Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Post-Exploitation

Tools for maintaining access, exploring, and expanding control within compromised systems and networks.

NewestRelevanceMost popularRecently updated
5343 results
CVE-2026-68138 preview

CVE-2026-68138

GitHubaramosf/cve-2026-68138

Proof-of-concept local privilege escalation exploit for a Linux qdisc rate-table race condition, using BPF heap grooming and a pipe leak to gain root.

privilege-escalationvulnerability-analysisexploitation+1
28
8 days ago
CVE-2026-44402 preview

CVE-2026-44402

GitHubvirgula0/cve-2026-44402

Pre-Authenticated Full Root Remote Command Execution in Voltronic Power SNMP Web Pro 1.1

embedded-systems-securityiot-securityexploitation+5
19 days ago
CVE-2024-52806-PoC preview

CVE-2024-52806-PoC

GitHubheartlesseorg-dot/cve-2024-52806-poc
vulnerability-analysisexploitationweb-application-exploitation+2
9 days ago
CVE-2026-67846-BOOM-NBDTLB preview

CVE-2026-67846-BOOM-NBDTLB

GitHubduan528/cve-2026-67846-boom-nbdtlb

Public vulnerability advisory and supporting evidence for CVE-2026-67846 affecting the BOOM v3/v4 NBDTLB implementation.

privilege-escalationvulnerability-analysishardware-security
9 days ago
ghostsplice preview

ghostsplice

GitHubasset-group/ghostsplice

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

data-exfiltrationsocial-engineeringred-teaming+3
69 days ago
CVE-2025-10951 preview

CVE-2025-10951

GitHub1amunvalid/cve-2025-10951
vulnerability-scannersvulnerability-analysisexploitation+3
9 days ago
CVE-2025-5781 preview

CVE-2025-5781

GitHubjasonbernier/cve-2025-5781

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

persistence-mechanismsexploitationweb-application-exploitation+3
9 days ago
CVE-2026-17106 preview

CVE-2026-17106

GitHubhackspeak/cve-2026-17106

PoC for Docker `docker cp` arbitrary file write, exploiting symlink and tar extraction flaws to overwrite host binaries or launch agents for…

privilege-escalationcontainer-securityvulnerability-analysis+3
110 days ago
cve-2026-62737-lab preview

cve-2026-62737-lab

GitHubdavidcarliez/cve-2026-62737-lab
privilege-escalationexploitationdebuggers+2
10 days ago
ghostlock-cve-2026-43499-4.19-k40 preview

ghostlock-cve-2026-43499-4.19-k40

GitHubyijiacloud/ghostlock-cve-2026-43499-4.19-k40

CVE-2026-43499 (GhostLock) rtmutex remove_waiter() UAF local-root PoC adapted for Qualcomm Android 4.19 kernels (Redmi K40 / Snapdragon 870 class),…

android-securityprivilege-escalationexploitation+4
19 days ago
CVE-2026-66804-CrossDevice-LPE preview

CVE-2026-66804-CrossDevice-LPE

GitHubdavidcarliez/cve-2026-66804-crossdevice-lpe
privilege-escalationvulnerability-analysisexploitation+1
119 days ago
WP2Shell preview

WP2Shell

GitHubg0d150ne/wp2shell

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

penetration-testing-frameworksreconnaissancevulnerability-scanners+7
10 days ago
HTB-TwoMillion-machine preview

HTB-TwoMillion-machine

GitHubabedallarawashdeh/htb-twomillion-machine

Hack The Box TwoMillion machine writeup — JWT/invite-code bypass, IDOR, command injection, and CVE-2023-0386 privilege escalation.

privilege-escalationweb-application-exploitationapi-security-testing+4
10 days ago
CVE-2025-7771 preview

CVE-2025-7771

GitHubenessakircolak/cve-2025-7771

ThrottleStop.sys Arbitrary Physical Memory R/W

privilege-escalationvulnerability-analysisexploitation+3
210 days ago
ghostlock-x200-root preview

ghostlock-x200-root

GitHubxiaohj233/ghostlock-x200-root

GhostLock-X200 v1.0 - temporary root toolchain for vivo X200 (PD2415 / b57 kernel) based on CVE-2026-43499. For authorized security research only.

android-securityprivilege-escalationexploitation+5
13 days ago
XSS2Shell preview

XSS2Shell

GitHubg0d150ne/xss2shell

Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

persistence-mechanismsexploitationweb-application-exploitation+6
10 days ago
lenovo-a1000g-mt8317-A412_01_09_130907-kernel-3.4.0-root-cve-2016-5195 preview

lenovo-a1000g-mt8317-A412_01_09_130907-kernel-3.4.0-root-cve-2016-5195

GitHubvoidgguy/lenovo-a1000g-mt8317-a412_01_09_130907-kernel-3.4.0-root-cve-2016-5195

[AI-assisted] Root method for Lenovo IdeaTab A1000G (MT8317, kernel 3.4.0, Android 4.1) via CVE-2016-5195 (Dirty COW)

android-securityprivilege-escalationpersistence-mechanisms+4
1 month ago
GhostLock-OPPO-PCKM00 preview

GhostLock-OPPO-PCKM00

GitHubyijiacloud/ghostlock-oppo-pckm00

CVE-2026-43499 GhostLock futex UAF LPE PoC for OPPO PCKM00 (SM6150) / Linux 4.14.180

android-securityprivilege-escalationpersistence-mechanisms+6
110 days ago
Previous1…567…297Next