Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
12 results
cve-2022-42475 preview

cve-2022-42475

GitHubscrt/cve-2022-42475

POC code to exploit the Heap overflow in Fortinet's SSLVPN daemon

binary-exploitationexploitationpenetration-testing+2
109
3 years ago
gsscred-move-uaf preview

gsscred-move-uaf

GitHubbazad/gsscred-move-uaf

CVE-2018-4343: Proof-of-concept for a use-after-free in the GSSCred daemon on macOS and iOS.

binary-exploitationexploitationios-security+2
78 years ago
CVE-2026-43499-pmg110-root preview

CVE-2026-43499-pmg110-root

GitHubsoralis0912/cve-2026-43499-pmg110-root

Android LPE exploit for CVE-2026-43499 targeting OPPO PMG110 (kernel 6.6). Uses futex PI UAF to gain root and install a su daemon via LD_PRELOAD.

android-securitybinary-exploitationexploitation+7
21 month ago
cve-2022-42475-Fortinet preview

cve-2022-42475-Fortinet

GitHubmustafa1986/cve-2022-42475-fortinet

Python exploit for CVE-2022-42475 heap overflow in Fortinet SSLVPN daemon. Delivers reverse shell via pwntools with customizable target, port, and…

binary-exploitationexploitationpayload-generation+3
13 years ago
CVE-2007-1567 preview

CVE-2007-1567

GitHubthemalwareguardian/cve-2007-1567

Classic stack-based buffer overflow in War FTP Daemon 1.65 demonstrating old-school remote code execution through malformed FTP commands.

binary-exploitationeducationexploitation+3
15 months ago
CVE-2024-5243-pwn2own-toronto-2023 preview

CVE-2024-5243-pwn2own-toronto-2023

GitHubredpack-kr/cve-2024-5243-pwn2own-toronto-2023

Pre-authentication Remote Code Execution exploit for TP-Link Omada ER605 router via DDNS client daemon (cmxddnsd)

binary-exploitationeducationexploitation+4
7 months ago
cve-2024-20017 preview

cve-2024-20017

GitHubmellow-hype/cve-2024-20017

exploits for CVE-2024-20017

binary-exploitationexploitationpayload-development+2
1372 years ago
launchd-portrep preview

launchd-portrep

GitHubbazad/launchd-portrep

CVE-2018-4280: Mach port replacement vulnerability in launchd on macOS 10.13.5 leading to local privilege escalation and SIP bypass.

binary-exploitationexploitationexploit-frameworks+3
597 years ago
cve-2022-42475 preview

cve-2022-42475

GitHubamir-hy/cve-2022-42475

FortiOS buffer overflow vulnerability

binary-exploitationeducationexploitation+2
73 years ago
CVE-2026-41651 preview

CVE-2026-41651

GitHublutfifakee-project/cve-2026-41651

Local privilege escalation exploit targeting PackageKit's TOCTOU race condition (CVE-2026-41651). Escalates from unprivileged user to root via polkit…

binary-exploitationeducationexploitation+3
43 months ago
vsFTPd-2.3.4-Exploit preview

vsFTPd-2.3.4-Exploit

GitHubjun41ds2709/vsftpd-2.3.4-exploit

Python exploit for the vsFTPd 2.3.4 backdoor (CVE-2011-2523).

binary-exploitationctfeducation+3
113 days ago
CVE-2026-0073-Android-client-TLS-auth-bypass preview

CVE-2026-0073-Android-client-TLS-auth-bypass

GitHubm00ddy/cve-2026-0073-android-client-tls-auth-bypass

translating original python exploit to C

android-securitybinary-exploitationexploitation+3
3 months ago