Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
427 results
MsfMania preview

MsfMania

GitHublepotekil/msfmania

Python AV Evasion Tools

binary-analysiseducationencryption-decryption-tools+9
51711 months ago
Bypass_AV preview

Bypass_AV

GitHubhkl1x/bypass_av

Evades AV and sandboxes on Windows using anti-sandbox checks, ntdll unhooking, dynamic API resolution, and multi-layer shellcode obfuscation…

ids-ips-evasionpayload-developmentpayload-generation+2
10811 months ago
PoC-for-CVE-2025-9074 preview

PoC-for-CVE-2025-9074

GitHuboilseller2001/poc-for-cve-2025-9074

Proof-of-Concept exploit for CVE-2025-9074 - Unauthenticated Docker API exposure allowing arbitrary container creation and host filesystem access.

container-escapeexploitationpayload-development+3
411 months ago
Lenovo-CVE-2025-8061 preview

Lenovo-CVE-2025-8061

GitHubsymeonp/lenovo-cve-2025-8061

PoC for popping a system shell against the LnvMSRIO.sys driver

binary-exploitationexploitationpayload-development+3
12411 months ago
CVE-2007-2447 preview

CVE-2007-2447

GitHubnika0x38/cve-2007-2447

A standalone Rust implementation of the CVE-2007-2447 exploit targeting Samba smbd 3.0.20-Debian.

command-and-controlexploitationpayload-development+3
1 year ago
CVE-2023-21768-DSE-Bypass preview

CVE-2023-21768-DSE-Bypass

GitHubradoi-teodor/cve-2023-21768-dse-bypass

Windows kernel exploit for CVE-2023-21768 that bypasses Driver Signature Enforcement (DSE) to load unsigned drivers, enabling local privilege…

binary-exploitationexploitationpayload-development+2
1 year ago
best-CVE-2025-8088 preview

best-CVE-2025-8088

GitHubpentestfunctions/best-cve-2025-8088

Winrar CVE exploitation before 7.13 using multiple ADS streams on a single file (Custom PDF implementation)

binary-exploitationexploitationpayload-development+4
101 year ago
DllShimmer preview

DllShimmer

GitHubprint3m/dllshimmer

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

adversarial-attackpayload-developmentpenetration-testing+2
7511 year ago
WinRAR-CVE-2025-8088-Path-Traversal-PoC preview

WinRAR-CVE-2025-8088-Path-Traversal-PoC

GitHubpexlexity/winrar-cve-2025-8088-path-traversal-poc

Proof-of-Concept for CVE-2025-8088 vulnerability in WinRAR (path traversal via ADS)

binary-exploitationexploitationmalware-analysis+3
21 year ago
revshellgen preview

revshellgen

GitHubt0thkr1s/revshellgen

Reverse shell generator written in Python 3.

command-and-controlexploitationpayload-development+4
5661 year ago
CVE-2025-24813 preview

CVE-2025-24813

GitHubcyglegit/cve-2025-24813

Automated exploitation toolkit for CVE-2025-24813 targeting Apache Tomcat insecure session deserialization. Features multi-target scanning, gadget…

exploitationpayload-developmentpenetration-testing+3
11 year ago
CVE-2025-29824-Exploit preview

CVE-2025-29824-Exploit

GitHubafanpan/cve-2025-29824-exploit

Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

binary-exploitationexploitationmalware-analysis+6
211 year ago
BloodfangC2 preview

BloodfangC2

GitHubzarkones/bloodfangc2

Modern PIC implant for Windows (64 & 32 bit)

adversarial-attackcommand-and-controlpayload-development+4
1041 year ago
CVE-2019-13272 preview

CVE-2019-13272

GitHubjosemlwdf/cve-2019-13272

This is a Python 3 version of this exploit. Hope it works!!!

binary-exploitationexploitationpayload-development+3
31 year ago
WPTaskScheduler_CVE-2024-49039 preview

WPTaskScheduler_CVE-2024-49039

GitHubje5442804/wptaskscheduler_cve-2024-49039

WPTaskScheduler RPC Persistence & CVE-2024-49039 via Task Scheduler

exploitationpayload-developmentpersistence-mechanisms+4
1481 year ago
collateral-damage preview

collateral-damage

GitHubexploits-forsale/collateral-damage

Kernel exploit for Xbox SystemOS using CVE-2024-30088

binary-exploitationexploitationhardware-iot-security+3
5281 year ago
langflow-rce-exploit preview

langflow-rce-exploit

GitHub0-d3y/langflow-rce-exploit

Remote Code Execution Exploit for Langflow (CVE-2025-3248) - [ By S4Tech ]

command-and-controlexploitationpayload-development+8
71 year ago
CcmMessagingBackdoor preview

CcmMessagingBackdoor

GitHubsynacktiv/ccmmessagingbackdoor

Proof-of-concept backdoor for SCCM Management Point using rogue COM service for persistent remote command execution as SYSTEM.

command-and-controlpayload-developmentpersistence-mechanisms+3
191 year ago
Previous1…789…24Next