Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1048 results
CVE-2019-3980-Open_Net_Admin_v18.1.1_RCE preview

CVE-2019-3980-Open_Net_Admin_v18.1.1_RCE

GitHubcyberquestor-infosec/cve-2019-3980-open_net_admin_v18.1.1_rce

Bash-based exploit for CVE-2019-3980 targeting OpenNetAdmin 18.1.1, delivering unauthenticated remote code execution via command injection and…

command-and-controleducationexploitation+3
1
1 year ago
CVE-2022-22980 preview

CVE-2022-22980

GitHubeliasdekiniweek/cve-2022-22980

Exploitation de CVE-2022-22980

command-and-controlctfeducation+3
16 months ago
CVE-2007-2447 preview

CVE-2007-2447

GitHubabdulsaabir/cve-2007-2447

Proof-of-concept exploit for Samba usermap script remote command execution (CVE-2007-2447), with reverse shell capability for controlled lab testing…

command-and-controleducationexploitation+4
18 months ago
TraditionalJay preview

TraditionalJay

GitHubastraljays/traditionaljay

Intentionally vulnerable VM-hosted Java shop — Log4Shell (CVE-2021-44228) workshop lab (EC2 / Azure VM / GCE)

cloud-securitycommand-and-controleducation+5
2 months ago
n8n-cve-2025-68613 preview

n8n-cve-2025-68613

GitHubgagaltotal/n8n-cve-2025-68613

Authenticated RCE exploit PoC and vulnerability scanner for CVE-2025-68613 in n8n. Supports command execution, file operations, and reverse shell…

command-and-controleducationexploitation+5
8 months ago
DeepRoot preview

DeepRoot

GitHubgeorge-yanni/deeproot

CVE-2021-3493 OverlayFS privilege escalation exploit framework with advanced red team features. Includes persistence mechanisms, post-exploitation…

binary-exploitationcommand-and-controleducation+6
8 months ago
CVE-2025-55182-Simple-Scanner preview

CVE-2025-55182-Simple-Scanner

GitHubsatriarizka/cve-2025-55182-simple-scanner

High-fidelity RCE scanner for CVE-2025-55182 affecting Next.js RSC. Supports mass scanning, command execution, and automated recon pipelines. Built…

command-and-controleducationexploitation+5
9 months ago
CVE-2022-31199 preview

CVE-2022-31199

GitHubdeveloperfred/cve-2022-31199

Proof-of-concept exploits for CVE-2022-31199, a critical .NET deserialization RCE in Netwrix Auditor. Includes Python and PowerShell scripts, payload…

command-and-controleducationexploitation+5
10 months ago
Audit-BlackBox-Web-to-Root preview

Audit-BlackBox-Web-to-Root

GitHubfbm31/audit-blackbox-web-to-root

Audit de sécurité Black Box d'un serveur Drupal 7. Démonstration d'une Kill Chain complète : Injection SQL (CVE-2014-3704) ➔ RCE ➔ Reverse Shell ➔…

command-and-controleducationexploitation+8
8 months ago
CVE-2026-39987 preview

CVE-2026-39987

GitHub0xblackash/cve-2026-39987

CVE-2026-39987

command-and-controleducationexploitation+5
5 months ago
CVE-2021-3456 preview

CVE-2021-3456

GitHubmrk336/cve-2021-3456

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

command-and-controleducationexploitation+8
1 year ago
CVE-2025-65964 preview

CVE-2025-65964

GitHubsaboor-hakimi-23/cve-2025-65964

Educational CTF demo demonstrating command execution via Git hooks by abusing core.hooksPath in automation workflows. Highlights local hook execution…

command-and-controlctfeducation+3
9 months ago
cve-2023-1671 preview

cve-2023-1671

GitHubcsffs/cve-2023-1671

Python-based exploit for CVE-2023-1671 with test and exploitation functions. Tests vulnerability via DNS ping, then executes arbitrary commands on…

command-and-controleducationexploitation+3
3 years ago
CVE-2022-33891 preview

CVE-2022-33891

GitHubasepsaepdin/cve-2022-33891

Proof-of-concept exploit for Apache Spark command injection (CVE-2022-33891) with check and reverse shell modes, enabling authorized security testing.

command-and-controleducationexploitation+3
1 year ago
cve-2024-3400 preview

cve-2024-3400

GitHubkr0ff/cve-2024-3400

Python exploit and checker script for CVE-2024-3400 Palo Alto Command Injection and Arbitrary File Creation

command-and-controleducationexploitation+2
2 years ago
CVE-2022-36804 preview

CVE-2022-36804

GitHubasepsaepdin/cve-2022-36804

Python exploit for CVE-2022-36804, a command injection in Atlassian Bitbucket Server and Data Center, enabling remote code execution with read…

command-and-controleducationexploitation+3
1 year ago
CVE-2023-38831 preview

CVE-2023-38831

GitHubfirfirdaus/cve-2023-38831

A POC demo on CVE-2023-38831

command-and-controleducationexploitation+3
2 years ago
letsdefend-cve2024-3400-case-study preview

letsdefend-cve2024-3400-case-study

GitHubcyprianatsyor/letsdefend-cve2024-3400-case-study

Detection, analysis, and response strategies for CVE-2024-3400 exploitation attempts targeting Palo Alto PAN-OS GlobalProtect portals. Includes IOCs,…

command-and-controldigital-forensicseducation+8
1 year ago
Previous1…575859Next