Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
133 results
CVE-2026-10243-AUTH preview

CVE-2026-10243-AUTH

GitHubxmyronn/cve-2026-10243-auth

Proof of concept demonstrating unauthenticated access to critical admin functions in Smart Parking System 1.0, allowing account creation, data…

authenticationexploitationpenetration-testing+2
3 months ago
CVE-2026-30863-Exploit preview

CVE-2026-30863-Exploit

GitHubworthes/cve-2026-30863-exploit

CWE-287: Improper Authentication in parse-community parse-server

authenticationexploitationpenetration-testing+2
5 months ago
CVE-2026-23550-PoC preview

CVE-2026-23550-PoC

GitHubthetorjancaptain/cve-2026-23550-poc

CVE-2026-23550 - Modular DS WordPress Plugin **Unauthenticated Admin Access**

authenticationexploitationpenetration-testing+3
17 months ago
CVE-2026-25253 preview

CVE-2026-25253

GitHubkajzingerakos/cve-2026-25253

Proof-of-concept exploit for CVE-2026-25253, demonstrating one-click remote code execution in OpenClaw via authentication token theft and cross-site…

authenticationexploitationred-teaming+3
14 months ago
CVE-2021-29441 preview

CVE-2021-29441

GitHubbysinks/cve-2021-29441

Exploit for CVE-2021-29441 in Alibaba Nacos, enabling unauthorized addition of user accounts by sending crafted requests to the target IP.

authenticationexploitationpenetration-testing+2
24 years ago
CVE-2026-35616 preview

CVE-2026-35616

GitHubalaatk/cve-2026-35616

Fortinet FortiClientEMS improper access control

authenticationexploitationpenetration-testing+2
374 months ago
POC-CVE-2026-18963 preview

POC-CVE-2026-18963

GitHubt0w0t/poc-cve-2026-18963

Proof-of-concept exploit for CVE-2026-18963, an authentication bypass in Keycloak's forgot-password flow, allowing password reset without proper…

authenticationexploitationpenetration-testing+2
13 days ago
frevvomapexec preview
Archived

frevvomapexec

GitHubhateshape/frevvomapexec

PoC Exploit for CVE-2018-8820

authenticationexploitationpenetration-testing+2
48 years ago
crushftp_cve-2025-31161 preview

crushftp_cve-2025-31161

GitHubrufflabs/crushftp_cve-2025-31161

Pre-built vulnerable CrushFTP 10.8.0 binary for authorized penetration testing of CVE-2025-31161, an unauthenticated authentication bypass…

authenticationexploitationlabs-practice+3
1 month ago
CVE-2021-3130 preview

CVE-2021-3130

GitHubjet-pentest/cve-2021-3130

Proof-of-concept for CVE-2021-3130: demonstrates credential exposure via HTML obfuscation bypass in Open-AudIT up to 4.0.2, revealing SSH, SNMP, and…

authenticationmisconfigurationpenetration-testing+2
5 years ago
PENTEST-LAB preview

PENTEST-LAB

GitHubpannagkumaar/pentest-lab

Modern cyber range with 50 hands-on challenges across web, API, cloud, AI, and blue-team security tracks. Features guided attack chains, transparent…

ai-securityapi-securityauthentication+8
1 month ago
janusec preview

janusec

GitHubjanusec/janusec

Unified application gateway providing reverse proxy, WAF, CC defense, OAuth2 authentication, ACME certificate automation, and GSLB for secure,…

api-securityauthenticationcloud-security+8
1.2k1 month ago
self-service-password preview

self-service-password

GitHubltb-project/self-service-password

Web interface to change and reset password in an LDAP directory

authenticationcryptographyidentity-access-management+1
1.3k3 days ago
CVE-2021-40113 preview

CVE-2021-40113

GitHubkarammahmad/cve-2021-40113

CVE documentation repository detailing unauthenticated remote vulnerabilities in Cisco Catalyst PON Series Switches ONT, including default credential…

authenticationconfiguration-auditingexploitation+3
3 years ago
sonicwall-audit-toolkit preview

sonicwall-audit-toolkit

GitHubanir0y/sonicwall-audit-toolkit

SonicWall security audit toolkit with vulnerable CTF lab (CVE-2021-20038, CVE-2024-53704)

authenticationconfiguration-auditingctf+5
6 months ago
How-To-Secure-A-Linux-Server preview

How-To-Secure-A-Linux-Server

GitHubimthenachoman/how-to-secure-a-linux-server

Step-by-step guide for hardening a Linux server, covering SSH security, firewalls, intrusion detection, auditing, and system configuration to reduce…

authenticationconfiguration-auditingcurated-resources+7
30.3k1 month ago
asterisk preview

asterisk

GitHubasterisk/asterisk

The official Asterisk Project repository.

authenticationconfiguration-auditingencryption-decryption-tools+1
3.5k1 day ago
WindowsProtocolTestSuites preview

WindowsProtocolTestSuites

GitHubmicrosoft/windowsprotocoltestsuites

⭐⭐ Join us at SNIA SDC for the SMB3 IO Lab (September 28 - October 1, 2026), see upcoming Interoperability Events

authenticationcloud-securityconfiguration-auditing+6
56515 days ago
Previous1…5678Next