Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
205 results
CVE-2022-3294 preview

CVE-2022-3294

GitHubarbaaz29/cve-2022-3294

Privilege Escalation using nodes/proxy (create action allowed) and nodes/status (update/patch actions allowed)

cloud-securitycontainer-securityexploitation+3
8 months ago
Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover preview

Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover

GitHubmrk336/cluster-chaos-exploiting-cve-2025-59359-for-kubernetes-takeover

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

cloud-securitycommand-and-controlcontainer-security+8
1 year ago
CVE-2026-54420-LiteSpeed-Symlink-Exploit preview

CVE-2026-54420-LiteSpeed-Symlink-Exploit

GitHubfevar54/cve-2026-54420-litespeed-symlink-exploit

PoC de CVE-2026-54420: explotacion via symlink en el plugin LiteSpeed de cPanel/WHM.

cloud-securityeducationexploitation+3
3 months ago
Azure-Networking-Privilege-Escalation-Exploit-CVE-2025-54914 preview

Azure-Networking-Privilege-Escalation-Exploit-CVE-2025-54914

GitHubmrk336/azure-networking-privilege-escalation-exploit-cve-2025-54914

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

cloud-infrastructure-securitycloud-securityeducation+6
1 year ago
cve-2019-5737 preview

cve-2019-5737

GitHubbeelzebruh/cve-2019-5737

Exploit for CVE-2019-5737, a Docker runc container escape vulnerability, with build and run instructions for Linux and Windows.

cloud-securitycontainer-escapecontainer-security+3
7 years ago
cve-2025-9074-poc preview

cve-2025-9074-poc

GitHubxrayzen/cve-2025-9074-poc

2025年8月20日に公開されたDockerDesktopの脆弱性(対策済み)を実証する

cloud-securitycontainer-securityeducation+3
1 year ago
CVE-2025-53786 preview

CVE-2025-53786

GitHubvincentdthe/cve-2025-53786

Proof-of-concept exploit for CVE-2025-53786, demonstrating privilege escalation in hybrid Microsoft Exchange environments via misconfigured trust…

cloud-securityeducationexploitation+3
1 year ago
ctf-cve-2019-11043 preview

ctf-cve-2019-11043

GitHuba1ex-var1amov/ctf-cve-2019-11043

Intentionally vulnerable PHP app with Nginx/PHP-FPM setup for reproducing CVE-2019-11043, including Docker and Kubernetes deployment,…

cloud-securitycontainer-securityctf+8
1 year ago
Blackash-CVE-2025-41115 preview

Blackash-CVE-2025-41115

GitHubrockmelodies/blackash-cve-2025-41115

CVE-2025-41115

authenticationcloud-securityexploitation+5
10 months ago
harbor-give-me-admin preview

harbor-give-me-admin

GitHubthelsa/harbor-give-me-admin

harbor(<1.7.6/1.8.3) privilege escalation (CVE-2019-16097)

cloud-securityexploitationpenetration-testing+3
6 years ago
CVE-2022-3172 preview

CVE-2022-3172

GitHubugorange/cve-2022-3172

Proof-of-concept exploit for CVE-2022-3172 in Kubernetes, demonstrating unauthorized access to metrics API via a crafted token.

cloud-securitycontainer-securityexploitation+3
2 years ago
CVE-2021-43858-MinIO preview

CVE-2021-43858-MinIO

GitHubkhuntor/cve-2021-43858-minio

Go-based exploit for CVE-2021-43858 targeting MinIO privilege escalation vulnerability. Executes against a specified IP and port to demonstrate the…

cloud-securityexploitationpenetration-testing+3
3 years ago
CVE-2021-41805 preview

CVE-2021-41805

GitHubacfirthh/cve-2021-41805

A proof-of-concept for CVE-2021-41805 which is a vulnerability in HashiCorp Consul Enterprise allowing for Remote Code Execution (RCE) with escalated…

cloud-securityeducationexploitation+4
1 year ago
CVE-2023-34039 preview

CVE-2023-34039

GitHubcharondefalt/cve-2023-34039

VMware exploit

cloud-securityexploitationpenetration-testing+3
3 years ago
Modified-CVE-2024-37081-POC preview

Modified-CVE-2024-37081-POC

GitHubcertologists/modified-cve-2024-37081-poc

Proof of concept for VMware vCenter CVE-2024-37081, modified to enhance usability for security testing and validation of the vulnerability.

cloud-securityexploitationexploit-frameworks+3
2 years ago
CVE-2024-36539 preview

CVE-2024-36539

GitHubabdurahmon3236/cve-2024-36539

PoC exploit for insecure permissions in Contour v1.28.3 that retrieves a Kubernetes service account token and accesses the cluster API, demonstrating…

cloud-securitycontainer-securityexploitation+5
2 years ago
CVE-2024-21626 preview

CVE-2024-21626

GitHubabian2/cve-2024-21626

Proof-of-concept for CVE-2024-21626, a container escape vulnerability in runc, demonstrating exploitation techniques.

cloud-securitycontainer-escapecontainer-security+3
2 years ago
ARES preview

ARES

GitHubmafifrizi/ares

Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

cloud-securitycommand-and-controldefensive-tools+5
286 days ago
Previous1…101112Next