Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
551 results
CVE-2025-52122 preview

CVE-2025-52122

GitHubtimtrademark/cve-2025-52122

Arbitrary code injection in CraftCMS Freeform 5.0.0 < 5.10.16

code-analysisexploitationpenetration-testing+2
1 year ago
Vvveb-CMS-CVE-2025-8518 preview

Vvveb-CMS-CVE-2025-8518

GitHubmaestro-ant/vvveb-cms-cve-2025-8518

This repository contains a Proof of Concept (PoC) demonstrating a critical vulnerability in givanz Vvveb 1.0.5. The vulnerability allows an…

code-analysisexploitationpenetration-testing+2
0 years ago
CVE-2025-55816 preview

CVE-2025-55816

GitHubpartywavesec/cve-2025-55816

CVE-2025-55816 HotelDruid 3.0.7

code-analysisexploitationpayload-development+3
9 months ago
CVE-2026-1357 preview

CVE-2026-1357

GitHub0xblackash/cve-2026-1357

CVE-2026-1357

code-analysisexploitationpenetration-testing+3
6 months ago
CVE-2021-46422-poc preview

CVE-2021-46422-poc

GitHubpolerstar/cve-2021-46422-poc

漏洞检测

code-analysisexploitationpenetration-testing+2
13 years ago
CVE-2022-22965_PoC preview

CVE-2022-22965_PoC

GitHubc4mx/cve-2022-22965_poc

Proof-of-concept exploit for CVE-2022-22965 (Spring4Shell) targeting Java Spring Framework applications via crafted HTTP requests.

code-analysisexploitationpenetration-testing+2
14 years ago
CVE-2025-63943 preview

CVE-2025-63943

GitHubredopsx/cve-2025-63943

SQL Injection vulnerability discovered in Grocery Store Management System 1.0

code-analysisdatabase-securityexploitation+3
10 months ago
CVE-2025-60374 preview

CVE-2025-60374

GitHubajansha/cve-2025-60374

CVE-2025-60374: Stored Cross-Site Scripting (XSS) in Perfex CRM Chatbot

code-analysispenetration-testingvulnerability-analysis+2
11 months ago
CVE-2025-42944 preview

CVE-2025-42944

GitHubrxerium/cve-2025-42944

Detection for CVE-2025-42944

code-analysisexploitationpenetration-testing+3
11 months ago
CVE-2025-56515 preview

CVE-2025-56515

GitHubkov404/cve-2025-56515

Cross-Site Scripting (XSS) Vulnerability in Fiora Chat Application

code-analysisexploitationpenetration-testing+3
0 years ago
Exploit-CVE-2025-68613 preview

Exploit-CVE-2025-68613

GitHubali-py3/exploit-cve-2025-68613

Proof-of-concept exploit for a critical RCE vulnerability in n8n (CVE-2025-68613), demonstrating arbitrary command execution via expression injection…

code-analysisexploitationpayload-development+3
9 months ago
CVE-2023-38890 preview

CVE-2023-38890

GitHubtagoletta/cve-2023-38890

Exploit for CVE-2023-38890, an unauthenticated SQL injection to remote code execution in Online Shopping Portal 3.1, with a proof-of-concept and…

code-analysisexploitationpenetration-testing+2
8 months ago
CVE-2025-55184_CVE-2025-67779 preview

CVE-2025-55184_CVE-2025-67779

GitHubjsh-data/cve-2025-55184_cve-2025-67779

PoC of CVE-2025-55184 and CVE-2025-67779, which are vulnerabilities of React

code-analysisexploitationpenetration-testing+2
7 months ago
merge-authz-test preview

merge-authz-test

GitHubmanoelprovider20-lgtm/merge-authz-test

authz test (CVE-2026-1999 siblings)

authenticationcode-analysisexploitation+2
2 months ago
spring-projects__spring-framework_CVE-2022-22965_5-2-19-RELEASE preview

spring-projects__spring-framework_CVE-2022-22965_5-2-19-RELEASE

GitHubshoucheng3/spring-projects__spring-framework_cve-2022-22965_5-2-19-release

Exploit for CVE-2022-22965 (Spring4Shell) targeting Spring Framework versions vulnerable to remote code execution via classLoader manipulation.

code-analysisexploitationmisconfiguration+3
1 year ago
CVE-2025-53770 preview

CVE-2025-53770

GitHubdaryllundy/cve-2025-53770

Network-based vulnerability scanner for detecting systems vulnerable to CVE-2025-53770 (unsafe deserialization). Includes PowerShell and Python…

code-analysisnetwork-securitypenetration-testing+3
1 year ago
PostGallery-CVE-Report preview

PostGallery-CVE-Report

GitHubmooseloveti/postgallery-cve-report

Disclosure for CVE-2025-13543

code-analysisexploitationpenetration-testing+3
9 months ago
Next.js-RSC-RCE-Scanner-CVE-2025-66478 preview

Next.js-RSC-RCE-Scanner-CVE-2025-66478

GitHubchanggun-lee/next.js-rsc-rce-scanner-cve-2025-66478

CLI scanner that detects whether a target website runs a vulnerable Next.js version affected by CVE-2025-66478 RCE in React Server Components.

code-analysisexploitationpenetration-testing+3
9 months ago
Previous1…161718…31Next