Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1051 results
react2shell-lab preview

react2shell-lab

GitHubpwnxpl0it/react2shell-lab

React2shell vulnerable lab (CVE-2025-55182)

ctfeducationlabs-practice+3
9 months ago
react2shell preview

react2shell

GitHubvulnvault/react2shell

Official Walkthrough for lab React2Shell: CVE-2025-5182

ctfeducationexploitation+3
8 months ago
Integer-Overflow-test preview

Integer-Overflow-test

GitHubjigerjain/integer-overflow-test

Exploit for CVE-2016-8636 integer overflow in infiniband Soft RoCE mem_check function, with educational Pwnie Adventure island exploration.

binary-exploitationctfeducation+2
7 years ago
CVE-2021-4034-Capture-the-flag preview

CVE-2021-4034-Capture-the-flag

GitHubjohngilbert57/cve-2021-4034-capture-the-flag

Educational C exploit for CVE-2021-4034 (pkexec) with video walkthrough demonstrating privilege escalation on vulnerable Linux systems.

binary-exploitationctfeducation+3
3 years ago
CVE-2021-37787 preview

CVE-2021-37787

GitHubvasykor/cve-2021-37787

CVE-2021-37787

ctfeducationexploitation+3
1 year ago
CVE-2025-49132_HTB_SEASON10 preview

CVE-2025-49132_HTB_SEASON10

GitHubnik123-py/cve-2025-49132_htb_season10

Exploit for CVE-2025-49132 targeting Pterodactyl Panel, combining path traversal with PEAR command injection for unauthenticated remote code…

ctfeducationexploitation+4
7 months ago
cve-2021-4034-playground preview

cve-2021-4034-playground

GitHubsilocityit/cve-2021-4034-playground

A hands-on binary exploitation challenge based on CVE-2021-4034, designed for practicing privilege escalation techniques in a controlled environment.

binary-exploitationctfeducation+2
4 years ago
CVE-2007-2447_python preview

CVE-2007-2447_python

GitHubbdunlap9/cve-2007-2447_python

Exploit i used in HTB

ctfeducationexploitation+2
3 years ago
vulnmachines preview

vulnmachines

GitHubvulnmachines/vulnmachines

Platform

ctfcurated-resourceseducation+2
4 years ago
Why-so-Serious-SAM preview

Why-so-Serious-SAM

GitHubp1rat3r00t/why-so-serious-sam

PoC malware that uses exploit CVE-2021-36934 (improper ACLs on shadow copies) using a fileless red team method on Windows 10/11 with LOLBins,…

ctfeducationexploitation+6
1 year ago
CTFs preview

CTFs

GitLabwhatthefuzz-ctfs/ctfs

CTF challenges!

binary-exploitationctfeducation+6
3 years ago
CVE-2023-42793 preview

CVE-2023-42793

GitHubflojboj/cve-2023-42793

TeamCity CVE-2023-42793 RCE (Remote Code Execution)

ctfeducationexploitation+3
2 years ago
demo-CVE-2021-29447-lezione preview

demo-CVE-2021-29447-lezione

GitHubspecializzazione-cyber-security/demo-cve-2021-29447-lezione

Proof-of-concept exploit for CVE-2021-29447, an authenticated XXE vulnerability in WordPress 5.6-5.7. Includes lab setup, malicious WAV generation,…

ctfeducationexploitation+3
1 year ago
CVE-2024-23724 preview

CVE-2024-23724

GitHubyoussefdds/cve-2024-23724

Proof-of-concept exploit for CVE-2024-23724 in Ghost CMS, demonstrating privilege escalation via malicious SVG profile image upload.

ctfeducationexploitation+3
1 year ago
CVE-2019-12735 preview

CVE-2019-12735

GitHubdatntsec/cve-2019-12735

Detailed technical analysis and proof-of-concept for CVE-2019-12735, an arbitrary code execution vulnerability in Vim/Neovim via modeline sandbox…

binary-exploitationctfeducation+3
5 years ago
CTF_CVE-2020-7471 preview

CTF_CVE-2020-7471

GitHubtempuss/ctf_cve-2020-7471

CTF challenge exploiting CVE-2020-7471, a Django SQL injection vulnerability in PostgreSQL StringAgg, with Docker setup and exploit scripts.

ctfdatabase-securityeducation+4
5 years ago
CVE-2024-42327 preview

CVE-2024-42327

GitHubigorbf495/cve-2024-42327

writeup cve-2024-42327

ctfeducationexploitation+7
1 year ago
CVE-2015-3306 preview

CVE-2015-3306

GitHubz3r0space/cve-2015-3306

This contains single-file exploit for ProFTPd 1.3.5 mod_copy (CVE-2015-3306) vulnerability, especially for TryHackMe Kenobi Lab.

ctfeducationexploitation+3
1 year ago
Previous1…56575859Next