Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
778 results
MultiExploit preview

MultiExploit

GitHubvesu-nights/multiexploit

CVE-2023-21173 Exploit - Remote Code Execution in SQL Server 2022

authenticationdatabase-securityexploitation+3
1 year ago
0logon preview

0logon

GitHublogg-1/0logon

MS-NRPC (Microsoft NetLogon Remote Protocol)/CVE-2020-1472

authenticationexploitationpenetration-testing+1
2 years ago
CVE-2022-46169 preview

CVE-2022-46169

GitHub0xf4n9x/cve-2022-46169

CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.

authenticationcommand-and-controlexploitation+3
473 years ago
watchTowr-vs-Ivanti-Sentry-RCE-CVE-2026-10520-CVE-2026-10523 preview

watchTowr-vs-Ivanti-Sentry-RCE-CVE-2026-10520-CVE-2026-10523

GitHubwatchtowrlabs/watchtowr-vs-ivanti-sentry-rce-cve-2026-10520-cve-2026-10523
authenticationexploitationpenetration-testing+3
142 months ago
watchTowr-vs-Check-Point-CVE-2026-50751 preview

watchTowr-vs-Check-Point-CVE-2026-50751

GitHubwatchtowrlabs/watchtowr-vs-check-point-cve-2026-50751
authenticationexploitationnetwork-security+4
52 months ago
CVE-2026-22002-VNC-Authentication-Bypass-via-Protocol-Version-Confusion preview

CVE-2026-22002-VNC-Authentication-Bypass-via-Protocol-Version-Confusion

GitHubgeorge0papasotiriou/cve-2026-22002-vnc-authentication-bypass-via-protocol-version-confusion
authenticationexploitationnetwork-security+2
16 days ago
CVE-2026-23009-DICOM-Network-Image-Injection-Without-Authentication preview

CVE-2026-23009-DICOM-Network-Image-Injection-Without-Authentication

GitHubgeorge0papasotiriou/cve-2026-23009-dicom-network-image-injection-without-authentication
authenticationexploitationnetwork-security+3
15 days ago
CVE-2023-46805_CVE-2024-21887 preview

CVE-2023-46805_CVE-2024-21887

GitHubraminkarimkhani1996/cve-2023-46805_cve-2024-21887

The script in this repository only checks whether the vulnerabilities specified in the Ivanti Connect Secure product exist.

authenticationexploitationpenetration-testing+2
52 years ago
CVE-2026-9198 preview

CVE-2026-9198

GitHub0xgh057r3c0n/cve-2026-9198

IBM Langflow Unauthenticated RCE via Auto-Login Bypass

authenticationcommand-and-controlexploitation+4
127 days ago
CVE-2025-5777-TrendMicro-ApexCentral-RCE preview

CVE-2025-5777-TrendMicro-ApexCentral-RCE

GitHubshivshantp/cve-2025-5777-trendmicro-apexcentral-rce

PoC for CVE-2025-5777 – Auth Bypass and RCE in Trend Micro Apex Central

authenticationcommand-and-controlexploitation+5
51 year ago
CVE-2026-50751 preview

CVE-2026-50751

GitHub0xblackash/cve-2026-50751

CVE-2026-50751

authenticationexploitationnetwork-security+3
12 months ago
CVE-2025-55449 preview

CVE-2025-55449

GitHubxhh1h/cve-2025-55449

CVE-2025-55449 EXP

authenticationcode-analysisexploitation+3
38 months ago
CVE-2025-4603 preview

CVE-2025-4603

GitHubd0n601/cve-2025-4603

eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Deletion

authenticationexploitationpenetration-testing+3
11 year ago
CVE-2025-4602 preview

CVE-2025-4602

GitHubd0n601/cve-2025-4602

eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Read

authenticationexploitationinformation-gathering+3
11 year ago
CVE-2025-492030 preview

CVE-2025-492030

GitHubimthecopilotnow/cve-2025-492030
api-securityauthenticationexploitation+3
1 year ago
CVE-2025-43921 preview

CVE-2025-43921

GitHub0nyx-my7h/cve-2025-43921
authenticationexploitationmisconfiguration+3
1 year ago
RemoteMonologue preview

RemoteMonologue

GitHub3lp4tr0n/remotemonologue

Weaponizing DCOM for NTLM Authentication Coercions

adversarial-attackauthenticationexploitation+6
2159 months ago
CVE-2020-11651 preview

CVE-2020-11651

GitHubdrew-alleman/cve-2020-11651

A script that exploits SaltStack CVE-2020-11651 and CVE-2020-11652 to add new users to a vulnerable Salt master by injecting entries into /etc/passwd…

authenticationcommand-and-controlexploitation+3
11 year ago
Previous1…345…44Next