Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
747 results
poc-cve-2025-55182 preview

poc-cve-2025-55182

GitHubkoadt/poc-cve-2025-55182

This repository contains a POC of CVE-2025-55182, a critical (CVSS score 10.0) pre-authentication remote code execution vulnerability affecting React…

code-analysisctfdynamic-analysis-sandboxing+7
15
5 months ago
CVE-2026-2587-Exploit-POC preview

CVE-2026-2587-Exploit-POC

GitHubbhanunamikaze/cve-2026-2587-exploit-poc

CVE-2026-2587 PoC validator for Eclipse GlassFish EL Injection RCE in the admin console gadget.jsf handler. Safe authenticated vulnerability scanner…

code-analysisdynamic-analysis-sandboxingeducation+6
13 months ago
CVE-2021-3129 preview

CVE-2021-3129

GitHubjoshuavanderpoll/cve-2021-3129

Laravel RCE Exploit PoC - CVE-2021-3129 (user-friendly with automatic log path detection)

code-analysisexploitationpayload-generation+3
1533 months ago
CVE-2026-48908-PoC preview

CVE-2026-48908-PoC

GitHubpapageo75/cve-2026-48908-poc

Unauthenticated RCE PoC for CVE-2026-48908 — SP Page Builder for Joomla (≤ 6.6.1): arbitrary file upload via asset.uploadCustomIcon. Self-cleaning,…

code-analysiseducationexploitation+5
151 month ago
CVE-2026-49097 preview

CVE-2026-49097

GitHuboscerd/cve-2026-49097

PoC reproducer for CVE-2026-49097 (Apache Camel camel-irc): the non-Camel-prefixed irc.sendTo header escapes the HTTP header filter and overrides the…

code-analysisexploitationinformation-gathering+3
1 month ago
CVE-2026-40048 preview

CVE-2026-40048

GitHuboscerd/cve-2026-40048

Reproducer for CVE-2026-40048: Apache Camel camel-pqc FileBasedKeyLifecycleManager unsafe deserialization (RCE)

binary-exploitationcode-analysiseducation+6
1 month ago
trivy preview

trivy

GitHubaquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

cloud-securitycode-analysiscontainer-security+5
37.5k1 day ago
bearer preview

bearer

GitHubbearer/bearer

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

code-analysisdevsecopsprivacy+2
2.7k0 days ago
CVE-2024-9264 preview

CVE-2024-9264

GitHubnollium/cve-2024-9264

Exploit for Grafana arbitrary file-read and RCE (CVE-2024-9264)

code-analysisexploitationpayload-generation+4
1321 year ago
CVE-2022-41852 preview

CVE-2022-41852

GitHubwarxim/cve-2022-41852

CVE-2022-41852 Proof of Concept (unofficial)

code-analysisexploitationpayload-development+3
733 years ago
CVE-2024-5932 preview

CVE-2024-5932

GitHubeqstlab/cve-2024-5932

GiveWP PHP Object Injection exploit

code-analysiseducationexploitation+5
771 year ago
CVE-2023-27372 preview

CVE-2023-27372

GitHubnuts7/cve-2023-27372

SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18,…

code-analysisexploitationpayload-development+3
691 year ago
log4shell-finder preview

log4shell-finder

GitHubhynekpetrak/log4shell-finder

Fastest filesystem scanner for log4shell (CVE-2021-44228, CVE-2021-45046) and other vulnerable (CVE-2017-5645, CVE-2019-17571, CVE-2022-23305,…

code-analysismisconfigurationstatic-analysis+3
393 years ago
CVE-2024-22243 preview

CVE-2024-22243

GitHubseanpesce/cve-2024-22243

Example exploitable scenarios for CVE-2024-22243 affecting the Spring framework (open redirect & SSRF).

code-analysisctfeducation+4
131 year ago
CVE-2024-8353 preview

CVE-2024-8353

GitHubeqstlab/cve-2024-8353

GiveWP PHP Object Injection exploit

code-analysisexploitationpayload-development+3
121 year ago
CVE-2026-0740 preview

CVE-2026-0740

GitHubwhattheslime/cve-2026-0740

Ninja Forms File Uploads <= 3.3.26 - Unauthenticated Arbitrary File Upload to RCE (CVE-2026-0740)

code-analysisexploitationpayload-generation+3
12 months ago
CVE-2025-55182-scanner preview

CVE-2025-55182-scanner

GitHubmayank729/cve-2025-55182-scanner

🔍 Scan for CVE-2025-55182 risks in React Server Components with this non-intrusive tool that helps detect critical vulnerabilities in your…

code-analysisdevsecopsstatic-analysis+3
3 days ago
purify preview

purify

GitHubfaloker/purify

All-in-one tool for managing vulnerability reports from AppSec pipelines

code-analysisdevsecopsvulnerability-scanners
1085 years ago
Previous1234…42Next