Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
181 results
ios_triage preview

ios_triage

GitHubrealitynet/ios_triage

Bash script to extract data from a "chekcra1ned" iOS device

digital-forensicsforensicsios-security+1
1676 years ago
maldrolyzer preview

maldrolyzer

GitHubmaldroid/maldrolyzer

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

android-securitycommand-and-controlinformation-gathering+3
11411 years ago
noia preview

noia

GitHub0x742/noia

Web-based tool for browsing mobile application sandboxes, previewing SQLite databases and binary files, and downloading app data via Frida…

android-securitydynamic-analysis-sandboxingforensics+3
1285 years ago
exploits preview

exploits

GitHubrlarabee/exploits

C-language exploit code collection focused on vulnerability research, proof-of-concept development, and offensive security testing.

binary-exploitationexploitationvulnerability-analysis
968 years ago
sdproxy preview

sdproxy

GitHubcbuijs/sdproxy

DNS Proxy that is simple and fast with not so simple features. Focused on routed DNS forwarding, filtering and parental control.

anomaly-detectiondefensive-toolsdns-analysis+7
594 days ago
android_autorooter preview

android_autorooter

GitHubscs-labrat/android_autorooter

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely

android-securitydata-exfiltrationexploitation+5
782 years ago
blue-pigeon preview

blue-pigeon

GitHubbluepigeonproject/blue-pigeon

Blue Pigeon is a Bluetooth-based data exfiltration and proxy tool to enable communication between a remote Command and Control (C2) server and a…

android-securitybluetooth-securitycommand-and-control+4
575 years ago
EvilDroid preview

EvilDroid

GitHubsridhar-sec/evildroid

EvilDroid automates the exploitation of CVE-2024-0044, installing malicious payloads on a target device and extracting sensitive data. It features…

android-securityeducationexploitation+3
311 year ago
frida-il2cpp-datacollector preview

frida-il2cpp-datacollector

GitHubgmh5225/frida-il2cpp-datacollector

Frida-based tool that ports Cheat Engine's MonoDataCollector to Android and iOS, enabling runtime Mono/IL2CPP data collection and memory inspection…

android-securitybinary-analysisdebuggers+5
133 years ago
android-cve-2010-4804 preview

android-cve-2010-4804

GitHubthomascannon/android-cve-2010-4804

Android Data Stealing Vulnerability

android-securitydata-exfiltrationexploitation+2
812 years ago
tricorne preview

tricorne

GitHubcrussella0129/tricorne

a Fedora remix focused on pentesting and purple hat tooling

defensive-toolsexploitationforensics+8
55 months ago
zygote-CVE-2024-31317 preview

zygote-CVE-2024-31317

GitHubvnescape/zygote-cve-2024-31317

This is a toolkit that uses CVE-2024-31317 to extract private app data via ADB or spawn a shell with an app's UID.

android-securitydata-exfiltrationexploitation+3
44 months ago
CVE-2014-4481 preview

CVE-2014-4481

GitHubfeliam/cve-2014-4481

Apple CoreGraphics framework fails to validate the input when parsing CCITT group 3 encoded data resulting in a heap overflow condition. A small heap…

binary-exploitationexploitationios-security+3
511 years ago
AndroidAuto preview

AndroidAuto

GitHubmretallack/androidauto

Open-source Android Auto phone-side implementation with protocol reverse engineering, TLS mutual authentication, H.264 video projection, touch input…

android-securitybluetooth-securityeducation+4
24 months ago
Rootsmart-v2.0 preview

Rootsmart-v2.0

GitHubcrackercat/rootsmart-v2.0

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration

android-securitycommand-and-controldata-exfiltration+8
24 years ago
CVE-2019-0539 preview

CVE-2019-0539

GitHub0x43434343/cve-2019-0539

Focused exploit for CVE-2019-0539, a ChakraCore type confusion vulnerability, demonstrating arbitrary read/write access in the JavaScript engine.

exploitationvulnerability-analysisweb-application-exploitation
47 years ago
CVE-2026-53587 preview

CVE-2026-53587

GitHubalixploit22/cve-2026-53587

Python proof-of-concept for CVE-2026-53587, providing a focused exploit path to reproduce the vulnerability and support validation and defensive…

exploitationpenetration-testingvulnerability-analysis
1 month ago
phonepe-sensitive-data-exposure-cve-2025-5154 preview

phonepe-sensitive-data-exposure-cve-2025-5154

GitHubhonestcorrupt/phonepe-sensitive-data-exposure-cve-2025-5154

CVE-2025-5154: Proof-of-concept for unencrypted local storage of authentication tokens, PII, and KYC data in the PhonePe Android app, enabling…

android-securityauthenticationdata-exfiltration+6
11 year ago
Previous123…11Next