Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
27 results
PS4-6.20-WebKit-Code-Execution-Exploit preview

PS4-6.20-WebKit-Code-Execution-Exploit

GitHubcryptogenic/ps4-6.20-webkit-code-execution-exploit

A WebKit exploit using CVE-2018-4441 to obtain RCE on PS4 6.20.

binary-exploitationexploitationpayload-development+3
209
7 years ago
WAMpage preview

WAMpage

GitHubdavidbuchanan314/wampage

WAMpage - A WebOS root LPE exploit chain (CVE-2022-23731)

binary-exploitationembedded-systems-securityexploitation+5
504 years ago
CVE_2025_24257----NOT-MINE preview

CVE_2025_24257----NOT-MINE

GitHublearningdisordercapital35/cve_2025_24257----not-mine

Demonstrate CVE-2025-24257 with a public PoC for IOGPUFamily kernel heap OOB read/write and panic analysis

binary-exploitationexploitationmemory-forensics+2
4h 44m ago
Zapscape preview

Zapscape

GitHubaarif450/zapscape

Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.

binary-exploitationdefensive-toolsexploitation+2
12 days ago
Tor-0day-JavaScript-Exploit preview

Tor-0day-JavaScript-Exploit

GitHubmoscovium-mc/tor-0day-javascript-exploit

Firefox/Tor Browser 0day exploit analysis (CVE-2024-9680) A UAF in animation timelines leading to RCE. Patched.

binary-exploitationeducationexploitation+3
109 months ago
CVE-2026-34621 preview

CVE-2026-34621

GitHubazefzafyoussef/cve-2026-34621

Research PoC demonstrating a prototype pollution and JavaScript injection chain in Adobe Acrobat Reader, enabling privileged JavaScript execution and…

binary-exploitationeducationexploitation+5
254 months ago
TFC-Chrome-v8-bug-CVE-2021-38001-poc preview

TFC-Chrome-v8-bug-CVE-2021-38001-poc

GitHubpeterpan0927/tfc-chrome-v8-bug-cve-2021-38001-poc

Proof-of-concept exploit for CVE-2021-38001, a Chrome V8 JavaScript engine vulnerability. Demonstrates exploitation via d8 shell with a malicious…

binary-exploitationexploitationvulnerability-analysis+1
234 years ago
CVE-2017-0038-EXP-C-JS preview

CVE-2017-0038-EXP-C-JS

GitHubk0keoyo/cve-2017-0038-exp-c-js

C and JavaScript exploit for CVE-2017-0038, demonstrating memory corruption exploitation with debug-based memory leak observation.

binary-exploitationdebuggersexploitation+2
69 years ago
CVE-2022-44789 preview

CVE-2022-44789

GitHubalalng/cve-2022-44789

Proof-of-concept exploit and writeup for CVE-2022-44789, a heap buffer overflow in MuJS JavaScript interpreter, including vulnerable version and…

binary-exploitationeducationexploitation+2
123 years ago
CVE-2019-13764 preview

CVE-2019-13764

GitHubhabooblab/cve-2019-13764

Full exploit for CVE-2019-13764 targeting V8 JavaScript engine on Linux, with root cause analysis and proof-of-concept code from Haboob Research Team.

binary-exploitationeducationexploitation+2
105 years ago
v8-poc-CVE-2026-5865 preview

v8-poc-CVE-2026-5865

GitHubcrihexe/v8-poc-cve-2026-5865

Minimal JavaScript proof-of-concept for V8 engine vulnerability CVE-2026-5865, with scripts to patch and calibrate the exploit for d8.

binary-exploitationexploitationvulnerability-analysis+1
64 months ago
TFC-Chrome-v8-bug-CVE-2021-38001-poc preview

TFC-Chrome-v8-bug-CVE-2021-38001-poc

GitHubmaldiohead/tfc-chrome-v8-bug-cve-2021-38001-poc

Proof-of-concept exploit for CVE-2021-38001, a Chrome V8 JavaScript engine vulnerability, demonstrating remote code execution via crafted .mjs files.

binary-exploitationexploitationshellcode+2
54 years ago
firefox-rce-nssmil preview

firefox-rce-nssmil

GitHubsoham23/firefox-rce-nssmil

Educational standalone JavaScript implementation of the public exploit for CVE-2016-9079 (Firefox Use-After-Free), adapted from the original…

binary-exploitationctfeducation+3
12 months ago
CVE-2025-6554 preview

CVE-2025-6554

GitHubpwntoday/cve-2025-6554

Proof-of-concept exploit for a V8 JavaScript engine vulnerability (CVE-2025-6554) demonstrating a TDZ bypass that leaks 'The Hole' sentinel, enabling…

binary-exploitationeducationexploitation+2
21 year ago
CVE-2026-2763-POC preview

CVE-2026-2763-POC

GitHubppwwiinn/cve-2026-2763-poc

Proof-of-concept exploit for CVE-2026-2763, a use-after-free in Mozilla's JavaScript engine, demonstrating a constrained 1-bit write primitive…

binary-exploitationexploitationmemory-forensics+2
26 months ago
POC-CVE-2025-6554 preview

POC-CVE-2025-6554

GitHubghostn4444/poc-cve-2025-6554

Proof-of-concept exploit for CVE-2025-6554, a V8 JavaScript engine vulnerability allowing unauthorized access to uninitialized 'Hole' values via…

binary-exploitationeducationexploitation+3
11 year ago
CTT-Apple-Silicon-Refraction preview

CTT-Apple-Silicon-Refraction

GitHubsimoesctt/ctt-apple-silicon-refraction

webkit_refraction.js (The 33-Layer WebGL Payload) ​This JavaScript payload uses the \alpha constant to create a high-frequency "Memory Shiver." It…

binary-exploitationexploitationios-security+4
17 months ago
CVE-2026-14431 preview

CVE-2026-14431

GitHubjaf0rk/cve-2026-14431

Exploit for CVE-2026-14431 providing V8 sandbox read/write primitives via a crafted JavaScript file, targeting Chromium's V8 engine on Linux x64.

binary-exploitationexploitationmemory-forensics+2
2 months ago
Previous12Next