Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
334 results
CVE-2019-17662 preview

CVE-2019-17662

GitHubmuirlandoracle/cve-2019-17662

Exploit code for CVE-2019-17662

authentication-authorizationexploitationpenetration-testing+2
19
5 years ago
smartermail-CVE-2026-23760-poc preview

smartermail-CVE-2026-23760-poc

GitHubmaxmnml/smartermail-cve-2026-23760-poc

CVE-2026-23760 - An authentication bypass via password reset API in SmarterMail.

authentication-authorizationexploitationpenetration-testing+3
67 months ago
CVE-2024-38473 preview

CVE-2024-38473

GitHubabdurahmon3236/cve-2024-38473

Proof-of-concept demonstrating an encoding flaw in Apache HTTP Server mod_proxy that can bypass authentication via crafted encoded URLs.

authentication-authorizationexploitationpenetration-testing+3
32 years ago
CVE-2026-23552 preview

CVE-2026-23552

GitHuboscerd/cve-2026-23552

CVE-2026-23552 - Cross-Realm Token Acceptance in camel-keycloak

api-securityauthentication-authorizationeducation+3
7 months ago
CVE-2018-10933 preview

CVE-2018-10933

GitHubbidaoui4905/cve-2018-10933

LibSSH authentification bypass

authentication-authorizationexploitationnetwork-security+2
8 months ago
CVE-2026-63520 preview

CVE-2026-63520

GitHubhypnguyen1209/cve-2026-63520

Exploit chain for unauthenticated RCE on Microsoft SharePoint, combining a JWT authentication bypass with unsafe .NET type instantiation to achieve…

authentication-authorizationexploitationpayload-development+5
120 days ago
CVE-2026-51119 preview

CVE-2026-51119

GitHuba17-ba/cve-2026-51119

Technical analysis and advisory for CVE-2026-51119, a privilege escalation in Invixium IXM WEB allowing authenticated low-privilege users to create…

authentication-authorizationexploitationpenetration-testing+3
12 months ago
CVE-2024-7593_PoC_Exploit preview

CVE-2024-7593_PoC_Exploit

GitHubd3n14ld15k/cve-2024-7593_poc_exploit

CVE-2024-7593 Ivanti Virtual Traffic Manager 22.2R1 / 22.7R2 Admin Panel Authentication Bypass PoC [EXPLOIT]

authentication-authorizationexploitationpenetration-testing+3
91 year ago
CVE-2020-14882 preview

CVE-2020-14882

GitHubmurataydemir/cve-2020-14882

[CVE-2020-14882] Oracle WebLogic Server Authentication Bypass

authentication-authorizationexploitationpenetration-testing+2
35 years ago
CVE-2024-10924-Exploit preview

CVE-2024-10924-Exploit

GitHubnxploited/cve-2024-10924-exploit

Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass

authentication-authorizationeducationexploitation+3
21 year ago
CVE-2021-29156 preview

CVE-2021-29156

GitHub5amu/cve-2021-29156

Exploit for CVE-2021-29156

authentication-authorizationexploitationpenetration-testing+2
13 years ago
CVE-2024-48322 preview

CVE-2024-48322

GitHubtrqt/cve-2024-48322

Exploit for CVE-2024-48322 targeting RunCodes instances. Retrieves user passwords via email inbox after authentication bypass, requiring only any…

authentication-authorizationexploitationinformation-gathering+2
11 year ago
kubernetes-client__java_CVE-2020-8570_client-java-parent-9_0_2_fixed preview

kubernetes-client__java_CVE-2020-8570_client-java-parent-9_0_2_fixed

GitHubshoucheng3/kubernetes-client__java_cve-2020-8570_client-java-parent-9_0_2_fixed

Java client library for the Kubernetes API, enabling programmatic management of clusters, pods, deployments, and other resources with support for…

api-securityauthentication-authorizationcloud-infrastructure-security+3
9 months ago
opa preview

opa

GitHubopen-policy-agent/opa

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

api-securityauthenticationauthentication-authorization+10
12.2k12h 53m ago
CVEs preview

CVEs

GitHubrhinosecuritylabs/cves

Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs

authentication-authorizationexploitationpenetration-testing+3
9081 year ago
parsec-cloud preview

parsec-cloud

GitHubscille/parsec-cloud

Open source Dropbox-like file sharing with full client encryption !

authentication-authorizationcloud-securityencryption-decryption-tools+1
31014h 11m ago
CVE-2026-25604-PoC preview

CVE-2026-25604-PoC

GitHubjohn-jung/cve-2026-25604-poc

A PoC for demonstrating CVE-2026-25604

authentication-authorizationcloud-securityeducation+4
4 months ago
CVE-2026-73317 preview

CVE-2026-73317

GitHubbombobombone/cve-2026-73317

Proof-of-concept exploit and technical write-up for CVE-2026-73317, an authorization bypass in XenForo allowing limited admins to approve content as…

authentication-authorizationexploitationmisconfiguration+3
16 days ago
Previous1…8910…19Next