Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
exploits — exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House | Kitploit
Tools/GitHubGitHub/hackerhouse-opensource/exploits
Embedded Systems SecurityPrivilege EscalationVulnerability AnalysisExploitationWeb Application ExploitationInformation GatheringFuzzingMobile SecurityCurated ResourcesBinary Exploitation
GitHub
469121247 months agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
hackerhouse-opensource/exploits

exploits

exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House

View RepositoryWebsite

Exploits

Exploits and proof-of-concept code from the team at Hacker House.

FilenameDescription
AirWatchMDMJailbreakBypass.txtBypass jailbreak detection on mobile device management AirWatch for IOS
adobe-psp.tgzAdobe CoolType SING Table "uniqueName" Stack Buffer Overflow PSP bypass (metasploit)
aix53l-libc.cAIX 5.3L libc locale environment handling local root exploit
aix53l-lquerypv.cAIX 5.3L /usr/sbin/lquerypv local root privilege escalation
amanda-amstar.txtAdvanced Maryland Automatic Network Disk Archiver local root privilege escalation exploit
amanda-backup.txtAdvanced Maryland Automatic Network Disk Archiver local root privilege escalation exploit
applejack.cPonyOS 3.0 & below tty ioctl() kernel local root exploit
asus_B1M_projector_root.pngASUS B1M projector remote root command injection (unpatchable)
BTCPE.txtBritish Telecom Huawei UART root access weakness
charybdis.tgzFirefox & IE exploits implant dropper for Windows & Linux
cisco-asa-sslbypass.pyCisco ASA 8.x & below VPN SSL module Clientless URL-list control bypass
cisco-XSS-wget-me.txtCisco IOS 11.x web interface XSS vulnerability
cmd_gpbypass.execmd.exe patched to run even when disabled via Group Policy
cpg15x-dirtraversal.txtCoppermine 1.5.44 & below directory traversal vulnerability
cve-2003-0001.pyCVE-2003-0001.py Etherleak information leak exploit, silently fixed in Cisco ASA PSIRT-0669464365
CVE-2012-4681.tgzOracle Java SE 7 Update 6 & below remote polymorphic exploit (evades PSP)
CVE-2014-0160.pyHeartbleed mass-scanning proof-of-concept tool
cve-2016-1531.shExim 4.84-3 local root exploit
cve-2019-10149.pyExim between 4.87 & 4.91 local root exploit
CVE-2020-0601.xdbXCA database of private keys for trusted CA exploit CVE-2020-0601
CVE-2020-3950.tgzEvilOSX trojan exploit plugin for CVE-2020-3950 VMware Fusion 11.5.2 & below local root
cve-2025-21204.zipIIS exploit files PoC for insecure "inetpub" configuration cve-2025-21204
d3_decimator.txtSedSystems D3 decimator multiple vulnerabilities allow for remote root
dllpack.tgzMS15-051 / MS15-010 exploits with reflective DLL loading support (hacked from public code)
drupal-CVE-2014-3660.pyDrupal XXE libxml2 Services exploit
dtappgather-poc.shdtappgather local root exploit proof-of-concept (EXTREMEPARR)
fluttershy.pyPonyOS 4.0 runtime linker local root exploit
FreeBSD-pftp-dirtraversal.txtPeters Anonymous FTP on FreeBSD directory traversal vulnerability
getlogin.cTru64 V5.1B & below getlogin() kernel information leak
gionight.pyGIO Linux embedded remote root exploit
gns3super-osx.shGNS-3 OS-X local root exploit
goodnight.cLinux kernel 2.6.37 & below denial-of-service exploit CVE-2010-4165
heartbleed-binstatic bin heartbleed exploit (fun trivia, Large Hadron Collider tested with this code)
heartbleed.cHeartbleed exploit using OpenSSL to encrypt the exploit for stealth
heartbleed-keyscan.pyRSA prime factorization exploit for use with heartbleed
hfirixwfcmd.shSGI IRIX <= 6.5.22 WebForce post-auth Remote Command Injection
hfsunsshdx.tgzSunSSH Solaris 10-11.0 x86 libpam remote root exploit CVE-2020-14871
hpwhytry.pyHP XPe embedded devices remote command execution exploit
iis_search.plIIS WebDAV & Indexing service directory traversal attack
inetutils-telnet.txtMultiple BSD based telnet implementations vulnerable to memory corruption.
iPwn.tgzIOS default root user "alpine" exploit to harvest data via SSH
irix-captest.cSGI IRIX <= 6.5.22 capability hijacking "eip" proof-of-concept (SGI XFS)
irix-ftpd-ls.txtSGI IRIX <= 6.5.22 ftpd "/bin/ls" root privilege escalation
irix-mediarecorder.txtSGI IRIX <= 6.5.22 CAP_SCHED_MGT "mediarecorder" privilege escalation
irix-onyx-syssgi.cSGI IRIX <= 6.5.5 syssgi() Onyx IP19/IP21/IP25 kernel information leak exploit
irix-rldx.shSGI IRIX <= 6.4.x run-time linker file creation exploit
irix-runpriv-cap.pngSGI IRIX <= 6.5.x screenshot showing "capabilities" exploit via runpriv
irix-setsockopt.cSGI IRIX <= 6.5.22 kernel mbuf corruption due to integer signedness comparison
irix-syssgi-panic.cSGI IRIX <= 6.5.22 syssgi() SGI_ENUMASHS null ptr kernel panic
irix-tapex.cSGI IRIX <= 6.5.22 "tsdaemon" root arbitrary file creation exploit
irssi-irc-fuzzer.plirssi plugin IRC client fuzzing tool
Download Tool