Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
42 results
CVE-2025-32432-PoC preview

CVE-2025-32432-PoC

GitHubezramansor/cve-2025-32432-poc

A simple PoC on the Remote Code Execution (RCE) Vulnerability of CraftCMS designated as CVE-2025-32432 written in Go

adversarial-attackexploitationpayload-generation+3
26 days ago
CVE-2025-30374 preview

CVE-2025-30374

GitHubjackfromeast/cve-2025-30374

Exploit PoCs for CVE-2025-30374, a Taipy class pollution bug, demonstrating RCE, reflected XSS, DoS, and OpenAI credential leakage with Docker-based…

adversarial-attackexploitationvulnerability-analysis+2
28 days ago
CVE-2023-44487 preview

CVE-2023-44487

GitHubimabee101/cve-2023-44487

PoC script for HTTP/2 Rapid Reset (CVE-2023-44487) that sends crafted HTTP/2 streams to trigger denial-of-service conditions on vulnerable servers,…

adversarial-attackexploitationweb-application-exploitation+1
562 years ago
POC-CopyEscape-CVE-2026-17106 preview

POC-CopyEscape-CVE-2026-17106

GitHub686f6c61/poc-copyescape-cve-2026-17106

PoC funcional de CVE-2026-17106 (CopyEscape): carrera TOCTOU en docker cp que permite escritura arbitraria en el host Docker. Laboratorio Docker +…

adversarial-attackcontainer-escapecontainer-security+5
121 days ago
ShieldBreak preview

ShieldBreak

GitHubmsnightmare/shieldbreak

Windows Defender patch bypass PoC for CVE-2026-50656 (RoguePlanet), demonstrating exploitability on Windows 11 25H2 and Server 2025 despite…

adversarial-attackexploitationvulnerability-analysis
67522 days ago
NSecSoftBYOVD preview

NSecSoftBYOVD

GitHubanylnk/nsecsoftbyovd

NSecSoftBYOVD POC

adversarial-attackexploitationids-ips-evasion+3
626 months ago
CVE-2026-54121-CertiGhost preview

CVE-2026-54121-CertiGhost

GitHubmarcgoam/cve-2026-54121-certighost

CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

adversarial-attackauthentication-authorizationexploitation+4
101 month ago
memory-poisoning-axis preview

memory-poisoning-axis

GitHubcsoai-org/memory-poisoning-axis

Deterministic memory-poisoning / prompt-injection measurement axis — CoSnitch (CVE-2026-24301) anchored. Inspect scorer, signed receipts.…

adversarial-attackai-securitydata-exfiltration+1
14 days ago
printnightmare-detection-lab preview

printnightmare-detection-lab

GitHubjoertx07/printnightmare-detection-lab

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

adversarial-attackeducationexploitation+6
29 days ago
CVE-2026-44578 preview

CVE-2026-44578

GitHublxxexxbxx/cve-2026-44578

Proof-of-concept exploit for CVE-2026-44578 that reproduces the vulnerable condition, enabling security researchers to validate affected systems and…

adversarial-attackexploitationvulnerability-analysis
114 days ago
misp-galaxy preview

misp-galaxy

GitHubmisp/misp-galaxy

Clusters and elements to attach to MISP events or attributes (like threat actors)

adversarial-attackcurated-resourcesioc-management+5
63710h 21m ago
hi_my_name_is_keyboard preview

hi_my_name_is_keyboard

GitHubmarcnewlin/hi_my_name_is_keyboard

Bluetooth keystroke injection exploit PoCs for CVE-2023-45866, CVE-2024-21306, and CVE-2024-0230 targeting Android, Linux, macOS, and iOS via…

adversarial-attackandroid-securitybluetooth-security+5
7322 years ago
awesome-ai-security preview

awesome-ai-security

GitHubgmh5225/awesome-ai-security

A curated list of AI Security materials and resources for Pentesters, Bug Hunters, and Security Researchers.

adversarial-attackai-securityctf+7
4412 days ago
CopyEscape-CVE-2026-17106 preview

CopyEscape-CVE-2026-17106

GitHubmasasron/copyescape-cve-2026-17106

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

adversarial-attackcontainer-escapecontainer-security+3
2224 days ago
CVE-2025-54794-Hijacking-Claude-AI-with-a-Prompt-Injection-The-Jailbreak-That-Talked-Back preview

CVE-2025-54794-Hijacking-Claude-AI-with-a-Prompt-Injection-The-Jailbreak-That-Talked-Back

GitHubadityabhatt3010/cve-2025-54794-hijacking-claude-ai-with-a-prompt-injection-the-jailbreak-that-talked-back

A high-severity prompt injection flaw in Claude AI proves that even the smartest language models can be turned into weapons — all with a few lines of…

adversarial-attackai-securityeducation+2
371 year ago
SkeletonKey preview

SkeletonKey

GitHubdefineid/skeletonkey

CVE-2026-6765, Test only FormAutofill handlers exposed in Firefox

adversarial-attackdata-exfiltrationexploitation+3
11 days ago
CVE-2026-1337-AI-Coding-Assistant-Prompt-Injection-to-Sandbox-Escape preview

CVE-2026-1337-AI-Coding-Assistant-Prompt-Injection-to-Sandbox-Escape

GitHubgeorge0papasotiriou/cve-2026-1337-ai-coding-assistant-prompt-injection-to-sandbox-escape

A prompt injection in a code‑review bot that executes AI‑generated fixes in a sandbox. The sandbox uses a blacklist to prevent dangerous commands,…

adversarial-attackai-securitycode-analysis+4
1 month ago
CVE-2026-5556-Kubernetes-Admission-Controller-Bypass-via-Case-Sensitivity preview

CVE-2026-5556-Kubernetes-Admission-Controller-Bypass-via-Case-Sensitivity

GitHubgeorge0papasotiriou/cve-2026-5556-kubernetes-admission-controller-bypass-via-case-sensitivity

Exploit PoC and vulnerable admission webhook for CVE-2026-5556, demonstrating Kubernetes admission controller bypass via case-sensitive pod name…

adversarial-attackcloud-infrastructure-securitycloud-security+4
1 month ago
Previous123Next