Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
35 results
vucsa preview

vucsa

GitHubwarxim/vucsa

Deliberately vulnerable client-server application for learning penetration testing of non-HTTP thick clients. Includes challenges for SQL injection,…

binary-exploitationctfeducation+3
1033 years ago
CVE-2019-1068 preview

CVE-2019-1068

GitHubvulnerability-playground/cve-2019-1068

Root cause analysis and PoC for a Microsoft SQL Server Stack Overflow Vulnerability by reversing svl.dll.

binary-exploitationeducationexploitation+3
14 years ago
cve-2026-9082-drupal-postgresql-rce preview

cve-2026-9082-drupal-postgresql-rce

GitHubambionics/cve-2026-9082-drupal-postgresql-rce

Exploit for CVE-2026-9082, a Drupal JSON:API PostgreSQL SQL injection that escalates to RCE via preload library, with a local lab for testing.

binary-exploitationdatabase-securityeducation+7
114 months ago
CVE-2024-27766 preview

CVE-2024-27766

GitHuby0un9eee/cve-2024-27766

Modified PoC for MariaDB v11.1 RCE via UDF, returning command output inline through SQL queries. Includes detailed code comparison and compilation…

binary-exploitationcode-analysisdatabase-security+4
5 months ago
cve-2026-2005 preview

cve-2026-2005

GitHubdinosn/cve-2026-2005

Exploit for CVE-2026-2005, a heap overflow in PostgreSQL's pgcrypto extension leading to remote code execution. Includes PoC generators, Docker lab,…

binary-exploitationdatabase-securityexploitation+2
184 months ago
CVE-2026-39113 preview

CVE-2026-39113

GitHub20000419/cve-2026-39113

Advisory and AddressSanitizer reproducer for a SQLite SQLAR heap-buffer-overflow triggered by a crafted SZ value causing truncated allocation and…

binary-exploitationcode-analysisdatabase-security+2
1 month ago
redis-poc preview

redis-poc

GitHubberabuddies/redis-poc

RCE PoC for Redis 6.2.22, 7.4.9, 8.6.4, 8.8.0, 8.8.1

binary-exploitationdatabase-securityexploitation+3
5172 months ago
CVE-2025-49844 preview

CVE-2025-49844

GitHubdwisiswant0/cve-2025-49844

Proof-of-concept exploit for Redis 8.2.1 Lua parser use-after-free, racing garbage collection via crafted loadstring calls to achieve remote code…

binary-exploitationdatabase-securityexploitation+2
6611 months ago
CVE-2022-4262 preview

CVE-2022-4262

GitHubmistymntncop/cve-2022-4262

Exploit for CVE-2022-4262, a Chromium browser vulnerability. Includes references to official bug report, in-the-wild exploit analysis, and root cause…

binary-exploitationexploitationvulnerability-analysis+1
582 years ago
CVE-2026-2005 preview

CVE-2026-2005

GitHubvar77/cve-2026-2005

PoC for CVE-2026-2005

binary-exploitationdatabase-securityeducation+4
274 months ago
CVE-2025-14847 preview

CVE-2025-14847

GitHubprobiusofficial/cve-2025-14847

poc for CVE-2025-14847

binary-exploitationdatabase-securityeducation+3
269 months ago
CVE-2026-14669 preview

CVE-2026-14669

GitHubhackspeak/cve-2026-14669

Proof-of-concept exploit for CVE-2026-14669, a PostgreSQL to_char() timezone abbreviation heap buffer overflow enabling RCE through information leak…

binary-exploitationdatabase-securityexploitation+4
31 month ago
CVE-2026-85046-who-put-the-silverback-guerilla-in-the-wasm preview

CVE-2026-85046-who-put-the-silverback-guerilla-in-the-wasm

GitHubsneakynachos/cve-2026-85046-who-put-the-silverback-guerilla-in-the-wasm

Proof-of-concept exploit for CVE-2026-85046 in Chrome 152.0.7977.75, demonstrating type confusion in sort() to achieve arbitrary code execution via a…

binary-exploitationexploitationvulnerability-analysis+1
122 days ago
CVE-2022-31626 preview

CVE-2022-31626

GitHubamitlttwo/cve-2022-31626

Proof-of-concept exploit for CVE-2022-31626, a buffer overflow in PHP's pdo_mysql with mysqlnd driver that can lead to remote code execution.

binary-exploitationdatabase-securityexploitation+2
62 years ago
CVE-2026-6300-PoC preview

CVE-2026-6300-PoC

GitHubnotthemystery/cve-2026-6300-poc

This is a Proof-of-Concept for the Blink CSS UAF vulnerability tracked as CVE-2026-6300.

binary-exploitationexploitationvulnerability-analysis+1
2 months ago
CVE-2025-46817 preview

CVE-2025-46817

GitHubdwisiswant0/cve-2025-46817

Proof-of-concept for Redis Lua unpack integer overflow (CVE-2025-46817) demonstrating stack blow-up and potential RCE on Redis 8.2.1.

binary-exploitationdatabase-securityexploitation+2
311 months ago
CVE-2020-6418-PoC preview

CVE-2020-6418-PoC

GitHubgoyotan/cve-2020-6418-poc

for 供養

binary-exploitationexploitationvulnerability-analysis+1
36 years ago
CVE-2026-25243 preview

CVE-2026-25243

GitHubcaptain-woof/cve-2026-25243

Stable POC for CVE-2026-25243 (Redis RESTORE double-free -> remote code execution)

binary-exploitationdatabase-securityexploitation+4
11 month ago
Previous12Next