Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
60 results
database-sentinel preview

database-sentinel

GitHubfarenhytee/database-sentinel

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

ai-securityauthentication-authorizationcloud-security+8
43
4 months ago
Gin-Vue-admin-poc-CVE-2022-21660 preview

Gin-Vue-admin-poc-CVE-2022-21660

GitHubuzju/gin-vue-admin-poc-cve-2022-21660

CVE-2022-21660

authentication-authorizationcode-analysiseducation+3
284 years ago
CVE-2026-66917 preview

CVE-2026-66917

GitHubtoanln-cov/cve-2026-66917

IDOR + Stored XSS via Broken Object-Level Authorization in JoomGallery

authentication-authorizationcode-analysisexploitation+3
19 days ago
CVE-2026-66751-Insufficient-Access-Controls-Allow-for-Unauthorized-Room-Deletion-Let-s-Chat- preview

CVE-2026-66751-Insufficient-Access-Controls-Allow-for-Unauthorized-Room-Deletion-Let-s-Chat-

GitHubtheopaid/cve-2026-66751-insufficient-access-controls-allow-for-unauthorized-room-deletion-let-s-chat-

Security Advisory: Insufficient Access Controls Allow for Unauthorized Room Deletion (Let's Chat)

authentication-authorizationcode-analysiseducation+2
1 month ago
cve-2026-47777 preview

cve-2026-47777

GitHubbekwiner/cve-2026-47777

Detailed technical analysis of CVE-2026-47777, a high-severity authorization bypass in Mastodon's Featured Collections federation pipeline, including…

authentication-authorizationcode-analysispenetration-testing+3
11 month ago
sudowp-postgallery preview

sudowp-postgallery

GitHubsudo-wp/sudowp-postgallery

A security-hardened fork of the abandoned "PostGallery" WordPress plugin. Fixes critical Arbitrary File Upload (CVE-2025-13543) and Guest Access…

authentication-authorizationcode-analysisconfiguration-auditing+3
15 months ago
pv2-victim preview

pv2-victim

GitHubdarrocarocatest-sys/pv2-victim

authz research - CVE-2026-3306 fix coverage

authentication-authorizationcode-analysispenetration-testing+2
1 month ago
OpenSSL_1_0_1g_CVE-2015-1788 preview

OpenSSL_1_0_1g_CVE-2015-1788

GitHubpazhanivel07/openssl_1_0_1g_cve-2015-1788

General-purpose cryptography library implementing SSL/TLS protocols, symmetric/ asymmetric ciphers, message digests, and X.509 certificate handling…

authentication-authorizationcode-analysiscryptography+3
2 years ago
OpenSSL-1_0_1g_CVE-2015-1791 preview

OpenSSL-1_0_1g_CVE-2015-1791

GitHubtrinadh465/openssl-1_0_1g_cve-2015-1791

OpenSSL 1.0.1g source code with CVE-2015-1791 patch, providing SSL/TLS and cryptographic library for secure communications.

authentication-authorizationcode-analysiscryptography+3
2 years ago
GSSC-CVE-2022-41923 preview
Archived

GSSC-CVE-2022-41923

GitHubgrails/gssc-cve-2022-41923

Workaround guide for CVE-2022-41923 privilege management vulnerability in Grails Spring Security Core plugin, providing patched filter definitions…

authentication-authorizationcode-analysiseducation+3
73 years ago
CVE-2021-32648 preview

CVE-2021-32648

GitHubdaftspunk/cve-2021-32648

Provides a manual patch for October CMS authentication bypass vulnerabilities CVE-2021-32648 and CVE-2021-29487 by converting loose to strict…

authenticationcode-analysisvulnerability-analysis+1
14 years ago
HYWZ36-CVE-2020-11989-code preview

HYWZ36-CVE-2020-11989-code

GitHubhywz36/hywz36-cve-2020-11989-code

Exploit code for CVE-2020-11989, an Apache Shiro authentication bypass vulnerability, enabling remote attackers to bypass security controls in web…

code-analysisexploitationpenetration-testing+2
5 years ago
halo-2.25.4-backup-write-CVE-2026-67920 preview

halo-2.25.4-backup-write-CVE-2026-67920

GitHubunpredictable21/halo-2.25.4-backup-write-cve-2026-67920

Proof-of-concept exploit for an arbitrary file write vulnerability in Halo CMS backup restoration, enabling RCE via plugin JAR replacement or…

code-analysisexploitationpenetration-testing+3
2 months ago
CVE-2026-53913 preview

CVE-2026-53913

GitHuboscerd/cve-2026-53913

PoC reproducer for CVE-2026-53913 (Apache Camel camel-keycloak): KeycloakSecurityPolicy fails open in the Basic Setup — with no required…

authenticationcode-analysisexploitation+3
11 month ago
apache__jspwiki_CVE-2019-0225_2-11-0-M2 preview

apache__jspwiki_CVE-2019-0225_2-11-0-M2

GitHubshoucheng3/apache__jspwiki_cve-2019-0225_2-11-0-m2

Exploit module for Apache JSPWiki CVE-2019-0225, enabling remote code execution via crafted requests. Designed for penetration testing and…

authenticationcode-analysisexploitation+3
1 year ago
apache__jspwiki_CVE-2019-10078_2-11-0-M3 preview

apache__jspwiki_CVE-2019-10078_2-11-0-M3

GitHubshoucheng3/apache__jspwiki_cve-2019-10078_2-11-0-m3

Exploit module for Apache JSPWiki CVE-2019-10078, enabling security testing of Java-based wiki platforms through targeted vulnerability exploitation…

authenticationcode-analysisexploitation+3
10 months ago
cve-2023-42793 preview

cve-2023-42793

GitHubjakehomb/cve-2023-42793

Proof-of-concept exploit for CVE-2023-42793, a critical authentication bypass vulnerability in JetBrains TeamCity leading to remote code execution.

code-analysisexploitationpenetration-testing+2
1 year ago
cve-2024-50330-ivanti_epm_sqli_reproduction preview

cve-2024-50330-ivanti_epm_sqli_reproduction

GitHubrazureink/cve-2024-50330-ivanti_epm_sqli_reproduction

CVE Reproduction: cve-2024-50330-ivanti_epm_sqli_reproduction

code-analysisexploitationpayload-development+3
1 month ago
Previous1234Next