Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
23 results
epson-eh-tw5350-advisories preview

epson-eh-tw5350-advisories

GitHubdpfkdlemtp/epson-eh-tw5350-advisories

Security advisories for CVE-2021-43716/43717/43718 (Epson EH-TW5350)

authenticationembedded-systems-securityhardware-iot-security+2
23 days ago
CVE-2018-9995-DVR-Credentials-Extractor preview

CVE-2018-9995-DVR-Credentials-Extractor

GitHubf7p-h4nn1b4l/cve-2018-9995-dvr-credentials-extractor

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

authenticationembedded-systems-securityexploitation+5
11 month ago
0-click-RCE-Exploit-for-CVE-2024-10924 preview

0-click-RCE-Exploit-for-CVE-2024-10924

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-10924

Unauthenticated authentication bypass to RCE exploit for CVE-2024-10924. Abuses an authentication and 2FA bypass in the Really Simple Security…

authenticationexploitationpayload-development+4
147 months ago
D-Link-CVE-2021-27342-exploit preview

D-Link-CVE-2021-27342-exploit

GitHubmavlevin/d-link-cve-2021-27342-exploit

Exploit for CVE-2021-27342 vulnerability (telnet authentication brute-force protection bypass)

authenticationembedded-systems-securityexploitation+3
155 years ago
CVE-2024-10924-Bypass-MFA-Wordpress-LAB preview

CVE-2024-10924-Bypass-MFA-Wordpress-LAB

GitHubd1se0/cve-2024-10924-bypass-mfa-wordpress-lab

Lab environment and exploit script for CVE-2024-10924, demonstrating MFA bypass in WordPress via the Really Simple SSL plugin's skip_onboarding…

authenticationctfeducation+5
41 year ago
CVE-2021-29441 preview

CVE-2021-29441

GitHubk3ystr0k3r/cve-2021-29441

CVE-2021-29441 - Nacos Authentication Bypass

authenticationeducationexploitation+4
2 months ago
about_cobaltstrike4.5_cdf preview

about_cobaltstrike4.5_cdf

GitHublovechoudoufu/about_cobaltstrike4.5_cdf

cobaltstrike4.5版本破解、去除checksum8特征、bypass BeaconEye、修复错误路径泄漏stage、增加totp双因子验证、修复CVE-2022-39197等

authenticationcommand-and-controlexploit-frameworks+4
183 years ago
lempo preview

lempo

GitHubmauroeldritch/lempo

LEMPO (Ldap Exposure on POrtainer) is an exploit for CVE-2018-19466 (LDAP Credentials Disclosure on Portainer). Featured @ DevFest Siberia 2018

authenticationcontainer-securityexploitation+2
116 years ago
CVE-2025-65427 preview

CVE-2025-65427

GitHubkirubel-cve/cve-2025-65427

Proof-of-concept exploit for CVE-2025-65427: missing rate limiting on Dbit N300 T1 Pro router login API enabling brute-force attacks and…

authenticationiot-securitypassword-attacks+3
9 months ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubhorizon3ai/cve-2022-40684

A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

authenticationexploitationexploit-frameworks+3
3583 years ago
CVE-2025-3616 preview

CVE-2025-3616

GitHubb4d-53ct0r/cve-2025-3616

Metasploit module exploiting arbitrary file upload in Greenshift WordPress plugin (CVE-2025-3616) to achieve RCE via MIME spoofing, with…

authenticationexploit-frameworkspayload-development+3
8 months ago
CVE-2022-40684-metasploit-scanner preview

CVE-2022-40684-metasploit-scanner

GitHubtaroballzchen/cve-2022-40684-metasploit-scanner

An authentication bypass using an alternate path or channel in Fortinet product

authenticationexploitationexploit-frameworks+3
143 years ago
CVE-2026-36438 preview

CVE-2026-36438

GitHubkensh1k/cve-2026-36438

Documentation of CVE-2026-36438: a vulnerability in Intelbras VIP 1230 B/D G4 devices allowing remote attackers to obtain administrator account…

authenticationembedded-systems-securityinformation-gathering+3
3 months ago
NextSploit preview

NextSploit

GitHubanonkryptiquz/nextsploit

NextSploit is a command-line tool designed to detect and exploit CVE-2025-29927, a security flaw in Next.js

authenticationexploitationinformation-gathering+3
921 year ago
CVE-2021-3754 preview

CVE-2021-3754

GitHub7ragnarok7/cve-2021-3754

Vulnerability details and exploit for CVE-2021-3754

authenticationauthentication-authorizationexploitation+3
11 year ago
mimikatz preview

mimikatz

GitHubgentilkiwi/mimikatz

A little tool to play with Windows security

authenticationexploitationexploit-frameworks+10
21.8k4 months ago
mikrotik0dayScanner preview

mikrotik0dayScanner

GitHubm1tn1ck/mikrotik0dayscanner

Mikrotik 0day Credential Disclosure Scanner

authenticationexploitationinformation-gathering+2
67 years ago
PsMapExec preview

PsMapExec

GitHubthe-viper-one/psmapexec

Dominate Active Directory with PowerShell.

authenticationcommand-and-controlexploitation+6
1.2k9 months ago
Previous12Next