Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
880 results
CVE-2023-34468 preview

CVE-2023-34468

GitHubozcanpng/cve-2023-34468

CVE-2023-34468 Apache NiFi ExecuteSQL H2 RUNSCRIPT RCE PoC

command-and-controlexploitationpayload-development+4
2 months ago
BotCon preview

BotCon

GitHubkeepwannabe/botcon

[CVE-2022-26134] Attlasian Confluence RCE

command-and-controlexploitationpenetration-testing+3
34 years ago
cve-2022-36804 preview

cve-2022-36804

GitHubjunohea/cve-2022-36804

Python exploit for CVE-2022-36804, enabling remote command execution and file transfer on vulnerable Bitbucket Server/Data Center via crafted archive…

command-and-controlexploitationpenetration-testing+2
1 month ago
CVE-2025-63406-PoC preview

CVE-2025-63406-PoC

GitHubnxvh1337/cve-2025-63406-poc

Small PoC to automate exploitation of CVE-2025-63406.

command-and-controlexploitationpenetration-testing+2
410 months ago
CVE-2023-38146-Poc preview

CVE-2023-38146-Poc

GitHubch0ico/cve-2023-38146-poc

Better POC

command-and-controlexploitationpayload-development+3
2 months ago
CVE-2026-50979 preview

CVE-2026-50979

GitHubbugresearch/cve-2026-50979

oPanel Authanticated Remote Code Execution via 'advenced/curl' Component

command-and-controlexploitationpayload-development+3
2 months ago
CVE-2019-15107 preview

CVE-2019-15107

GitHubwhokilleddb/cve-2019-15107

CVE-2019-15107 Webmin Exploit in C

command-and-controlexploitationpayload-development+3
34 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHub0xrogg/cve-2021-41773

The GREENDARK hospital infrastructure was configured by Dr. Gusto Rogue prior to his termination. No further details are provided.

command-and-controlexploitationpenetration-testing+2
2 months ago
D-Link preview

D-Link

GitHubredspy-sec/d-link

CVE-2024-10914 D-Link Remote Code Execution (RCE)

command-and-controlexploitationpenetration-testing+3
41 year ago
CVE-2026-25212 preview

CVE-2026-25212

GitHub5170temp/cve-2026-25212

POC for CVE-2026-25212

command-and-controldatabase-securityexploitation+3
23 months ago
CVE-2022-29337 preview

CVE-2022-29337

GitHubexploitwritter/cve-2022-29337

C-DATA FD702XW-X-R430 v2.1.13_X001 was discovered to contain a command injection vulnerability via the va_cmd parameter in formlanipv6. This…

command-and-controlexploitationpenetration-testing+2
34 years ago
CVE-2025-69212-PoC preview

CVE-2025-69212-PoC

GitHubxorandd/cve-2025-69212-poc

Proof-of-concept exploit for CVE-2025-69212, an OS command injection in OpenSTAManager. Uploads a malicious .p7m file via ZIP to execute arbitrary…

command-and-controlexploitationpenetration-testing+2
2 months ago
cve-2022-26134 preview

cve-2022-26134

GitHubf4yd4-s3c/cve-2022-26134

Python exploit for Atlassian Confluence CVE-2022-26134 OGNL injection vulnerability enabling unauthenticated remote code execution on vulnerable…

command-and-controlexploitationpenetration-testing+2
21 year ago
CVE-2022-30525 preview

CVE-2022-30525

GitHubk0sf/cve-2022-30525

Proof-of-concept exploit for CVE-2022-30525, a remote command injection vulnerability in Zyxel firewalls, with netcat reverse shell and DNS log…

command-and-controlexploitationpenetration-testing+2
34 years ago
cve-2022-30525 preview

cve-2022-30525

GitHubiveresk/cve-2022-30525

Proof-of-concept exploit for CVE-2022-30525 enabling unauthenticated remote command injection on Zyxel firewalls via HTTP POST requests to the…

command-and-controlexploitationpenetration-testing+2
34 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubrevanmalang/cve-2022-1388

Python-based exploit for CVE-2022-1388 enabling unauthenticated remote code execution on F5 BIG-IP devices via crafted API requests, supporting…

command-and-controlexploitationpenetration-testing+2
33 years ago
CVE-2019-15107 preview

CVE-2019-15107

GitHubnasrallahbaadi/cve-2019-15107

CVE-2019-15107 Webmin unauthenticated RCE

command-and-controlexploitationpenetration-testing+3
32 years ago
sagex3-cve-2020-7388-poc preview

sagex3-cve-2020-7388-poc

GitHubac3lives/sagex3-cve-2020-7388-poc

Proof of concept exploit code for CVE-2020-7388, an unauthenticated RCE as SYSTEM on Sage X3's AdxDSrv Service

command-and-controlexploitationpenetration-testing+3
33 years ago
Previous1…242526…49Next