Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
216 results
TryHackMe-Atlassian-CVE-2022-26134 preview

TryHackMe-Atlassian-CVE-2022-26134

GitHubr1skkam/tryhackme-atlassian-cve-2022-26134

Atlassian, CVE-2022-26134 An interactive lab showcasing the Confluence Server and Data Center un-authenticated RCE vulnerability.

ctfeducationexploitation+3
1
4 years ago
CVE-2019-18634-writeup preview

CVE-2019-18634-writeup

GitHubdevteam6rabbit/cve-2019-18634-writeup

analysis of the sudo buffer overflow affect sudo version <1.8.26 and how to use GCC to compile publicly availible exploits

binary-exploitationctfeducation+4
8 months ago
ZeroLogon-CVE-2020-1472-lab preview

ZeroLogon-CVE-2020-1472-lab

GitHub100hnomeunome/zerologon-cve-2020-1472-lab

Explicação e demonstração da vulnerabilidade ZeroLogon (CVE-2020-1472)

ctfeducationexploitation+7
11 months ago
CVE-2014-6271-Shellshock- preview

CVE-2014-6271-Shellshock-

GitHubdrhaitham/cve-2014-6271-shellshock-

A complete, modern demonstration lab for CVE-2014-6271 (Shellshock), including architecture, exploitation steps, Burp Suite usage, reverse shells,…

command-and-controlctfeducation+8
9 months ago
AutoPwn-Titanic.htb preview

AutoPwn-Titanic.htb

GitHubmaikneysm/autopwn-titanic.htb

This is an automated exploitation script for the Hack The Box machine *Titanic*. It extracts Gitea user hashes via LFI, assists in cracking them, and…

ctfexploitationinformation-gathering+5
1 year ago
CVE-2026-42945 preview

CVE-2026-42945

GitHubyusufdalbudak/cve-2026-42945

Dockerized lab for training on NGINX rewrite vulnerability (CVE-2026-42945) with vulnerable and patched instances, benign test scripts, and…

configuration-auditingctfeducation+3
4 months ago
Poison-HTB-Report preview

Poison-HTB-Report

GitHubbugvex/poison-htb-report

Privilege Escalation on HTB "Poison" using PwnKit (CVE-2021-4034)

ctfeducationexploitation+3
1 year ago
CVE-2025-10230 preview

CVE-2025-10230

GitHubmarcostolosa/cve-2025-10230

OS command injection vulnerability in Samba that received the maximum possible CVSS v3.1 score of 10.0

ctfeducationexploitation+3
9 months ago
CTF-CVE-2022-0847 preview

CTF-CVE-2022-0847

GitHubjustinye377/ctf-cve-2022-0847

CTF challenge deploying CVE-2022-0847 (Dirty Pipe) exploit to overwrite read-only files. Includes setup scripts, hints, and verification for kernel…

binary-exploitationctfeducation+3
1 year ago
CVE-2022-46152 preview

CVE-2022-46152

GitHub0xbbdd/cve-2022-46152

CVE-2022-46152: Improper Validation of Array Index in the `cleanup_shm_refs' function.

binary-exploitationctfeducation+5
6 months ago
SideWinder-Exploit preview

SideWinder-Exploit

GitHubtitusg85/sidewinder-exploit

This is an exercise built around CVE-2021-3560

binary-exploitationctfeducation+6
1 year ago
CTF---CVE-2011-2523 preview

CTF---CVE-2011-2523

GitHubxiangsi-howard/ctf---cve-2011-2523

Step-by-step CTF walkthrough exploiting the vsftpd 2.3.4 backdoor (CVE-2011-2523) to capture and crack /etc/shadow and /etc/passwd from…

ctfeducationexploitation+5
3 years ago
Trickster-HTB preview

Trickster-HTB

GitHubpallangyo98/trickster-htb

This report details exploiting Trickster via an XSS in PrestaShop (CVE-2024-34716) to gain www-data access, extracting database credentials for SSH…

ctfeducationexploitation+5
1 year ago
CVE-2014-6271_pwnable preview

CVE-2014-6271_pwnable

GitHubhanmin0512/cve-2014-6271_pwnable

Hands-on lab demonstrating the Shellshock (CVE-2014-6271) Bash vulnerability with privilege escalation via environment variable injection, based on…

binary-exploitationctfeducation+3
3 years ago
CPLHF preview

CPLHF

GitHubwhereisxuezugi/cplhf

Modular Bash toolkit that hardens Debian/Ubuntu systems for CyberPatriot competitions, automating account, firewall, SSH, PAM, and service hardening…

configuration-auditingctfdefensive-tools+6
37 days ago
StegCracker preview
Archived

StegCracker

GitHubparadoxis/stegcracker

Steganography brute-force utility to uncover hidden data inside files

cryptographyctfpassword-cracking+2
6045 years ago
CVE-2021-28480_HoneyPoC3 preview
Archived

CVE-2021-28480_HoneyPoC3

GitHubzephrfish/cve-2021-28480_honeypoc3

DO NOT RUN THIS.

ctfeducationexploitation+3
101 month ago
InjuredAndroid preview
Archived

InjuredAndroid

GitHubb3nac/injuredandroid

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

android-securityctfeducation+5
7635 years ago
Previous1…1112Next