Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Labs & Practice | Kitploit
Categories

Labs & Practice

Training labs, hands-on environments, and reproducible challenges for authorized, safe cybersecurity practice.

Kitploit recommended

Top tools

10 selected
vulhub preview#1

vulhub

GitHubvulhub/vulhub
21.1k1 month ago
juice-shop preview#2

juice-shop

GitHubjuice-shop/juice-shop
13.6k29 days ago
WebGoat preview#3

WebGoat

GitHubwebgoat/webgoat
9.3k3 days ago
DVWA preview#4

DVWA

GitHubdigininja/dvwa
13.5k2 days ago
crAPI preview#5

crAPI

GitHubowasp/crapi
1.6k14h 26m ago
NodeGoat preview#6

NodeGoat

GitHubowasp/nodegoat
2.1k3 years ago
SecurityShepherd preview#7

SecurityShepherd

GitHubowasp/securityshepherd
1.5k6 days ago
wrongsecrets preview#8

wrongsecrets

GitHubowasp/wrongsecrets
1.5k13h 54m ago
metasploitable3 preview#9

metasploitable3

GitHubrapid7/metasploitable3
5.7k1 year ago
GOAD preview#10

GOAD

GitHuborange-cyberdefense/goad
8.1k6 months ago
NewestRelevanceMost popularRecently updated
2399 results
CVE-2023-33733 preview

CVE-2023-33733

GitHubbuiduchoang24/cve-2023-33733

This project aims at re-analyzing and PoC about CVE-2023-33733. Reportlab up to v3.6.12 allows attackers to execute arbitrary code via supplying a…

payload-generationvulnerability-analysisexploitation+3
12 years ago
SVPT_CW_2 preview

SVPT_CW_2

GitHubkartheekkandalam99/svpt_cw_2

CVE-2024-21413 Setup for CW

password-crackingvulnerability-analysisexploitation+3
2 years ago
exploit-CVE-2016-9920 preview

exploit-CVE-2016-9920

GitHubt0kx/exploit-cve-2016-9920

Roundcube 1.0.0 <= 1.2.2 Remote Code Execution exploit and vulnerable container

container-securityvulnerability-analysisexploitation+3
482 years ago
CVE-2021-4034 preview

CVE-2021-4034

GitHubasg-castle/cve-2021-4034

Security documentation and lab companion for the polkit pkexec local privilege escalation, with a TryHackMe room for hands-on exploitation practice.

privilege-escalationvulnerability-analysisexploitation+2
2 years ago
xzwhy preview

xzwhy

GitHubneuralinhibitor/xzwhy

XZ Utils CVE-2024-3094 POC for Kubernetes

container-securityvulnerability-analysisexploitation+4
52 years ago
CVE-2023-50164Analysis- preview

CVE-2023-50164Analysis-

GitHubasfandalimemon25/cve-2023-50164analysis-

CVE-2023-50164 An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a…

vulnerability-analysisexploitationweb-application-exploitation+3
2 years ago
CVE-2023-4357-Exploitation preview

CVE-2023-4357-Exploitation

GitHublon5948/cve-2023-4357-exploitation

Reproduction environment for CVE-2023-4357 Chrome XXE vulnerability with SVG-based file access bypass exploit and step-by-step setup instructions.

vulnerability-analysisexploitationweb-application-exploitation+2
42 years ago
CVE-2024-3116_RCE_in_pgadmin_8.4 preview

CVE-2024-3116_RCE_in_pgadmin_8.4

GitHubtechieneurons/cve-2024-3116_rce_in_pgadmin_8.4

Making a lab and testing the CVE-2024-3116, a Remote Code Execution in pgadmin <=8.4

vulnerability-analysisexploitationweb-application-exploitation+3
132 years ago
ludus_xz_backdoor preview

ludus_xz_backdoor

GitHubbadsectorlabs/ludus_xz_backdoor

An Ansible Role that installs the xz backdoor (CVE-2024-3094) on a Debian host and optionally installs the xzbot tool.

vulnerability-analysisexploitationpenetration-testing+2
62 years ago
CVE-2021-38297-Go-wasm-Replication preview

CVE-2021-38297-Go-wasm-Replication

GitHubparas98/cve-2021-38297-go-wasm-replication

Educational proof-of-concept replicating CVE-2021-38297, a Go WASM buffer overflow leading to stored XSS. Includes vulnerable app setup, exploit…

vulnerability-analysisexploitationweb-application-exploitation+6
2 years ago
CVE-2019-14271_Exploit preview

CVE-2019-14271_Exploit

GitHublouisliunova/cve-2019-14271_exploit

A convenient and time-saving auto script of building environment and exploit it.

vulnerability-analysisexploitationeducation+2
12 years ago
CVE-2024-3094-backdoor-env-container preview

CVE-2024-3094-backdoor-env-container

GitHubmagpieryl/cve-2024-3094-backdoor-env-container

This is a container environment running CVE-2024-3094 sshd backdoor instance, working with https://github.com/amlweems/xzbot project. IT IS NOT…

container-securityvulnerability-analysisexploitation+3
2 years ago
Vulnerability-Research-CVE-2017-0144 preview

Vulnerability-Research-CVE-2017-0144

GitHubducanh2oo3/vulnerability-research-cve-2017-0144

LAB: TẤN CÔNG HỆ ĐIỀU HÀNH WINDOWS DỰA VÀO LỖ HỔNG GIAO THỨC SMB.

exploit-frameworksvulnerability-analysisexploitation+3
2 years ago
Honeypot_Smart_Infrastructure preview

Honeypot_Smart_Infrastructure

GitHubadarkst/honeypot_smart_infrastructure

This Repository Includes Kubernetes manifest files for configuration of Honeypot system and Falco IDS in K8s environment. There are also Demo…

container-securityvulnerability-analysisweb-application-exploitation+4
12 years ago
Linux-Kernel-Exploit-LAB preview

Linux-Kernel-Exploit-LAB

GitHubsakilahamed/linux-kernel-exploit-lab

More specific : Dirty COW (CVE-2016-5195)

privilege-escalationvulnerability-analysisexploitation+3
2 years ago
DVIA-v2 preview

DVIA-v2

GitHubprateek147/dvia-v2

Damn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security…

ios-securitymobile-app-pentestingpenetration-testing+3
1.1k2 years ago
wvctf preview

wvctf

GitHubsyn-4ck/wvctf

WVCTF or WebVulnCTF is a gamified web platform which promotes training in pentesting and web application development security in an entertaining way.…

vulnerability-analysisweb-securityctf+3
12 years ago
Exploit-CVE-2023-22518 preview

Exploit-CVE-2023-22518

GitHublilly-dox/exploit-cve-2023-22518

Exploit for CVE-2023-22518 in Atlassian Confluence. Provides a detailed walkthrough of the vulnerability, including environment setup, root cause…

vulnerability-analysisexploitationweb-application-exploitation+3
12 years ago
Previous1…979899100Next