Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2078 results
bassmaster-rce preview

bassmaster-rce

GitHubmaximilianmarx/bassmaster-rce

Exploiting CVE-2014-7205 by injecting arbitrary JavaScript resulting in Remote Code Execution.

code-analysiseducationexploitation+3
3
5 years ago
roninforge-hono preview

roninforge-hono

GitHubroninforge/roninforge-hono

Cursor plugin for Hono v4 (TypeScript edge web framework). 59 LLM regressions with BAD/CORRECT pairs. Pinned to hono ^4.12.19 (>= 4.9.7 for…

api-securitycloud-securitycode-analysis+8
3 months ago
CVE-2026-66748-Camaleon-CMS---Authenticated-RCE-via-select_eval-Custom-Field preview

CVE-2026-66748-Camaleon-CMS---Authenticated-RCE-via-select_eval-Custom-Field

GitHubtheopaid/cve-2026-66748-camaleon-cms---authenticated-rce-via-select_eval-custom-field

Security Advisory: Camaleon CMS - Authenticated RCE via `select_eval` Custom Field

code-analysisexploitationpapers-research+4
11 month ago
cso-vibecheck preview

cso-vibecheck

GitHubgit-akki/cso-vibecheck

Senior-CSO security audit skill for vibe-coded apps. 22-check audit anchored to real 2026 incidents (Moltbook, Lovable CVE-2025-48757). Drop-in…

code-analysiscurated-resourceseducation+6
12 months ago
sxwp2shell preview

sxwp2shell

GitHubsentinelxofficial/sxwp2shell

WordPress wp2shell pre-auth RCE exploit kit (CVE-2026-63030 + CVE-2026-60137)

code-analysisexploitationpenetration-testing-frameworks+2
11 month ago
react2shell-scanner preview

react2shell-scanner

GitHubnxgn-kd01/react2shell-scanner

Detect CVE-2025-55182 (React2Shell) RCE vulnerability in React Server Components. Fast, accurate scanner with zero false positives.

code-analysisdevsecopsexploitation+3
38 months ago
CVE-2021-30005-POC preview

CVE-2021-30005-POC

GitHubatorralba/cve-2021-30005-poc

Proof-of-concept demonstrating arbitrary command execution via malicious virtual environment activation scripts in PyCharm before 2020.3.4,…

code-analysiseducationexploitation+2
25 years ago
cve-2019-3396 preview

cve-2019-3396

GitHubpetrusviet/cve-2019-3396

Confluence unauthorize template injection

code-analysiseducationexploitation+3
25 years ago
CVE-2026-49042 preview

CVE-2026-49042

GitHuboscerd/cve-2026-49042

PoC reproducer for CVE-2026-49042 (Apache Camel camel-langchain4j-tools): a prompt-injected LLM's tool-call arguments become unfiltered Exchange…

ai-securitycode-analysiseducation+5
11 month ago
By-Poloss..-..CVE-2026-7515-PoC preview

By-Poloss..-..CVE-2026-7515-PoC

GitHubpolosss/by-poloss..-..cve-2026-7515-poc

Unauthenticated Local File Inclusion

code-analysiseducationexploitation+3
12 months ago
pfBlockerNg-CVE-2022-40624 preview

pfBlockerNg-CVE-2022-40624

GitHubdhammon/pfblockerng-cve-2022-40624

Proof-of-concept exploit for unauthenticated remote code execution in pfBlockerNg via unsanitized input in the DNSBL TLD query function, with SAST…

code-analysiseducationexploitation+3
23 years ago
CVE-2026-5061 preview

CVE-2026-5061

GitHub0xmrma/cve-2026-5061

Consul Template validated where a symlink pointed during template evaluation, but its later dependency fetch read the original path. Retargeting the…

code-analysisdata-exfiltrationeducation+2
11 month ago
CVE-2023-32692-CodeIgniter4 preview

CVE-2023-32692-CodeIgniter4

GitHubmogwailabs/cve-2023-32692-codeigniter4

Example application, vulnerable to CVE-2023-32692 (Validation Rule Injection in the PHP Framework CodeIgniter)

code-analysiseducationlabs-practice+3
23 months ago
cve-2026-11837-ansible-posix-authorized-key preview

cve-2026-11837-ansible-posix-authorized-key

GitHubm8seven/cve-2026-11837-ansible-posix-authorized-key

CVE-2026-11837: local privilege escalation in the ansible.posix authorized_key module via symlink-following chown. Technical writeup; sibling of…

code-analysisconfiguration-auditingdevsecops+3
12 months ago
CVE-2026-16723 preview

CVE-2026-16723

GitHubfazilbaig1/cve-2026-16723

This is N-day patch we releasing by testing our model capabilities

code-analysisdefensive-toolsvulnerability-analysis
11 month ago
cve-2026-25541-fuel-analysis preview

cve-2026-25541-fuel-analysis

GitHubtrajanox/cve-2026-25541-fuel-analysis

CVE-2026-25541 impact analysis for Fuel infrastructure (bytes crate integer overflow)

code-analysiscurated-resourceseducation+3
12 months ago
CVE-2025-66802 preview

CVE-2025-66802

GitHubmtgsjr/cve-2025-66802

Sourcecodester Covid-19 Contact Tracing System 1.0 is vulnerable to RCE

code-analysiseducationexploitation+3
28 months ago
CVE-2023-27372 preview

CVE-2023-27372

GitHubscriniariii/cve-2023-27372

Exploit for CVE-2023-27372 with interactiev shell

code-analysiseducationexploitation+3
5 months ago
Previous1…959697…100Next