Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
253 results
CVE-2022-46169 preview

CVE-2022-46169

GitHubdawnl3ss/cve-2022-46169

Unauthenticated Command Injection in Cacti <= 1.2.22

command-and-controleducationexploitation+3
3 years ago
Odysseus preview

Odysseus

GitHubroshanshibu/odysseus

A demo of the Log4Shell (CVE-2021-44228) vulnerability.

command-and-controleducationexploitation+3
2 years ago
CVE-2022-37706 preview

CVE-2022-37706

GitHubsanan2004/cve-2022-37706

PoC

binary-exploitationcommand-and-controlctf+6
2 years ago
Log4j_CVE-2021-44228 preview

Log4j_CVE-2021-44228

GitHubmuhammad-ali007/log4j_cve-2021-44228

Hands-on lab exercise for exploiting Log4Shell (CVE-2021-44228) with JNDI injection, LDAP referral servers, and reverse shell payloads. Includes…

command-and-controleducationexploitation+6
3 years ago
CVE-2022-33891 preview

CVE-2022-33891

GitHubasepsaepdin/cve-2022-33891

Proof-of-concept exploit for Apache Spark command injection (CVE-2022-33891) with check and reverse shell modes, enabling authorized security testing.

command-and-controleducationexploitation+3
1 year ago
cve-2024-3400 preview

cve-2024-3400

GitHubkr0ff/cve-2024-3400

Python exploit and checker script for CVE-2024-3400 Palo Alto Command Injection and Arbitrary File Creation

command-and-controleducationexploitation+2
2 years ago
CVE-2024-29269 preview

CVE-2024-29269

GitHubdream434/cve-2024-29269

An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.

command-and-controleducationexploitation+2
1 year ago
CVE-2024-49368 preview

CVE-2024-49368

GitHubaashay221999/cve-2024-49368

Explorations of CVE-2024-49368 + Exploit Development

command-and-controleducationexploitation+3
1 year ago
CVE-2019-10149 preview

CVE-2019-10149

GitHubhyim0810/cve-2019-10149

CVE-2019-10149

command-and-controleducationexploitation+3
2 years ago
CVE-2023-38831 preview

CVE-2023-38831

GitHubfirfirdaus/cve-2023-38831

A POC demo on CVE-2023-38831

command-and-controleducationexploitation+3
2 years ago
hfs-cve-2014-6287-exploit preview

hfs-cve-2014-6287-exploit

GitHubfrancescobrina/hfs-cve-2014-6287-exploit

Python-based exploit for CVE-2014-6287 in HTTP File Server 2.3.x, delivering a reverse shell via Base64-encoded PowerShell payload for authorized…

command-and-controleducationexploitation+5
1 year ago
CVE-2022-36804 preview

CVE-2022-36804

GitHubasepsaepdin/cve-2022-36804

Python exploit for CVE-2022-36804, a command injection in Atlassian Bitbucket Server and Data Center, enabling remote code execution with read…

command-and-controleducationexploitation+3
1 year ago
CVE-2023-51385- preview

CVE-2023-51385-

GitHubthinkliving2020/cve-2023-51385-

CVE-2023-51385

command-and-controleducationexploitation+3
2 years ago
CVE-2021-44228 preview

CVE-2021-44228

GitHubzaneef/cve-2021-44228

Log4Shell (CVE-2021-44228): Descrizione, Exploitation e Mitigazione

command-and-controleducationexploitation+3
4 years ago
cacti-rce-snmp-options-vulnerable-application preview

cacti-rce-snmp-options-vulnerable-application

GitHubm3ssap0/cacti-rce-snmp-options-vulnerable-application

WARNING: This is a vulnerable application to test the exploit for the Cacti command injection (CVE-2023-39362). Run it at your own risk!

command-and-controleducationexploitation+3
1 year ago
Log4Shell-CVE-2021-44228-Demo preview

Log4Shell-CVE-2021-44228-Demo

GitHubra890927/log4shell-cve-2021-44228-demo

Log4Shell CVE-2021-44228 Demo

command-and-controleducationexploitation+5
4 years ago
CVE-2022-25765 preview

CVE-2022-25765

GitHubinnocentx0/cve-2022-25765

Python proof-of-concept for CVE-2022-25765, a command injection vulnerability in pdfkit, enabling remote code execution via crafted PDF generation.

command-and-controlctfeducation+4
1 day ago
skills preview

skills

GitHubspecterops/skills

Reusable offensive security skills and plugins for AI agents, covering reconnaissance, exploitation, C2, payload development, and reporting across…

command-and-controleducationexploitation+9
221h 26m ago
Previous1…111213…15Next