
mythic_ornn preview

mythic_ornn

GitHubn0qword/mythic_ornn

LLM-driven generator for Mythic Agents, Payload-Type and C2 Profiles.

ai-securitycommand-and-controlexploit-frameworks+3
5224 days ago
phpMyAdmin-CVE-2020-5504-Exploit preview

phpMyAdmin-CVE-2020-5504-Exploit

GitHubcerberusmrxi/phpmyadmin-cve-2020-5504-exploit

Authorized SQL injection exploitation framework for CVE-2020-5504 in phpMyAdmin, featuring automated database enumeration, blind injection, proxy…

database-securityexploitationinformation-gathering+5
24 days ago
BlueToolkit preview

BlueToolkit

GitHubsgxgsx/bluetoolkit

Modular Bluetooth Classic (BR/EDR) vulnerability testing framework with reconnaissance, exploit modules for 43 public attacks/CVEs, and structured…

bluetooth-securitycurated-resourcesexploitation+5
73324 days ago
ghostdebug preview

ghostdebug

GitHubvollragm/ghostdebug

Debugger utilizing stealth hooks to hide from debugger detection

binary-analysisdebuggersdefensive-tools+1
2425 days ago
Ropper preview

Ropper

GitHubsashs/ropper

Display information about files in different file formats and find gadgets to build rop chains for different architectures (x86/x86_64, ARM/ARM64,…

binary-analysisbinary-exploitationctf+3
2.1k25 days ago
rekono preview

rekono

GitHubpablosnt/rekono

Offensive security platform that automates attack surface discovery and vulnerability management

exploit-frameworksosintpenetration-testing+4
60726 days ago
cai preview

cai

GitHubaliasrobotics/cai

Cybersecurity AI (CAI), the framework for AI Security

ai-securityctfeducation+8
9.8k26 days ago
CVE-2016-5195 preview

CVE-2016-5195

GitHubminime794/cve-2016-5195

Python exploit for CVE-2016-5195 (Dirty COW) enabling local privilege escalation on vulnerable Linux kernels.

binary-exploitationexploitationexploit-frameworks+2
26 days ago
CVE-2026-47883 preview

CVE-2026-47883

GitHubdaehyuh/cve-2026-47883

Minimal proof-of-concept for Spring Framework UrlHandlerFilter open redirect (CVE-2026-47883), demonstrating crafted double-slash requests produce…

exploitationvulnerability-analysisweb-application-exploitation+1
26 days ago
Previous1…678…86Next