Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
879 results
PwnLnX preview

PwnLnX

GitHubthatstraw/pwnlnx

Multi-threaded Python reverse shell with payload generation, session management, keylogging, screensharing, and persistence for authorized…

command-and-controlpayload-generationpenetration-testing+3
226
4 years ago
Eden-RAT preview

Eden-RAT

GitHubiss4cf0ng/eden-rat

An open-source Linux GUI-based Remote Access Tool developed in C# with a Python payload, intended for legitimate penetration testing and…

command-and-controlencryption-decryption-toolsexploitation+5
336 months ago
pwncat preview

pwncat

GitHubcalebstewart/pwncat

Post-exploitation platform automating enumeration, privilege escalation, persistence, and C2 operations via reverse/bind shells with cross-platform…

command-and-controlpenetration-testingpersistence-mechanisms+3
2.9k4 years ago
CVE-2024-47176 preview

CVE-2024-47176

GitHubgumerzzzindo/cve-2024-47176

Python exploit for CVE-2024-47176 achieving remote command execution in CUPS cups-browsed via crafted UDP packets. Includes reverse shell payload…

command-and-controlexploitationpenetration-testing+3
3 months ago
CVE-2026-44825-Apache-Solr-Scanner preview

CVE-2026-44825-Apache-Solr-Scanner

GitHubgagaltotal/cve-2026-44825-apache-solr-scanner

Apache Solr instances that may be affected by CVE-2026-44825, related to Velocity Template Remote Code Execution (RCE) conditions.

command-and-controlexploitationpenetration-testing+3
122 months ago
CVE-2023-24489-ShareFile preview

CVE-2023-24489-ShareFile

GitHubadhikara13/cve-2023-24489-sharefile

This project is a Python script that exploits the CVE-2023-24489 vulnerability in ShareFile. It allows remote command execution on the target server.…

command-and-controlexploitationpenetration-testing+3
133 years ago
atril_cbt-inject-exploit preview

atril_cbt-inject-exploit

GitHubfebinrev/atril_cbt-inject-exploit

CVE-2023-44452, CVE-2023-51698: CBT File Parsing Argument Injection that affected Popular Linux Distros

command-and-controlexploitationpayload-development+3
62 years ago
jboss-autopwn preview

jboss-autopwn

GitHubgitcollect/jboss-autopwn

Automated JBoss exploitation script deploying JSP shells with bind/reverse shell, Meterpreter, and VNC support for penetration testing.

command-and-controlexploitationpayload-development+4
110 years ago
CVE-2024-39943-Poc preview

CVE-2024-39943-Poc

GitHubheyholiday067/cve-2024-39943-poc

CVE-2024-39943 rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated…

command-and-controlexploitationpenetration-testing+2
2 years ago
CVE-2017-12149 preview

CVE-2017-12149

GitHubvveakee/cve-2017-12149

Interactive exploit for CVE-2017-12149 that executes commands on vulnerable JBoss servers, supporting both Linux and Windows targets with a simple…

command-and-controlexploitationpenetration-testing+2
4 years ago
CVE-2020-8250 preview

CVE-2020-8250

GitHubmbadanoiu/cve-2020-8250

CVE-2020-8250: Privilege Escalation via Command Injection in Pulse Secure VPN Linux Client

command-and-controlexploitationpenetration-testing+3
2 years ago
Sudo-Vulnerability-Exploit-CVE-2019-14287 preview

Sudo-Vulnerability-Exploit-CVE-2019-14287

GitHubhasintha-98/sudo-vulnerability-exploit-cve-2019-14287

Exploit for CVE-2019-14287, a sudo vulnerability allowing privilege escalation via user ID -1 on Linux systems. Enables arbitrary command execution…

command-and-controlexploitationpenetration-testing+3
4 years ago
Platypus preview

Platypus

GitHubwangyihang/platypus

:hammer: A modern, cross-platform machine manager

command-and-controlnetwork-securitypenetration-testing+2
1.7k1 month ago
egressbuster preview

egressbuster

GitHubtrustedsec/egressbuster

Egressbuster is a method to check egress filtering and identify if ports are allowed. If they are, you can automatically spawn a shell.

command-and-controlnetwork-securitypenetration-testing
3735 years ago
sh4d0wup preview

sh4d0wup

GitHubkpcyrd/sh4d0wup

Signing-key abuse and update exploitation framework

command-and-controlexploitationpayload-development+3
1311 month ago
PowerProxy preview

PowerProxy

GitHubget-get-get-get/powerproxy

PowerShell SOCKS proxy with reverse proxy capabilities

command-and-controlnetwork-securitypenetration-testing+1
856 years ago
CVE-2011-2523 preview

CVE-2011-2523

GitHubpadsalatushal/cve-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

command-and-controlexploitationpayload-development+3
153 years ago
CVE-2011-2523 preview

CVE-2011-2523

GitHublynk4/cve-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

command-and-controlexploitationpayload-development+3
53 years ago
Previous12…49Next