Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
CVE-2026-0257 preview

CVE-2026-0257

GitHub0xblackash/cve-2026-0257

CVE-2026-0257

authenticationexploitationpenetration-testing+3
33 months ago
CVE-2026-0257 preview

CVE-2026-0257

GitHubtushargurav28/cve-2026-0257

Palo Alto Networks PAN-OS contains an authentication bypass caused by flaws in the GlobalProtect portal and gateway, letting attackers establish…

authenticationcryptographyexploitation+5
33 months ago
palo-alto-cve-2026-0265-checker preview

palo-alto-cve-2026-0265-checker

GitHubtstephens1080/palo-alto-cve-2026-0265-checker

Python script to sweep a fleet of Palo Alto firewalls and Panoramas via SSH, check PAN-OS version against CVE-2026-0265 (Authentication Bypass via…

authenticationcloud-securityconfiguration-auditing+3
4 months ago
Flowise-CVE-2025-58434-Chain-59528 preview

Flowise-CVE-2025-58434-Chain-59528

GitHub0xdaeras/flowise-cve-2025-58434-chain-59528

FlowiseAI CVE-2025-58434 & CVE-2025-59528 exploit PoC, demonstrating unauthenticated ATO via reset token leakage, followed by authenticated RCE.…

authenticationeducationexploitation+4
14 months ago
keepassxc-fzf preview

keepassxc-fzf

GitHubcreusvictor/keepassxc-fzf

A lightweight CLI tool to interactively search and access your KeePassXC database entries using fzf. Fast, secure, and terminal-centric.

authenticationencryption-decryption-toolsgeneral-purpose-utilities+2
107 months ago
CVE-2025-13390 preview

CVE-2025-13390

GitHubnxploited/cve-2025-13390

WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover

authenticationexploitationpayload-development+5
18 months ago
CVE-2025-50433 preview

CVE-2025-50433

GitHub0xmandor/cve-2025-50433

Proof of concept for a critical Monnit Cloud account takeover (CVE-2025-50433), exploiting missing token-email validation in password reset and…

authenticationexploitationinformation-gathering+3
10 months ago
CVE-2025-13390 preview

CVE-2025-13390

GitHubd0n601/cve-2025-13390

WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover

authenticationexploitationpayload-generation+4
10 months ago
CVE-2025-0108-SCAN preview

CVE-2025-0108-SCAN

GitHubfr4nc1stein/cve-2025-0108-scan

Detects an authentication bypass vulnerability in Palo Alto PAN-OS (CVE-2025-0108).

authenticationexploitationinformation-gathering+3
21 year ago
CVE-2025-0108-PoC preview

CVE-2025-0108-PoC

GitHubfolks-iwd/cve-2025-0108-poc

PoC exploit for CVE-2025-0108 - PAN-OS Authentication Bypass

authenticationexploitationpenetration-testing+2
81 year ago
CVE-2024-0012 preview

CVE-2024-0012

GitHub0xjessie21/cve-2024-0012

CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) RCE POC

authenticationcommand-and-controlexploitation+3
31 year ago
SharpSpray preview

SharpSpray

GitHubiomoath/sharpspray

Active Directory password spraying tool. Auto fetches user list and avoids potential lockouts.

authenticationpassword-attackspenetration-testing
1324 years ago
smbAutoRelay preview

smbAutoRelay

GitHubcheshireca7/smbautorelay

SMB Auto Relay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environments.

authenticationexploitationlateral-movement+2
465 years ago