Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
640 results
CVE-2024-29399 preview

CVE-2024-29399

GitHubally-petitt/cve-2024-29399

CVE-2024-29399 reference

code-analysisexploitationpenetration-testing+2
2 years ago
CVE-2022-0219 preview

CVE-2022-0219

GitHubhaxatron/cve-2022-0219

Proof-of-concept exploit for CVE-2022-0219, an XXE vulnerability in Jadx that allows local file disclosure when exporting malicious APK files via the…

android-securitycode-analysismobile-security+3
4 years ago
CVE-2024-24140 preview

CVE-2024-24140

GitHubburaksevben/cve-2024-24140

Proof-of-concept exploit demonstrating SQL injection in the Daily Habit Tracker App, enabling unauthorized database access and data extraction.

code-analysisexploitationpenetration-testing+2
2 years ago
CVE-2025-46078 preview

CVE-2025-46078

GitHubyggcwhat/cve-2025-46078

Vulnerability Description

code-analysisexploitationmisconfiguration+3
1 year ago
CVE-2025-46080 preview

CVE-2025-46080

GitHubyggcwhat/cve-2025-46080

Details

code-analysisexploitationmisconfiguration+3
1 year ago
CVE-2024-44623 preview

CVE-2024-44623

GitHubmerbinr/cve-2024-44623

Details about the Blind RCE issue(SPX-GC) in SPX-GC

code-analysiscommand-and-controlexploitation+3
1 year ago
CVE-2025-47549 preview

CVE-2025-47549

GitHubd0n601/cve-2025-47549

Ultimate Before After Image Slider & Gallery – BEAF <= 4.6.10 - Authenticated (Admin+) Arbitrary File Upload via beaf_options_save

code-analysisexploitationpayload-generation+3
1 year ago
HTTP-Request-for-PHP-object-injection-attack-on-CVE-2023-41892 preview

HTTP-Request-for-PHP-object-injection-attack-on-CVE-2023-41892

GitHubcertologists/http-request-for-php-object-injection-attack-on-cve-2023-41892

Demonstrates a PHP object injection attack targeting CVE-2023-41892, including exploitation techniques and mitigation strategies for securing PHP…

code-analysiseducationexploitation+2
2 years ago
CVE-2024-24138 preview

CVE-2024-24138

GitHubburaksevben/cve-2024-24138

Proof-of-concept exploit for SQL injection vulnerability in Online Timesheet App, demonstrating the attack and providing technical details for…

code-analysisexploitationpenetration-testing+2
2 years ago
CVE-2024-40110 preview

CVE-2024-40110

GitHubabdurahmon3236/cve-2024-40110

Proof-of-concept script demonstrating unauthenticated remote code execution in Sourcecodester Poultry Farm Management System via the vulnerable…

code-analysisexploitationpayload-development+3
2 years ago
CVE-2024-56058 preview

CVE-2024-56058

GitHubrandomrobbiebf/cve-2024-56058

VRPConnector <= 2.0.1 - Unauthenticated PHP Object Injection

code-analysisexploitationpenetration-testing+3
1 year ago
CVE-2024-50507 preview

CVE-2024-50507

GitHubrandomrobbiebf/cve-2024-50507

DS.DownloadList <= 1.3 - Unauthenticated PHP Object Injection

code-analysisexploitationpenetration-testing+3
1 year ago
CVE-2020-8277 preview

CVE-2020-8277

GitHubandrewijano/cve-2020-8277

Proof-of-concept exploit for CVE-2020-8277, a Node.js DNS resolver denial-of-service vulnerability, demonstrating out-of-memory read via crafted DNS…

code-analysiseducationexploitation+1
5 years ago
CVE-2024-22640 preview

CVE-2024-22640

GitHubzunak/cve-2024-22640

Proof-of-concept exploit for CVE-2024-22640, a ReDoS vulnerability in TCPDF <=6.7.4 triggered by crafted HTML color input, with demonstration code.

code-analysisexploitationfuzzing+3
2 years ago
Tough-Cookie-v2.5.0-Patched preview

Tough-Cookie-v2.5.0-Patched

GitHubdani33339/tough-cookie-v2.5.0-patched

Patched tough-cookie v2.5.0 fixing CVE-2023-26136 prototype pollution vulnerability with Object.create(null) in MemoryCookieStore, including exploit…

code-analysiseducationexploitation+3
1 year ago
Internet-Security-Project---CVE-2021-26814 preview

Internet-Security-Project---CVE-2021-26814

GitHubpaolorabbito/internet-security-project---cve-2021-26814

Educational exploit demonstration for CVE-2021-26814 targeting Wazuh v4.0.3, with step-by-step exploitation and remediation code for university-level…

code-analysiseducationexploitation+3
4 years ago
VUL4J-60 preview

VUL4J-60

GitHubepicosy/vul4j-60

nahsra/antisamy with CVE-2016-10006

code-analysiseducationmisconfiguration+3
2 years ago
goIssue_dunfell preview

goIssue_dunfell

GitHubskulkarni-mv/goissue_dunfell

go CVE-2023-24538 patch issue resolver - Dunfell

code-analysisdevsecopssupply-chain-security+1
2 years ago
Previous1…323334…36Next