Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
393 results
CVE-2022-40684 preview

CVE-2022-40684

GitHubhawa771/cve-2022-40684

Fortinet Critical Authentication Bypass Vulnerability (CVE-2022-40684) [ Mass Exploit ]

authenticationexploitationpenetration-testing+3
2
3 years ago
CVE-2026-49869 preview

CVE-2026-49869

GitHubap0dexme0/cve-2026-49869

Kestra Auth-Bypass Vulnerability Checker

authenticationcommand-and-controlexploitation+3
21 month ago
CVE-2025-70829 preview

CVE-2025-70829

GitHubxiaoxiaoranxxx/cve-2025-70829

An information exposure vulnerability in Datart v1.0.0-rc.3 allows authenticated attackers to access sensitive data via a custom H2 JDBC connection…

authenticationdatabase-securityexploitation+3
46 months ago
CVE-2020-1472 preview

CVE-2020-1472

GitHubcanciucostin/cve-2020-1472

CVE-2020-1472 - Zero Logon vulnerability Python implementation

authenticationexploitationnetwork-security+2
25 years ago
Check-AAD-Connect-for-CVE-2021-36949-vulnerability preview

Check-AAD-Connect-for-CVE-2021-36949-vulnerability

GitHubmaxwitat/check-aad-connect-for-cve-2021-36949-vulnerability

check if Azure AD Connect is affected by the vulnerability described in CVE-2021-36949

authenticationcloud-securitymisconfiguration+2
35 years ago
CVE-2024-1709 preview

CVE-2024-1709

GitHubhussainfathy/cve-2024-1709

A Scanner for CVE-2024-1709 - ConnectWise SecureConnect Authentication Bypass Vulnerability

authenticationexploitationpenetration-testing+2
32 years ago
securenvoy-cve-2024-37393 preview

securenvoy-cve-2024-37393

GitHubnoways-io/securenvoy-cve-2024-37393

Vulnerability check script for CVE-2024-37393 (SecurEnvoy MFA 9.4.513)

authenticationexploitationpenetration-testing+2
12 years ago
Strapi-CVE-2019-1881 preview

Strapi-CVE-2019-1881

GitHubshadawks/strapi-cve-2019-1881

Proof of concept for Strapi CVE-2019-18818 - Unauthenticated Password Reset Vulnerability / Privilege Escalation

authenticationexploitationpenetration-testing+2
14 years ago
CVE-2017-12542-Exploit preview

CVE-2017-12542-Exploit

GitHubgill-singh-a/cve-2017-12542-exploit

Proof-of-concept exploit for CVE-2017-12542, an authentication bypass vulnerability in HP iLO. Allows vulnerability detection and unauthorized…

authenticationexploitationpenetration-testing+3
6 months ago
CVE-2025-31161 preview

CVE-2025-31161

GitHubacan0007/cve-2025-31161

Authentication bypass vulnerability in versions of the CrushFTP server.

authenticationexploitationpenetration-testing+2
11 months ago
CVE-2025-56643 preview

CVE-2025-56643

GitHub0xbs0d27/cve-2025-56643

Public reference for CVE-2025-56643 – Wiki.js 2.5.307 JWT Session Vulnerability

api-securityauthenticationexploitation+2
19 months ago
CVE-2025-3102 preview

CVE-2025-3102

GitHubbaribut/cve-2025-3102

The SureTriggers WordPress plugin contains a critical authentication bypass vulnerability (CVE-2025-3102) that affects all versions up to and…

authenticationexploitationpenetration-testing+2
1 year ago
EvilSunCheck preview

EvilSunCheck

GitHubfrompartsunknown/evilsuncheck

This is a little Python script to detect the "EvilSun" vulnerability (CVE-2020-14871) on Solaris systems. The vulnerability is a buffer overflow in…

authenticationexploitationnetwork-security+2
1 year ago
CVE-2021-42665 preview

CVE-2021-42665

GitHub0xdeku/cve-2021-42665

CVE-2021-42665 - SQL Injection authentication bypass vulnerability in the Engineers online portal system.

authenticationexploitationpenetration-testing+2
4 years ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubdkstar11q/cve-2022-40684

Exploit for CVE-2022-40684 vulnerability

authenticationexploitationpenetration-testing+3
3 years ago
fortinet-cve-2024-50562 preview

fortinet-cve-2024-50562

GitHubshahid-bugb/fortinet-cve-2024-50562

CVE-2024-50562 is a session management vulnerability in Fortinet SSL-VPN portals

authenticationexploitationpenetration-testing+3
1 year ago
Electrolink-FM-DAB-TV preview

Electrolink-FM-DAB-TV

GitHubp0et08/electrolink-fm-dab-tv

There is a POC for CVE-2025-51040 in Electrolink FM/DAB/TV Transmitter Web Management System Unauthorized access vulnerability

authenticationexploitationmisconfiguration+3
1 year ago
westone-CVE-2021-37580-scanner preview

westone-CVE-2021-37580-scanner

GitHubosyanina/westone-cve-2021-37580-scanner

A vulnerability scanner that detects CVE-2021-37580 vulnerabilities.

api-securityauthenticationexploitation+2
4 years ago
Previous1234…22Next