Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
39 results
CVE-2022-40684 preview

CVE-2022-40684

GitHubhorizon3ai/cve-2022-40684

A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

authenticationexploitationexploit-frameworks+3
358
3 years ago
CVE-2022-22972 preview

CVE-2022-22972

GitHubhorizon3ai/cve-2022-22972

Proof-of-concept exploit for CVE-2022-22972 that bypasses authentication in VMware Workspace ONE, vIDM, and vRealize Automation 7.6 via Host header…

authenticationexploitationpenetration-testing+3
1504 years ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubhawa771/cve-2022-40684

Fortinet Critical Authentication Bypass Vulnerability (CVE-2022-40684) [ Mass Exploit ]

authenticationexploitationpenetration-testing+3
23 years ago
CVE-2022-4361 preview

CVE-2022-4361

GitHubfaccimatteo/cve-2022-4361

Proof-of-concept exploit for CVE-2022-4361, a reflected XSS vulnerability in Keycloak's OIDC authentication flow, with Docker-based test environment…

api-securityauthenticationexploitation+3
9 months ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubpuckiestyle/cve-2022-40684

Proof-of-concept exploit for CVE-2022-40684 authentication bypass in Fortinet FortiOS, FortiProxy, and FortiSwitchManager, enabling SSH key injection…

authenticationexploitationnetwork-security+3
3 years ago
cacti-cve-2022-46169-exploit preview

cacti-cve-2022-46169-exploit

GitHubariyaadinatha/cacti-cve-2022-46169-exploit

This is poc of CVE-2022-46169 authentication bypass and remote code execution

authenticationeducationexploitation+3
153 years ago
cve-2022-31749 preview

cve-2022-31749

GitHubiveresk/cve-2022-31749

PoC checker for CVE-2022-31749 exploiting a parameter injection vulnerability in WatchGuard SSH interface to exfiltrate hashed user passwords via FTP.

authenticationdata-exfiltrationexploitation+3
14 years ago
CVE-2022-25262 preview

CVE-2022-25262

GitHubyuriisanin/cve-2022-25262

PoC + vulnerability details for CVE-2022-25262 / JetBrains Hub single-click SAML response takeover

authenticationexploitationpenetration-testing+3
174 years ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubcarlosevieira/cve-2022-40684

PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)

authenticationexploitationpenetration-testing+2
873 years ago
cve-2022-22976-bcrypt-skips-salt preview

cve-2022-22976-bcrypt-skips-salt

GitHubspring-io/cve-2022-22976-bcrypt-skips-salt

CLI tool to detect and update BCrypt password hashes with vulnerable work factor 31, integrating with Spring Security databases for CVE-2022-xxxx…

authenticationdatabase-securityencryption-decryption-tools+3
14 years ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubccordeiro/cve-2022-40684

PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)

authenticationexploitationinformation-gathering+3
9 months ago
demo-cve-2022-21449 preview

demo-cve-2022-21449

GitHubvolodymyr-hladkyi-symphony/demo-cve-2022-21449

Educational demo of CVE-2022-21449 Java ECDSA signature bypass using real and fake JWT tokens to illustrate the vulnerability and its impact on…

authenticationcryptographyeducation+3
1 year ago
CVE-2022-39227 preview

CVE-2022-39227

GitHubuser0x1337/cve-2022-39227

CVE-2022-39227 : Proof of Concept

authenticationctfexploitation+3
222 years ago
CVE-2022-21500 preview

CVE-2022-21500

GitHubcappricio-securities/cve-2022-21500

Oracle E-Business Suite <=12.2 - Authentication Bypass

authenticationexploitationinformation-gathering+3
12 years ago
MultiExploit preview

MultiExploit

GitHubvesu-nights/multiexploit

CVE-2023-21173 Exploit - Remote Code Execution in SQL Server 2022

authenticationdatabase-securityexploitation+3
1 year ago
CVE-2022-1388 preview

CVE-2022-1388

GitHub0xf4n9x/cve-2022-1388

CVE-2022-1388 F5 BIG-IP iControl REST Auth Bypass RCE

authenticationcommand-and-controlexploitation+3
844 years ago
CVE-2022-46169 preview

CVE-2022-46169

GitHub0xf4n9x/cve-2022-46169

CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.

authenticationcommand-and-controlexploitation+3
473 years ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubund3sc0n0c1d0/cve-2022-40684

Utilities for exploiting vulnerability CVE-2022-40684 (FortiOS / FortiProxy / FortiSwitchManager - Authentication bypass on administrative interface).

authenticationexploitationpenetration-testing+2
43 years ago
Previous123Next