Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2079 results
magento2-template-filter-patch preview

magento2-template-filter-patch

GitHubwubinworks/magento2-template-filter-patch

Magento 2 patch for CVE-2022-24086, CVE-2022-24087. Fix the RCE vulnerability and related bugs by performing deep template variable escaping. If you…

code-analysisexploitationmisconfiguration+3
1 year ago
CVE-2013-0156 preview

CVE-2013-0156

GitHubr3dkn33-zz/cve-2013-0156

Arbitrary deserialization that can be used to trigger SQL injection and even Code execution

code-analysisexploitationpenetration-testing+2
7 years ago
openjpeg-2.3.0_CVE-2020-27824 preview

openjpeg-2.3.0_CVE-2020-27824

GitHubpazhanivel07/openjpeg-2.3.0_cve-2020-27824

CVE-2020-27824 exploit reproduction environment for OpenJPEG JPEG 2000 codec, enabling vulnerability analysis, fuzzing, and binary exploitation…

binary-analysiscode-analysisexploitation+3
4 years ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubmahaveer-choudhary/cve-2025-55182

A Python-based security scanner for detecting and exploiting **React Server Components (RSC)** vulnerabilities in Next.js applications. This tool…

code-analysisexploitationpenetration-testing+3
8 months ago
external_libexif_AOSP10_CVE-2020-0452 preview

external_libexif_AOSP10_CVE-2020-0452

GitHubshaikusaf/external_libexif_aosp10_cve-2020-0452

C library for parsing, editing, and saving EXIF data, with a focus on addressing CVE-2020-0452 in AOSP10. Provides API for metadata extraction and…

binary-analysiscode-analysisexploitation+3
4 years ago
govuln-CVE-2023-47108 preview

govuln-CVE-2023-47108

GitHubbahe-msft/govuln-cve-2023-47108

Analyzes and addresses CVE-2023-47108, providing vulnerability assessment and remediation guidance for affected systems.

code-analysisexploitationpenetration-testing+2
2 years ago
Langflow-CVE-2025-3248-Multi-target preview

Langflow-CVE-2025-3248-Multi-target

GitHubill-deed/langflow-cve-2025-3248-multi-target

Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can…

code-analysisexploitationpenetration-testing+3
1 year ago
external_aac_AOSP10_r33_CVE-2023-21282 preview

external_aac_AOSP10_r33_CVE-2023-21282

GitHubtrinadh465/external_aac_aosp10_r33_cve-2023-21282

Analyzes and patches a specific Android vulnerability (CVE-2023-21282) in the AAC audio codec, providing a patched AOSP10 source tree for security…

binary-analysiscode-analysisexploitation+2
2 years ago
CVE-2021-41645 preview

CVE-2021-41645

GitHubhax3xploit/cve-2021-41645

Remote Code Execution (RCE) vulnerability exists in Sourcecodester Budget and Expense Tracker System 1.0 that allows a remote malicious user to…

code-analysisexploitationpenetration-testing+2
4 years ago
CVE-2023-40127 preview

CVE-2023-40127

GitHubtrinadh465/cve-2023-40127

Exploit code for CVE-2023-40127, a vulnerability in Android. Provides proof-of-concept implementation for security research and testing.

binary-exploitationcode-analysisexploitation+2
2 years ago
CVE-2025-53964 preview

CVE-2025-53964

GitHubtigr78/cve-2025-53964

Proof-of-concept exploit for CVE-2025-53964: remote file read/write via malicious XDXF dictionary in GoldenDict 1.5.0/1.5.1, leveraging unsanitized…

code-analysisexploitationpenetration-testing+3
10 months ago
Detection-for-CVE-2017-2793 preview

Detection-for-CVE-2017-2793

GitHubsubc0ol/detection-for-cve-2017-2793

C-based detection tool for CVE-2017-2793, enabling identification and analysis of the specific vulnerability in affected systems.

binary-analysiscode-analysisexploitation+2
9 years ago
apache__jspwiki_CVE-2019-10078_2-11-0-M3 preview

apache__jspwiki_CVE-2019-10078_2-11-0-M3

GitHubshoucheng3/apache__jspwiki_cve-2019-10078_2-11-0-m3

Exploit module for Apache JSPWiki CVE-2019-10078, enabling security testing of Java-based wiki platforms through targeted vulnerability exploitation…

authenticationcode-analysisexploitation+3
10 months ago
f-for-java preview

f-for-java

GitHubtotallynotahaxxer/f-for-java

a project written in go and java i abandoned for CVE-2021-44228 try to fix it if you can XD

code-analysisexploitationpenetration-testing+2
3 years ago
expat_2_1_0_CVE-2024-28757 preview

expat_2_1_0_CVE-2024-28757

GitHubsaurabh2088/expat_2_1_0_cve-2024-28757

C library for stream-oriented XML parsing, with a focus on analyzing and reproducing CVE-2024-28757 vulnerability in Expat 2.1.0.

binary-analysiscode-analysisexploitation+3
2 years ago
CVE-2024-46209 preview

CVE-2024-46209

GitHubh4ckr4v3n/cve-2024-46209

Security research repository detailing CVE-2024-46209 (authenticated RCE) and CVE-2024-46210 (stored XSS via file upload) in Redaxo CMS v5.17.1, with…

code-analysisexploitationpenetration-testing+2
1 year ago
CVE-2020-0601_PoC preview

CVE-2020-0601_PoC

GitHubjoelbts/cve-2020-0601_poc

Demonstration of CVE-2020-0601 aka curveball. Based on the PoC's available at https://github.com/kudelskisecurity/chainoffools and…

code-analysiscryptographyexploitation+3
2 years ago
CVE-2018-16370 preview

CVE-2018-16370

GitHubsnappyjack/cve-2018-16370

In PESCMS Team 2.2.1, attackers may upload and execute arbitrary PHP code through /Public/?g=Team&m=Setting&a=upgrade by placing a .php file in a…

code-analysisexploitationpenetration-testing+2
8 years ago
Previous1…141516…100Next