Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
47 results
CVE-2025-48799- preview

CVE-2025-48799-

GitHubgmh5225/cve-2025-48799-

Proof-of-concept exploit for CVE-2025-48799, an Apache Tomcat remote code execution vulnerability. Demonstrates integer overflow exploitation via…

binary-exploitationeducationexploitation+5
1 year ago
cve-2022-21907-http.sys preview

cve-2022-21907-http.sys

GitHubiveresk/cve-2022-21907-http.sys

An unauthenticated attacker can send an HTTP request with an "Accept-Encoding" HTTP request header triggering a double free in the unknown…

binary-exploitationexploitationpenetration-testing+2
14 years ago
CVE-2023-26976_tenda_AC6_stack_overflow preview

CVE-2023-26976_tenda_AC6_stack_overflow

GitHubfzbacon/cve-2023-26976_tenda_ac6_stack_overflow

Proof-of-concept exploit for CVE-2023-26976, a stack overflow vulnerability in Tenda AC6 routers, enabling remote code execution via crafted HTTP…

binary-exploitationembedded-systems-securityexploitation+3
12 years ago
CVE-2014-6271 preview

CVE-2014-6271

GitHubdilith006/cve-2014-6271

Exploit for CVE-2014-6271 (Shellshock) enabling remote code execution via crafted HTTP headers against vulnerable Bash versions.

binary-exploitationexploitationpenetration-testing+2
6 years ago
CVE-2022-30114 preview

CVE-2022-30114

GitHubstr0ng4le/cve-2022-30114

Proof-of-concept exploit for CVE-2022-30114, a heap-based buffer overflow in Fastweb FastGate routers. Sends a crafted HTTP Authorization header to…

binary-exploitationexploitationiot-security+3
3 years ago
CVE-2023-25234_Tenda_AC6_stack_overflow preview

CVE-2023-25234_Tenda_AC6_stack_overflow

GitHubfzbacon/cve-2023-25234_tenda_ac6_stack_overflow

Proof-of-concept exploit for CVE-2023-25234, a stack overflow vulnerability in Tenda AC6 routers, enabling remote code execution via crafted HTTP…

binary-exploitationembedded-systems-securityexploitation+2
3 years ago
Nginx-Rift preview

Nginx-Rift

GitHubdepthfirstdisclosures/nginx-rift

NGINX RCE exploits

binary-exploitationexploitationpayload-development+3
9251 month ago
CVE-2021-34730 preview

CVE-2021-34730

GitHubbadmonkey7/cve-2021-34730

Cisco RV110w UPnP stack overflow

binary-exploitationdebuggersembedded-systems-security+7
284 years ago
CVE-2026-42945-POC preview

CVE-2026-42945-POC

GitHubp3nt3st3r-star/cve-2026-42945-poc

Proof-of-concept exploit for CVE-2026-42945, a critical heap buffer overflow in NGINX's rewrite module enabling unauthenticated remote code…

binary-exploitationexploitationpayload-development+3
154 months ago
CVE-2026-42945 preview

CVE-2026-42945

GitHubrheodev/cve-2026-42945

NGINX Rift 漏洞分析与复现

binary-exploitationeducationexploitation+4
234 months ago
CVE-2013-2028-Exploit preview

CVE-2013-2028-Exploit

GitHubm4drat/cve-2013-2028-exploit

CVE-2013-2028 python exploit

binary-exploitationexploitationpayload-development+4
196 years ago
RTSPServer-Code-Execution-Vulnerability preview

RTSPServer-Code-Execution-Vulnerability

GitHubr3dxpl0it/rtspserver-code-execution-vulnerability

RTSPServer Code Execution Vulnerability CVE-2018-4013

binary-exploitationeducationexploitation+3
157 years ago
CVE-2026-27654 preview

CVE-2026-27654

GitHubjohanneslks/cve-2026-27654

NGINX `ngx_http_dav_module` Heap Buffer Overflow via `size_t` Underflow (Remote DoS / Potential RCE)

binary-exploitationeducationexploitation+3
92 months ago
CVE-2021-31166 preview

CVE-2021-31166

GitHubzha0gongz1/cve-2021-31166

PoC for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely. Although it was defined as remote command execution, it can only cause…

binary-exploitationexploitationpenetration-testing+2
95 years ago
CVE-2026-42945 preview

CVE-2026-42945

GitHubjelasin/cve-2026-42945

Proof-of-concept exploit for CVE-2026-42945, a heap buffer overflow in NGINX's rewrite module enabling unauthenticated remote code execution via…

binary-exploitationexploitationpayload-development+3
44 months ago
cve-2026-42945 preview

cve-2026-42945

GitHubfranklinf25/cve-2026-42945

Analyzes CVE-2026-42945, an NGINX rewrite heap overrun, providing a differential detector, deterministic DoS PoC, and a credited RCE port with…

binary-exploitationeducationexploitation+3
15 days ago
misfortune-cookie preview

misfortune-cookie

GitHubluel-4013/misfortune-cookie

Interactive PoC suite for CVE-2014-9222 (Misfortune Cookie) and related router exploits, featuring detection, auth bypass, DoS, and RCE modules with…

binary-exploitationembedded-systems-securityexploitation+6
7 days ago
CVE-2010-5301 preview

CVE-2010-5301

GitHublem0nsec/cve-2010-5301

A proof of concept of an SEH overflow with arbitrary dll injection

binary-exploitationexploitationpayload-development+3
24 years ago
Previous123Next