Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
602 results
CVE-2026-15409 preview

CVE-2026-15409

GitHubch4120n/cve-2026-15409

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…

data-exfiltrationexploitationpenetration-testing+4
3
20 days ago
syncord preview

syncord

GitHubkrishsharma0413/syncord

Syncord is a CLI-based file synchronization and storage tool that uses Discord as an encrypted file storage.

cloud-securitydata-exfiltrationeducation+3
87 months ago
CVE-2026-24849 preview

CVE-2026-24849

GitHubdoany1/cve-2026-24849

Proof-of-concept exploit for CVE-2026-24849, an authenticated path-traversal / arbitrary file read in OpenEMR's Fax/SMS (EtherFax) module. Any…

data-exfiltrationexploitationinformation-gathering+3
2 months ago
BrainDamage preview
Archived

BrainDamage

GitHubmehulj94/braindamage

Remote administration service which uses twitter as a command and control server

command-and-controldata-exfiltrationinformation-gathering+5
7145 years ago
malicious-pdf preview

malicious-pdf

GitHubjonaslejon/malicious-pdf

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

data-exfiltrationeducationexploitation+6
4.1k2 months ago
DET preview

DET

GitHubsensepost/det

(extensible) Data Exfiltration Toolkit (DET)

data-exfiltrationdns-analysisencryption-decryption-tools+3
8208 years ago
PyExfil preview

PyExfil

GitHubytisf/pyexfil

PyExfil — Python 3 toolkit for researching and stress-testing data exfiltration techniques across network, physical, and steganographic channels. For…

data-exfiltrationnetwork-securityred-teaming+1
8082 months ago
DNSlivery preview

DNSlivery

GitHubno0be/dnslivery

Easy files and payloads delivery over DNS

command-and-controldata-exfiltrationdns-analysis+1
4267 months ago
flashsploit preview

flashsploit

GitHubthewhiteh4t/flashsploit

Exploitation Framework for ATtiny85 Based HID Attacks

data-exfiltrationexploit-frameworkshardware-hacking+3
3616 years ago
chlonium preview

chlonium

GitHubrxwx/chlonium

Clone and import Chromium cookies and passwords across browsers with offline DPAPI state key decryption, supporting AES-256 GCM encrypted databases…

data-exfiltrationencryption-decryption-toolsforensics+3
3163 years ago
Fireaway preview

Fireaway

GitHubtcstool/fireaway

Next Generation Firewall Audit and Bypass Tool

data-exfiltrationids-ips-evasionnetwork-security+1
2679 years ago
File-Injector preview

File-Injector

GitHubcarlospuenteg/file-injector

File Injector is a script that allows you to store any file in an image using steganography

cryptographydata-exfiltrationencryption-decryption-tools+1
4443 years ago
SliverKeylogger preview

SliverKeylogger

GitHubtrustedsec/sliverkeylogger
command-and-controldata-exfiltrationpayload-development+2
1712 years ago
peeko preview

peeko

GitHubb3rito/peeko

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

command-and-controldata-exfiltrationinformation-gathering+7
2331 year ago
libreoffice-remote-arbitrary-file-disclosure preview

libreoffice-remote-arbitrary-file-disclosure

GitHubjollheef/libreoffice-remote-arbitrary-file-disclosure

Proof of concept of LibreOffice remote arbitrary file disclosure vulnerability

data-exfiltrationexploitationinformation-gathering+1
968 years ago
c0ntextomy preview

c0ntextomy

GitHubc0ntextomy/c0ntextomy

CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same network to gain…

data-exfiltrationdebuggersexploitation+9
735 years ago
loki preview

loki

GitHubnccgroup/loki

LOKI (Limited Obstructive Keyboard Impersonator) is a RDP File Transfer Tool Using Keypresses

data-exfiltrationlateral-movementpenetration-testing+3
6310 years ago
cve-2016-1764 preview

cve-2016-1764

GitHubmoloch--/cve-2016-1764

Extraction of iMessage Data via XSS

data-exfiltrationexploitationinformation-gathering+4
5110 years ago
Previous123…34Next