Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
105 results
Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467 preview

Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467

GitHubgraysignal/apache-ofbiz-auth-bypass-and-rce-exploit-cve-2023-49070-cve-2023-51467

This exploit scans whether the provided target is vulnerable to CVE-2023-49070/CVE-2023-51467 and also exploits it depending on the choice of the…

authenticationexploitationpenetration-testing+3
1
2 years ago
vibe-coding-security preview

vibe-coding-security

GitHubboxed-dev/vibe-coding-security

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

ai-securityapi-securityauthentication+9
1411 days ago
dlink preview

dlink

GitHubnetsecfish/dlink
authenticationexploitationiot-security+3
1002 years ago
0xMiddleware preview

0xMiddleware

GitHubev3rpalestine/0xmiddleware

CVE-2025-29927: Next.js Middleware Exploit

authenticationexploitationpenetration-testing+3
1 year ago
CVE-2018-9995-DVR-Credentials-Extractor preview

CVE-2018-9995-DVR-Credentials-Extractor

GitHubf7p-h4nn1b4l/cve-2018-9995-dvr-credentials-extractor

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

authenticationembedded-systems-securityexploitation+5
119 days ago
CentOS-Control-Web-Panel-CVE preview

CentOS-Control-Web-Panel-CVE

GitHubi3umi3iei3ii/centos-control-web-panel-cve

CentOS Control Web Panel, Root Privilege Escalation

authenticationeducationinformation-gathering+3
656 years ago
CVE-2026-9830 preview

CVE-2026-9830

GitHubchpratik/cve-2026-9830

Threat intelligence report repository for CVE-2026-9830, an authentication bypass vulnerability in BookingPress Pro WordPress plugin, with detailed…

authenticationincident-responsepapers-research+5
24 days ago
CVE-2026-60206 preview

CVE-2026-60206

GitHubdebajyoti0-0/cve-2026-60206

Technical analysis and Proof-of-Concept for CVE-2026-60206, a critical Oracle WebLogic Server SAML authentication bypass vulnerability.

authenticationexploitationpenetration-testing+2
26 days ago
cve-2025-24472-fortinet_authbypass_reproduction preview

cve-2025-24472-fortinet_authbypass_reproduction

GitHubrazureink/cve-2025-24472-fortinet_authbypass_reproduction

CVE Reproduction: cve-2025-24472-fortinet_authbypass_reproduction

authenticationexploitationinformation-gathering+4
29 days ago
-PaperCut-CVE-2023-27350- preview

-PaperCut-CVE-2023-27350-

GitHubdanielissaq/-papercut-cve-2023-27350-
authenticationctfeducation+8
1 month ago
CVE-2023-37755---Hardcoded-Admin-Credential-in-i-doit-Pro-25-and-below preview

CVE-2023-37755---Hardcoded-Admin-Credential-in-i-doit-Pro-25-and-below

GitHubleekenghwa/cve-2023-37755---hardcoded-admin-credential-in-i-doit-pro-25-and-below
authenticationexploitationmisconfiguration+3
2 years ago
CVE-2024-42850 preview

CVE-2024-42850

GitHubnjmbb8/cve-2024-42850

An issue in Silverpeas v6.4.2 and lower allows for the bypassing of password complexity requirements.

authenticationmisconfigurationpassword-attacks+2
12 years ago
Electrolink-FM-DAB-TV preview

Electrolink-FM-DAB-TV

GitHubp0et08/electrolink-fm-dab-tv

There is a POC for CVE-2025-51040 in Electrolink FM/DAB/TV Transmitter Web Management System Unauthorized access vulnerability

authenticationexploitationmisconfiguration+3
1 year ago
CVE-2024-9014 preview

CVE-2024-9014

GitHubr0otk3r/cve-2024-9014
authenticationexploitationinformation-gathering+3
1 year ago
CVE-2025-53770 preview

CVE-2025-53770

GitHubsaladin0x1/cve-2025-53770
authenticationeducationexploitation+5
411 months ago
CVE-2024-11680_PoC_Exploit preview

CVE-2024-11680_PoC_Exploit

GitHubd3n14ld15k/cve-2024-11680_poc_exploit

This repository contains a Proof of Concept (PoC) exploit for CVE-2024-11680, a critical vulnerability in ProjectSend r1605 and older versions. The…

authenticationexploitationmisconfiguration+3
111 year ago
Oracle-Identity-Manager-CVE-2025-61757 preview

Oracle-Identity-Manager-CVE-2025-61757

GitHubjinxia62/oracle-identity-manager-cve-2025-61757

Oracle Identity Manager 远程代码执行漏洞CVE-2025-61757

authenticationcode-analysisexploitation+3
39 months ago
CVE-2025-0108-PoC preview

CVE-2025-0108-PoC

GitHubfolks-iwd/cve-2025-0108-poc

PoC exploit for CVE-2025-0108 - PAN-OS Authentication Bypass

authenticationexploitationpenetration-testing+2
81 year ago
Previous123456Next