Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
221 results
CVE-2025-70830 preview

CVE-2025-70830

GitHubxiaoxiaoranxxx/cve-2025-70830

A Server-Side Template Injection (SSTI) vulnerability in the Freemarker template engine of Datart v1.0.0-rc.3 allows authenticated attackers to…

code-analysisexploitationpayload-development+3
5
7 months ago
CVE-2026-25924 preview

CVE-2026-25924

GitHubdrkim-dev/cve-2026-25924

Proof-of-concept exploit for CVE-2026-25924, demonstrating administrative remote code execution in Kanboard through a missing access control check on…

code-analysisexploitationpayload-development+3
26 months ago
cve-2024-50330-ivanti_epm_sqli_reproduction preview

cve-2024-50330-ivanti_epm_sqli_reproduction

GitHubrazureink/cve-2024-50330-ivanti_epm_sqli_reproduction

CVE Reproduction: cve-2024-50330-ivanti_epm_sqli_reproduction

code-analysisexploitationpayload-development+3
1 month ago
CVE-2019-16941 preview

CVE-2019-16941

GitHubpurpleracc00n/cve-2019-16941

PoC for CVE-2019-16941

binary-exploitationcode-analysisexploitation+3
46 years ago
cve-2026-63030_60137-wordpress_rce_reproduction preview

cve-2026-63030_60137-wordpress_rce_reproduction

GitHubrazureink/cve-2026-63030_60137-wordpress_rce_reproduction

CVE Reproduction: cve-2026-63030_60137-wordpress_rce_reproduction

code-analysisexploitationpayload-development+4
1 month ago
CVE-2026-12277 preview

CVE-2026-12277

GitHubmoritakaaz/cve-2026-12277

Frontend File Manager Plugin (WordPress) <= 23.6 - Unauthenticated Arbitrary File Deletion to RCE

code-analysisexploitationpayload-development+4
2 months ago
CVE-2026-33454 preview

CVE-2026-33454

GitHuboscerd/cve-2026-33454

Reproducer for CVE-2026-33454: Apache Camel camel-mail header injection to RCE via camel-exec

code-analysisexploitationpayload-development+3
12 months ago
CVE-2025-55449 preview

CVE-2025-55449

GitHubxhh1h/cve-2025-55449

CVE-2025-55449 EXP

authenticationcode-analysisexploitation+3
39 months ago
SessionReaper-CVE-2025-54236 preview

SessionReaper-CVE-2025-54236

GitHubalexb616/sessionreaper-cve-2025-54236

PoC Magento Session Reaper - CVE-2025-54236

code-analysisexploitationpayload-development+4
12 months ago
CVE-2025-49113-nuclei-template preview

CVE-2025-49113-nuclei-template

GitHubademking/cve-2025-49113-nuclei-template

CVE-2025-49113 - Roundcube <= 1.6.10 Post-Auth RCE via PHP Object Deserialization

code-analysisexploitationpayload-development+3
31 year ago
CVE-2022-23935-PoC-Exploit preview

CVE-2022-23935-PoC-Exploit

GitHubdpbe32/cve-2022-23935-poc-exploit

Proof-of-concept exploit for CVE-2022-23935 targeting ExifTool 12.37, demonstrating arbitrary code execution via crafted image metadata.

code-analysisexploitationpayload-development+2
13 years ago
Joomla-CVE-2015-8562-PHP-POC preview

Joomla-CVE-2015-8562-PHP-POC

GitHubrobinhoutevelts/joomla-cve-2015-8562-php-poc

A proof of concept for Joomla's CVE-2015-8562 vulnerability

code-analysisexploitationpayload-development+3
210 years ago
CVE-2026-22686-RemoteCodeExecution-RCE-PoC preview

CVE-2026-22686-RemoteCodeExecution-RCE-PoC

GitHubmoltengama/cve-2026-22686-remotecodeexecution-rce-poc

Proof-of-concept exploit for CVE-2026-22686, demonstrating remote code execution in Node.js ESM sandboxes via process.getBuiltinModule to bypass…

code-analysisexploitationpayload-development+2
26 months ago
ColdFusion_EXp preview

ColdFusion_EXp

GitHubcuriouslearnerdev/coldfusion_exp

Adobe ColdFusion CVE-2023-26360/CVE-2023-29298 自动化实现反弹

code-analysisexploitationpayload-development+3
12 years ago
CVE-2023-37941 preview

CVE-2023-37941

GitHubbarroqueiro/cve-2023-37941

Exploit on the default cache of superset by using pickle

code-analysisexploitationpayload-development+3
13 years ago
CVE-2026-3296 preview

CVE-2026-3296

GitHubxxconi/cve-2026-3296

CVE-2026-3296 is a CVSS 9.8 Critical unauthenticated PHP Object Injection vulnerability in the Everest Forms WordPress plugin

code-analysisexploitationpayload-development+3
3 months ago
CVE-2026-0848-PoC-Improper-Input-Validation preview

CVE-2026-0848-PoC-Improper-Input-Validation

GitHubfevar54/cve-2026-0848-poc-improper-input-validation

PoC de CVE-2026-0848: validacion de entrada indebida en NLTK que permite ejecucion de codigo via StanfordSegmenter.

code-analysisexploitationpayload-development+2
5 months ago
CVE-2026-48208 preview

CVE-2026-48208

GitHubhabuon/cve-2026-48208

This is POC repo for CVE-2026-48208

code-analysisexploitationpayload-development+2
3 months ago
Previous1…567…13Next