Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
879 results
CVE-2023-4450-Attack preview

CVE-2023-4450-Attack

GitHubilikeoyt/cve-2023-4450-attack

Automated Java-based exploit tool for CVE-2023-4450 targeting JimuReport, featuring command execution and memory shell injection (Behinder) for…

command-and-controlexploitationpayload-development+3
21
2 years ago
cve-2025-63888-exploit preview

cve-2025-63888-exploit

GitHuban5i/cve-2025-63888-exploit

Security research tool for detecting and testing CVE-2025-63888 (ThinkPHP 5.0.24 File Inclusion RCE vulnerability)

command-and-controlexploitationpayload-development+4
1010 months ago
CVE-2025-55182-golang-PoC preview

CVE-2025-55182-golang-PoC

GitHubkeklick1337/cve-2025-55182-golang-poc

Go-based proof-of-concept for CVE-2025-55182, a critical RCE in React Server Components. Features vulnerability checking, command execution, memory…

command-and-controlexploitationpayload-development+6
69 months ago
CVE-2026-22812 preview

CVE-2026-22812

GitHub0xgh057r3c0n/cve-2026-22812

Python exploit tool for OpenCode RCE (CVE-2026-22812) providing command execution, file read/write/upload/download, and interactive shell for…

command-and-controlexploitationpenetration-testing+3
28 months ago
CVE-2025-54322-exploit preview

CVE-2025-54322-exploit

GitHubnkuty/cve-2025-54322-exploit

Proof-of-concept exploit for CVE-2025-54322, a critical pre-authentication RCE in XSpeeder SXZOS firmware. Provides interactive shell, reverse shell…

command-and-controlexploitationpayload-development+3
28 months ago
CVE-2022-22947 preview

CVE-2022-22947

GitHubvancomycin-g/cve-2022-22947

Exploit tool for CVE-2022-22947 in Spring Cloud Gateway, featuring vulnerability detection, reverse shell, and outbound connectivity testing.

command-and-controlexploitationpayload-development+3
24 years ago
CVE-2026-27966--RCE-in-Langflow preview

CVE-2026-27966--RCE-in-Langflow

GitHubanon-cyber-team/cve-2026-27966--rce-in-langflow

All-in-one exploit tool for CVE-2026-27966, a critical RCE in Langflow. Features mass scanning, auto-detection, payload execution, interactive shell,…

command-and-controlexploitationpenetration-testing+3
26 months ago
CVE-2026-5027-Langflow preview

CVE-2026-5027-Langflow

GitHublayer-6/cve-2026-5027-langflow

Multi-CVE exploit tool for pre-auth remote code execution on Ivanti Sentry and FortiSandbox. Features interactive shell, webshell deployment,…

command-and-controlexploitationpayload-development+8
3 months ago
distccd_rce_CVE-2004-2687 preview

distccd_rce_CVE-2004-2687

GitHubmicheaol/distccd_rce_cve-2004-2687

Manual exploit script for CVE-2004-2687 (distccd RCE) that spawns a reverse shell via netcat without Metasploit, targeting remote hosts for…

command-and-controlexploitationpenetration-testing+3
5 months ago
r2rs preview

r2rs

GitHubhakkuri01/r2rs

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

command-and-controlexploitationpenetration-testing+3
13 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubz3n70/cve-2026-24061

Ruby-based exploit for CVE-2026-24061 that executes arbitrary commands on remote targets, supporting multi-threaded scanning and command injection…

command-and-controlexploitationpenetration-testing+2
8 months ago
CVE-2025-3248 preview

CVE-2025-3248

GitHubr0otk3r/cve-2025-3248

Scanner and exploit for CVE-2025-3248, an unauthenticated RCE in Langflow AI. Includes a vulnerability checker and a reverse shell payload generator…

command-and-controlexploitationpayload-development+5
11 year ago
CVE-2024-1212 preview

CVE-2024-1212

GitHubr0otk3r/cve-2024-1212

Unauthenticated remote command execution exploit for Progress Kemp LoadMaster CVE-2024-1212. Supports proxy interception and output logging for…

command-and-controlexploitationpenetration-testing+3
1 year ago
cve-2024-38063-Anonyvader preview

cve-2024-38063-Anonyvader

GitHubalihj98/cve-2024-38063-anonyvader

Exploit tool for CVE-2024-38063, a Windows TCP/IP remote code execution vulnerability, providing proof-of-concept code for security testing and…

command-and-controlexploitationpayload-development+3
11 year ago
CVE-2026-0709 preview

CVE-2026-0709

GitHubsnipersmaster/cve-2026-0709

Python proof-of-concept for authenticated command injection in Hikvision wireless APs, enabling remote code execution testing with customizable…

command-and-controlexploitationpenetration-testing+3
6 months ago
CVE-2019-12725 preview

CVE-2019-12725

GitHubgougou123-hash/cve-2019-12725

Batch scanner and exploit for CVE-2019-12725, a ZeroShell command injection vulnerability. Supports single URL testing, mass scanning, and…

command-and-controlexploitationpenetration-testing+2
5 years ago
CVE-2014-6271-IPFire preview

CVE-2014-6271-IPFire

GitHubmuirlandoracle/cve-2014-6271-ipfire

Python-based remote code execution exploit for CVE-2014-6271 (ShellShock) targeting IPFire <=2.15. Automated exploitation with configurable switches…

command-and-controlexploitationpenetration-testing+3
5 years ago
CVE-2012-2982 preview

CVE-2012-2982

GitHubvarppi/cve-2012-2982

Proof-of-concept exploit for CVE-2012-2982, a remote command execution vulnerability in /file/show.cgi. Demonstrates unauthenticated RCE for security…

command-and-controlexploitationpenetration-testing+2
3 years ago
Previous1…567…49Next