Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
393 results
CVE-2024-28987 preview

CVE-2024-28987

GitHubhorizon3ai/cve-2024-28987

Proof of Concept Exploit for CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability

authenticationexploitationinformation-gathering+3
8
1 year ago
CVE-2019-8978 preview

CVE-2019-8978

GitHubseckatie/cve-2019-8978

Banner Web Tailor and Banner Enterprise Identity Services Vulnerability Disclosure

authenticationexploitationinformation-gathering+3
91 year ago
CVE-2024-4040 preview

CVE-2024-4040

GitHubgotr00t0day/cve-2024-4040

A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms allows unauthenticated remote…

authenticationexploitationinformation-gathering+3
82 years ago
CVE-2026-51788 preview

CVE-2026-51788

GitHubaykhan32/cve-2026-51788

Detailed CVE-2026-51788 advisory for a DoS vulnerability in cleverange_auth v0.1.10, with technical analysis, CVSS scoring, and mitigation guidance…

authenticationeducationemail-security+3
1 month ago
CVE-2026-9830 preview

CVE-2026-9830

GitHubchpratik/cve-2026-9830

Threat intelligence report repository for CVE-2026-9830, an authentication bypass vulnerability in BookingPress Pro WordPress plugin, with detailed…

authenticationincident-responsepapers-research+5
24 days ago
Exploit-CVE-2023-49070-and-CVE-2023-51467-Apache-OFBiz preview

Exploit-CVE-2023-49070-and-CVE-2023-51467-Apache-OFBiz

GitHubuserconnecting/exploit-cve-2023-49070-and-cve-2023-51467-apache-ofbiz

Authentication Bypass Vulnerability Apache OFBiz < 18.12.10.

authenticationeducationexploitation+3
51 year ago
CVE-2018-9995-DVR-Credentials-Extractor preview

CVE-2018-9995-DVR-Credentials-Extractor

GitHubf7p-h4nn1b4l/cve-2018-9995-dvr-credentials-extractor

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

authenticationembedded-systems-securityexploitation+5
119 days ago
CVE-2026-8181 preview

CVE-2026-8181

GitHubx48ps/cve-2026-8181

This vulnerability allows unauthenticated attackers who know a valid administrator username to impersonate that admin during REST API requests by…

api-securityauthenticationexploitation+3
3 months ago
CVE-2026-35030-PoC preview

CVE-2026-35030-PoC

GitHublearner202649/cve-2026-35030-poc

The code for personally reproducing the corresponding vulnerability

authenticationcryptographyeducation+5
3 months ago
CVE-2026-42568 preview

CVE-2026-42568

GitHubex-cal1bur/cve-2026-42568

An LDAP injection vulnerability exists in org.yamcs.security.LdapAuthModule. The username parameter is inserted directly into LDAP search filters…

authenticationeducationexploitation+3
2 months ago
CVE-2022-43959 preview

CVE-2022-43959

GitHubsecware-ru/cve-2022-43959

Bitrix Vulnerability CVE-2022-43959

authenticationconfiguration-auditingmisconfiguration+3
43 years ago
CVE-2025-48827 preview

CVE-2025-48827

GitHubsh4den/cve-2025-48827

This repository contains a proof-of-concept exploit for CVE-2025-48827, a critical authentication bypass vulnerability affecting vBulletin…

authenticationeducationexploitation+3
11 month ago
CVE-2026-0257 preview

CVE-2026-0257

GitHubgrayxploit/cve-2026-0257

GrayXploit Security research and defensive team validate this toolkit for CVE-2026-0257 (PAN-OS GlobalProtect Authentication Bypass). Includes…

authenticationincident-responseinformation-gathering+6
12 months ago
CVE-2022-38813 preview

CVE-2022-38813

GitHubrashidkhanpathan/cve-2022-38813

Authenticated Vertical Privilege Escalation Vulnerability in Blood Donor Management System

authenticationexploitationpenetration-testing+3
23 years ago
CVE-2025-27007-OttoKit-exploit preview

CVE-2025-27007-OttoKit-exploit

GitHubabsholi7ly/cve-2025-27007-ottokit-exploit

exploiting CVE-2025-27007, a critical unauthenticated privilege escalation vulnerability in the OttoKit (formerly SureTriggers) WordPress plugin

authenticationexploitationpenetration-testing+4
21 year ago
CVE-2023-42829 preview

CVE-2023-42829

GitHubjamesd4/cve-2023-42829

Analysis of a logic vulnerability in the macOS SSH client leading to client passphrase exposure to a local attacker

authenticationbinary-analysiseducation+2
21 year ago
CVE-2025-15602-PoC preview

CVE-2025-15602-PoC

GitHubnxvh1337/cve-2025-15602-poc

Snipe-IT < 8.3.7 Mass Assignment Vulnerability Leading to Privilege Escalation

authenticationexploitationinformation-gathering+4
4 months ago
CVE-2022-28986 preview

CVE-2022-28986

GitHubflaviupopescu/cve-2022-28986

A Insecure direct object references (IDOR) vulnerability in "Simple 2FA Plugin for Moodle" by LMS Doctor

authenticationeducationids-ips-evasion+3
24 years ago
Previous1…456…22Next