Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
190 results
roundcube-cve-2025-49113-lab preview

roundcube-cve-2025-49113-lab

GitHubankitpandey383/roundcube-cve-2025-49113-lab

Hands-on exploitation lab for Roundcube Webmail CVE-2025-49113 (authenticated PHP object deserialization → RCE) to read /secret.txt.

code-analysisctfeducation+7
9 months ago
cve-2026-33937 preview

cve-2026-33937

GitHubdinhvaren/cve-2026-33937

Proof-of-concept exploit for CVE-2026-33937, a Handlebars AST injection vulnerability leading to remote code execution in Node.js. Demonstrates…

code-analysisexploitationpayload-development+2
4 months ago
CVE-2016-2098 preview

CVE-2016-2098

GitHub3rg1s/cve-2016-2098

Proof-of-concept exploit for CVE-2016-2098, demonstrating remote Ruby code execution through Rails render method abuse; intended for security testing…

code-analysiseducationexploitation+2
6 years ago
PoC-CVE-2019-10743 preview

PoC-CVE-2019-10743

GitHubalbisorua/poc-cve-2019-10743

Proof-of-concept exploit demonstrating the Zip Slip vulnerability (CVE-2019-10743) in mholt/archiver, with a vulnerable server and Python payload for…

code-analysiseducationexploitation+3
1 year ago
external_expat_2.1.0_CVE-2022-43680 preview

external_expat_2.1.0_CVE-2022-43680

GitHubnidhihcl/external_expat_2.1.0_cve-2022-43680

C library for stream-oriented XML parsing with a focus on vulnerability analysis and exploitation of CVE-2022-43680, enabling fuzzing and…

binary-analysiscode-analysisexploitation+3
3 years ago
external_expat-2.1.0_CVE-2022-43680 preview

external_expat-2.1.0_CVE-2022-43680

GitHubtrinadh465/external_expat-2.1.0_cve-2022-43680

Source code repository for Expat 2.1.0, a stream-oriented XML parser library, with focus on analyzing and addressing CVE-2022-43680.

binary-analysiscode-analysisexploitation+3
3 years ago
whitesource__curekit_CVE-2022-23082_1-1-3 preview

whitesource__curekit_CVE-2022-23082_1-1-3

GitHubshoucheng3/whitesource__curekit_cve-2022-23082_1-1-3

Java security library providing contextual encoders and sanitizers to automatically remediate vulnerabilities like XSS, path traversal, and command…

code-analysisdevsecopsencryption-decryption-tools+3
1 year ago
batchOverflow preview

batchOverflow

GitHubphzietsman/batchoverflow

A fix for the batchOverflow bug https://medium.com/@peckshield/alert-new-batchoverflow-bug-in-multiple-erc20-smart-contracts-cve-2018-10299-511067db65…

code-analysiseducationstatic-analysis+1
8 years ago
CVE-2023-31584 preview

CVE-2023-31584

GitHubrootd4ddy/cve-2023-31584

Public disclosure for CVE-2023-31584.

code-analysiseducationstatic-analysis+2
3 years ago
jenkinsci__workflow-multibranch-plugin_CVE-2022-25175_706-vd43c65dec013 preview

jenkinsci__workflow-multibranch-plugin_CVE-2022-25175_706-vd43c65dec013

GitHubshoucheng3/jenkinsci__workflow-multibranch-plugin_cve-2022-25175_706-vd43c65dec013

Exploit for CVE-2022-25175 targeting Jenkins Pipeline: Multibranch plugin, enabling automated exploitation of a specific vulnerability in CI/CD…

code-analysisdevsecopsexploitation+3
10 months ago
expat_2_1_0_CVE-2024-28757 preview

expat_2_1_0_CVE-2024-28757

GitHubsaurabh2088/expat_2_1_0_cve-2024-28757

C library for stream-oriented XML parsing, with a focus on analyzing and reproducing CVE-2024-28757 vulnerability in Expat 2.1.0.

binary-analysiscode-analysisexploitation+3
2 years ago
log4j2-prosecutor preview

log4j2-prosecutor

GitHubrodfer0x80/log4j2-prosecutor

CVE-2021-44228

code-analysisexploitationpayload-generation+3
4 years ago
CVE-2024-34102 preview

CVE-2024-34102

GitHubdream434/cve-2024-34102

Exploit script for CVE-2024-34102, an XXE vulnerability in Adobe Commerce allowing arbitrary code execution via crafted XML documents.

code-analysiseducationexploitation+2
1 year ago
CVE-2025-46080 preview

CVE-2025-46080

GitHubyggcwhat/cve-2025-46080

Details

code-analysisexploitationmisconfiguration+3
1 year ago
CVE-2022-37205 preview

CVE-2022-37205

GitHubagainstthelight/cve-2022-37205

CVE-2022-37205 POC

code-analysisdatabase-securityexploitation+3
3 years ago
pickle_exploit preview

pickle_exploit

GitHubh3x0v3rl0rd/pickle_exploit

Demonstrating Remote Code Execution Vulnerability via Pickle Serialization in ClearML

code-analysiseducationexploitation+2
1 year ago
CVE-2022-37207 preview

CVE-2022-37207

GitHubagainstthelight/cve-2022-37207

CVE-2022-37207 POC

code-analysisexploitationpenetration-testing+2
3 years ago
SealSecurity_Exam preview

SealSecurity_Exam

GitHubm-lito13/sealsecurity_exam

Fix prototype pollution vulnerability (CVE-2023-26136) for tough-cookie package

code-analysiseducationstatic-code-analysis+2
2 years ago
Previous1…91011Next