Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
3242 results
CVE-2024-24945-NGINX-RIFT---TryHackMe-Lab-Walkthrough preview

CVE-2024-24945-NGINX-RIFT---TryHackMe-Lab-Walkthrough

GitHubbenedictejepu/cve-2024-24945-nginx-rift---tryhackme-lab-walkthrough

This lab demonstrates the exploitation of CVE-2024-24945, a heap corruption vulnerability affecting NGINX. The objective was to understand how memory…

binary-exploitationctfeducation+5
2 months ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubvictor875/cve-2025-5548

Develops a proof-of-concept exploit for CVE-2025-5548, a stack-based buffer overflow enabling remote code execution, with detailed technical analysis…

binary-exploitationctfeducation+5
5 months ago
CVE-2026-8838-RCE preview

CVE-2026-8838-RCE

GitHubmaxime288/cve-2026-8838-rce

Educational PoC for CVE-2026-8838, a critical RCE vulnerability in Amazon Redshift Python Driver via unsafe eval() in vector_in(). Includes technical…

binary-exploitationctfeducation+3
3 months ago
iCSeeU preview

iCSeeU

GitHublr-m/icseeu

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!

binary-exploitationctfdebuggers+9
21 year ago
CVE-2025-14765-and-CVE-2025-14766 preview

CVE-2025-14765-and-CVE-2025-14766

GitHubinfosecantara/cve-2025-14765-and-cve-2025-14766

Interactive browser-based lab simulating Chrome memory corruption vulnerabilities (CVE-2025-14765/14766) for safe security training, featuring…

binary-exploitationctfeducation+4
28 months ago
CVE-2025-14321 preview

CVE-2025-14321

GitHubh3raklez/cve-2025-14321

Proof-of-concept demonstrating a Use-After-Free vulnerability in Firefox's RTCEncodedFrameBase via WebRTC Encoded Transforms, enabling heap…

binary-exploitationctfeducation+4
27 months ago
CVE-2025-21756 preview

CVE-2025-21756

GitHubh3raklez/cve-2025-21756

Educational lab demonstrating a use-after-free (UAF) exploit in the Linux kernel's vsock subsystem for local privilege escalation to root, with…

binary-exploitationctfeducation+4
15 months ago
forti_shield preview

forti_shield

GitHubapexpredator-infosec/forti_shield

A combined POC for CVE-2021-31955, CVE-2015-4077, and CVE-2015-5736

binary-exploitationctfeducation+2
29 months ago
CVE-2021-4034-CTF-writeup preview

CVE-2021-4034-CTF-writeup

GitHubwechicken456/cve-2021-4034-ctf-writeup

CTF pwn challenge writeup exploiting CVE-2021-4034 (pkexec) via heap manipulation, with Ghidra-based reverse engineering and a custom shelly.so…

binary-exploitationctfeducation+3
22 years ago
CVE-2026-2005_lab preview

CVE-2026-2005_lab

GitHubstvm8/cve-2026-2005_lab

Self-contained Docker lab for practicing exploitation of CVE-2026-2005, a heap buffer overflow in PostgreSQL's pgcrypto extension, enabling privilege…

binary-exploitationctfdatabase-security+4
4 months ago
copy-fail-go preview

copy-fail-go

GitHub3jee/copy-fail-go

Go port of the CVE-2026-31431 (copy-fail) Linux kernel privilege escalation PoC, with automatic SUID binary enumeration and interactive target…

binary-exploitationctfexploitation+5
14 months ago
CVE-2007-4559-lab preview

CVE-2007-4559-lab

GitHubjithinodattu/cve-2007-4559-lab

Self-contained Docker lab demonstrating CVE-2007-4559 (TarSlip) directory traversal via Python's tarfile module. Includes vulnerable and fixed APIs,…

binary-exploitationcode-analysisctf+6
4 months ago
CVE-2023-42115 preview

CVE-2023-42115

GitHubdoaso/cve-2023-42115

Remote code execution exploit for Exim AUTH out-of-bounds write vulnerability (CVE-2023-42115). No authentication required; includes build and usage…

binary-exploitationexploitationpenetration-testing+2
15 months ago
Info-Sys-Security-CVE-2025-55182 preview

Info-Sys-Security-CVE-2025-55182

GitHubmuharremk0/info-sys-security-cve-2025-55182

Academic lab for analyzing CVE-2025-55182 (React2Shell) with vulnerable and patched React Server Components environments, exploit shell, automated…

binary-exploitationctfeducation+5
3 months ago
lab-cve-2023-4863 preview

lab-cve-2023-4863

GitHubpixelotes/lab-cve-2023-4863

Docker-based lab to reproduce CVE-2023-4863 (heap buffer overflow in libwebp) with automated crash demonstration, patched vs vulnerable comparison,…

binary-exploitationctfeducation+3
4 months ago
process-injection-playground preview

process-injection-playground

GitHuboscerd/process-injection-playground

A collection of samples and material related to process injection

binary-exploitationctfeducation+3
19 months ago
CVE-2025-65018_Exploit_Challenge preview

CVE-2025-65018_Exploit_Challenge

GitHubbohemian-miser/cve-2025-65018_exploit_challenge

CTF challenge exploiting a heap overflow in libpng's png_image_finish_read to overwrite a function pointer and spawn a shell, with build scripts and…

binary-exploitationctfeducation+3
19 months ago
cve-2025-55182-poc preview

cve-2025-55182-poc

GitHubtrax69/cve-2025-55182-poc

Proof of Concept for CVE-2025-55182 ("React2Shell"). A fully dockerized environment demonstrating Remote Code Execution (RCE) via insecure…

binary-exploitationctfeducation+6
9 months ago
Previous1…456…100Next