Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
32 results
CVE-2021-32648 preview

CVE-2021-32648

GitHubdaftspunk/cve-2021-32648

Provides a manual patch for October CMS authentication bypass vulnerabilities CVE-2021-32648 and CVE-2021-29487 by converting loose to strict…

authenticationcode-analysisvulnerability-analysis+1
1
4 years ago
CVE-2026-6274 preview

CVE-2026-6274

GitHubbugresearch/cve-2026-6274

Proof-of-concept exploit for CVE-2026-6274, an authentication bypass in Redline WR3200 routers allowing unauthorized password change via static…

authenticationexploitationpenetration-testing+2
3 months ago
CVE-2026-26717 preview

CVE-2026-26717

GitHubrickidevs/cve-2026-26717

Technical write-up of CVE-2026-26717, an HMAC timing attack in OpenFUN Richie LMS webhook authentication, including vulnerable code, impact, and fix…

authenticationcode-analysisexploitation+2
6 months ago
Mind-Maps preview

Mind-Maps

GitHubimran-parray/mind-maps

Mind-Maps of Several Things

authenticationcode-analysiscurated-resources+9
2.7k3 years ago
CVE-2025-12135 preview

CVE-2025-12135

GitHubd0n601/cve-2025-12135

WPBookit <= 1.0.6 - Unauthenticated Stored Cross-Site Scripting

authenticationcode-analysismisconfiguration+3
10 months ago
CVE-2026-53913 preview

CVE-2026-53913

GitHuboscerd/cve-2026-53913

PoC reproducer for CVE-2026-53913 (Apache Camel camel-keycloak): KeycloakSecurityPolicy fails open in the Basic Setup — with no required…

authenticationcode-analysisexploitation+3
11 month ago
cryptography preview

cryptography

GitHubpyca/cryptography

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers.

authenticationcode-analysiscryptography+3
7.8k18h 23m ago
SecureCodingDojo preview

SecureCodingDojo

GitHubowasp/securecodingdojo

The Secure Coding Dojo is a platform for delivering secure coding knowledge.

authenticationcode-analysisctf+6
6099 months ago
CVE-2021-27651 preview

CVE-2021-27651

GitHuborangmuda/cve-2021-27651

bypass all stages of the password reset flow

authenticationcode-analysisexploitation+3
14 years ago
jenkinsci__git-client-plugin_CVE-2019-10392_2-8-4 preview

jenkinsci__git-client-plugin_CVE-2019-10392_2-8-4

GitHubshoucheng3/jenkinsci__git-client-plugin_cve-2019-10392_2-8-4

Jenkins plugin providing Git APIs for automated repository operations including fetch, checkout, merge, and tag, with support for credential-based…

authenticationcode-analysisdevsecops+2
1 year ago
web2py-e94946d-CVE-2016-3957 preview

web2py-e94946d-CVE-2016-3957

GitHubsj/web2py-e94946d-cve-2016-3957

web2py/web2py @ e94946d

authenticationcode-analysisdatabase-security+3
7 years ago
Oracle-Identity-Manager-CVE-2025-61757 preview

Oracle-Identity-Manager-CVE-2025-61757

GitHubjinxia62/oracle-identity-manager-cve-2025-61757

Oracle Identity Manager 远程代码执行漏洞CVE-2025-61757

authenticationcode-analysisexploitation+3
39 months ago
OpenSSL_1_0_1g_CVE-2015-0205 preview

OpenSSL_1_0_1g_CVE-2015-0205

GitHubsaurabh2088/openssl_1_0_1g_cve-2015-0205

Full-featured open-source toolkit implementing SSL/TLS protocols and a general-purpose cryptography library, including ciphers, digests, public key…

authenticationcode-analysiscryptography+3
2 years ago
merge-authz-test preview

merge-authz-test

GitHubmanoelprovider20-lgtm/merge-authz-test

authz test (CVE-2026-1999 siblings)

authenticationcode-analysisexploitation+2
1 month ago
CVE-2026-46455 preview

CVE-2026-46455

GitHuboscerd/cve-2026-46455

Reproducer for CVE-2026-46455 — Apache Camel camel-keycloak missing TokenVerifier.IS_ACTIVE check (expired access tokens accepted)

authenticationcode-analysisexploitation+3
1 month ago
CVE-2026-11551-PoC preview

CVE-2026-11551-PoC

GitHububaydev/cve-2026-11551-poc

Proof-of-concept exploit for CVE-2026-11551, an unauthenticated privilege escalation vulnerability in the Branda White Label plugin for WordPress,…

authenticationcode-analysisexploitation+5
2 months ago
CVE-2025-63314 preview

CVE-2025-63314

GitHubpadayali-jd/cve-2025-63314

Detailed disclosure of CVE-2025-63314: static, non-expiring password reset token in Acora CMS 10.7.1 enabling account takeover and privilege…

authenticationeducationexploitation+3
7 months ago
CVE-2025-55449 preview

CVE-2025-55449

GitHubxhh1h/cve-2025-55449

CVE-2025-55449 EXP

authenticationcode-analysisexploitation+3
39 months ago
Previous12Next