Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
70 results
CVE-2025-55182 preview

CVE-2025-55182

GitHubycseo-git/cve-2025-55182

a.k.a. React2Shell

code-analysiscontainer-securityctf+7
4 months ago
reposherlock preview

reposherlock

GitHubkemal-arslan/reposherlock

Analyze any GitHub repo (URL or local path) → architecture map, verified run commands, risks, and actionable issues - in minutes.

code-analysisdevsecopsmisconfiguration+4
27 months ago
nginx-rift-scanner preview

nginx-rift-scanner

GitHubsimota/nginx-rift-scanner

Detect-only scanner for CVE-2026-42945 (NGINX Rift), a heap overflow in ngx_http_rewrite_module. Version detection + nginx.conf pattern analysis.…

code-analysisconfiguration-auditingstatic-analysis+3
13 months ago
auth-header-trust-rules preview

auth-header-trust-rules

GitHubbk-security/auth-header-trust-rules

Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

authentication-authorizationcode-analysiseducation+3
4 months ago
CVE-2023-33246-mitigation preview

CVE-2023-33246-mitigation

GitHubpavilionq/cve-2023-33246-mitigation

Maven-based demonstration of CVE-2023-33246 mitigation for Apache RocketMQ, featuring attack testing and enhanced parameter validation to prevent…

cloud-securitycode-analysisexploitation+2
12 years ago
CVE-2025-63943 preview

CVE-2025-63943

GitHubredopsx/cve-2025-63943

SQL Injection vulnerability discovered in Grocery Store Management System 1.0

code-analysisdatabase-securityexploitation+3
10 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubmahaveer-choudhary/cve-2025-55182

A Python-based security scanner for detecting and exploiting **React Server Components (RSC)** vulnerabilities in Next.js applications. This tool…

code-analysisexploitationpenetration-testing+3
9 months ago
Langflow-CVE-2025-3248-Multi-target preview

Langflow-CVE-2025-3248-Multi-target

GitHubill-deed/langflow-cve-2025-3248-multi-target

Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can…

code-analysisexploitationpenetration-testing+3
1 year ago
jenkinsci__workflow-cps-plugin_CVE-2022-25173_2646-v6ed3b5b01ff1 preview

jenkinsci__workflow-cps-plugin_CVE-2022-25173_2646-v6ed3b5b01ff1

GitHubshoucheng3/jenkinsci__workflow-cps-plugin_cve-2022-25173_2646-v6ed3b5b01ff1

Exploit for CVE-2022-25173 targeting Jenkins Pipeline Groovy Plugin's CPS interpreter sandbox bypass, enabling arbitrary code execution within…

code-analysisdevsecopsdynamic-analysis-sandboxing+3
11 months ago
CVE-2024-21513 preview

CVE-2024-21513

GitHubnskath/cve-2024-21513

PoC for CVE-2024-21513

code-analysiseducationexploitation+3
1 year ago
CVE-2021-46703 preview

CVE-2021-46703

GitHubbenedridge/cve-2021-46703

Simple payload builder

code-analysisexploitationpayload-generation+2
3 years ago
spring-boot-cve-2022-22965 preview

spring-boot-cve-2022-22965

GitHubsnicoll-scratches/spring-boot-cve-2022-22965

Showcase of overridding the Spring Framework version in older Spring Boot versions

code-analysiseducationexploitation+2
4 years ago
sudo-1.8.3p1-patched preview

sudo-1.8.3p1-patched

GitHubperlun/sudo-1.8.3p1-patched

Custom version of sudo 1.8.3p1 with CVE-2021-3156 patches applied

binary-analysiscode-analysisexploitation+2
5 years ago
web2py-e94946d-CVE-2016-3957 preview

web2py-e94946d-CVE-2016-3957

GitHubsj/web2py-e94946d-cve-2016-3957

web2py/web2py @ e94946d

authenticationcode-analysisdatabase-security+3
7 years ago
wwwgrep preview
Archived

wwwgrep

GitHubowasp/wwwgrep

OWASP Foundation Web Respository

code-analysisinformation-gatheringpenetration-testing+3
365 years ago
raptor preview
Archived

raptor

GitHubdpnishant/raptor

Web-based Source Code Vulnerability Scanner

android-securitycode-analysisdevsecops+6
3568 years ago
Previous1234Next