Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1292 results
CVE-2025-56643 preview

CVE-2025-56643

GitHub0xbs0d27/cve-2025-56643

Public reference for CVE-2025-56643 – Wiki.js 2.5.307 JWT Session Vulnerability

api-securityauthenticationexploitation+2
1
10 months ago
CVE-2023-41508 preview

CVE-2023-41508

GitHubredblueteam/cve-2023-41508

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

authenticationexploitationmisconfiguration+3
13 years ago
CVE-2026-20079 preview

CVE-2026-20079

GitHub0xblackash/cve-2026-20079

CVE-2026-20079

authenticationexploitationpenetration-testing+3
5 months ago
JWT-Bruteforcer preview

JWT-Bruteforcer

GitHubrealbatuhan/jwt-bruteforcer

Jwt Bruteforcer with CVE-2018-1000531 Test

authenticationexploitationpassword-attacks+2
11 year ago
CVE-2023-3460 preview

CVE-2023-3460

GitHubemadyay/cve-2023-3460

CVE-2023-3460

authenticationexploitationpenetration-testing+3
3 years ago
CVE-2025-48461 preview

CVE-2025-48461

GitHubjoelczk/cve-2025-48461

Technical disclosure of a predictable session cookie vulnerability (CVE-2025-48461) in Advantech WISE-4060 IoT portal, enabling bruteforce…

authenticationexploitationiot-security+3
1 year ago
CVE-2025-55668 preview

CVE-2025-55668

GitHubgregk4sec/cve-2025-55668

Apache Tomcat - Session fixation via rewrite valve

authenticationexploitationpenetration-testing+2
1 year ago
buffalo preview

buffalo

GitHubd0n601/buffalo

A python3 multithreaded SSH dictionary attack tool

authenticationpassword-attackspenetration-testing+1
15 years ago
CVE-2026-24061-GNU-Inetutils-telnetd-Remote-Authentication-Bypass-Root-Shell- preview

CVE-2026-24061-GNU-Inetutils-telnetd-Remote-Authentication-Bypass-Root-Shell-

GitHubmbanyamer/cve-2026-24061-gnu-inetutils-telnetd-remote-authentication-bypass-root-shell-

Proof-of-concept exploit for GNU Inetutils telnetd authentication bypass (CVE-2026-24061) that spawns a root shell via crafted NEW-ENVIRON USER…

authenticationexploitationpenetration-testing+3
6 months ago
CVE-2025-60375 preview

CVE-2025-60375

GitHubajansha/cve-2025-60375

Proof-of-concept for an authentication bypass in PerfexCRM prior to 3.3.1, demonstrating how empty credentials can grant unauthorized admin access.

authenticationexploitationpenetration-testing+2
11 months ago
CVE-2025-14269 preview

CVE-2025-14269

GitHubr0binak/cve-2025-14269

CVE-2025-14269 PoC exploit

authenticationcloud-securityexploitation+3
8 months ago
Bash-Script-CVE-2019-17662 preview

Bash-Script-CVE-2019-17662

GitHubkxisxr/bash-script-cve-2019-17662

ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server. The vulnerability exists even when authentication…

authenticationexploitationinformation-gathering+3
14 years ago
CVE-2025-45466 preview

CVE-2025-45466

GitHubzgsnj123/cve-2025-45466

It is the details of CVE-2025-45466

authenticationembedded-systems-securityexploitation+6
11 year ago
CVE-2025-44823 preview

CVE-2025-44823

GitHubskraft9/cve-2025-44823

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

api-securityauthenticationexploitation+3
9 months ago
CVE-2026-46376 preview

CVE-2026-46376

GitHubportbuster1337/cve-2026-46376

CVE-2026-46376 - FreePBX Unauthenticated UCP Access via Hard-Coded Credentials

authenticationeducationexploitation+4
3 months ago
CVE-2025-60375 preview

CVE-2025-60375

GitHubahamedyaseen03/cve-2025-60375

CVE-2025-60375 — Authentication bypass / incorrect access control in PerfexCRM < 3.3.1 (admin login)

authenticationmisconfigurationpenetration-testing+3
10 months ago
CVE-2025-63587 preview

CVE-2025-63587

GitHubnrtlox/cve-2025-63587

CVE-2025-63587

authenticationhardware-securityinformation-gathering+3
6 months ago
merge-authz-test preview

merge-authz-test

GitHubmanoelprovider20-lgtm/merge-authz-test

authz test (CVE-2026-1999 siblings)

authenticationcode-analysisexploitation+2
1 month ago
Previous1…666768…72Next