Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
21 results
CVE-2026-85706 preview

CVE-2026-85706

GitHubgabrielunknown/cve-2026-85706

Perl PoC exploiting CVE-2026-85706, an unauthenticated GitLab path traversal enabling arbitrary file read, with bulk scanning and credential…

data-exfiltrationexploitationinformation-gathering+6
16 days ago
CVE-2023-22047-Oracle-PeopleSoft-LFI preview

CVE-2023-22047-Oracle-PeopleSoft-LFI

GitHub0xterror/cve-2023-22047-oracle-peoplesoft-lfi

CVE-2023-22047 is a critical unauthenticated Local File Inclusion (LFI) vulnerability in Oracle PeopleSoft Enterprise PeopleTools. This exploit…

data-exfiltrationexploitationinformation-gathering+3
1 month ago
ImageMagick-CVE-2022-44268-PoC preview

ImageMagick-CVE-2022-44268-PoC

GitHubatici/imagemagick-cve-2022-44268-poc

A bash script for easyly exploiting ImageMagick Arbitrary File Read Vulnerability CVE-2022-44268

data-exfiltrationexploitationinformation-gathering+3
2 months ago
CVE-2024-28987 preview

CVE-2024-28987

GitHubdarabium/cve-2024-28987

**CVE-2024-28987** is a critical vulnerability in SolarWinds Web Help Desk (WHD) that allows remote attackers to access sensitive ticket information…

data-exfiltrationexploitationpenetration-testing+2
12 months ago
citrix_bleed_2 preview

citrix_bleed_2

GitHubrar1991/citrix_bleed_2

Citrix Bleed 2 PoC Scanner (CVE-2025-5777)

data-exfiltrationexploitationinformation-gathering+3
1 year ago
CVE-2021-29447-Authenticated-XXE-WordPress-5.6-5.7 preview

CVE-2021-29447-Authenticated-XXE-WordPress-5.6-5.7

GitHubtea-on/cve-2021-29447-authenticated-xxe-wordpress-5.6-5.7

POC to exploit WordPress 5.6-5.7 (PHP 8+) Authenticated XXE Injection.

data-exfiltrationexploitationinformation-gathering+3
21 year ago
CVE-2025-24071-PoC preview

CVE-2025-24071-PoC

GitHublooky243/cve-2025-24071-poc

CVE-2025-24071 Proof Of Concept

data-exfiltrationexploitationinformation-gathering+3
31 year ago
CVE-2024-52317 preview

CVE-2024-52317

GitHubtam-k592/cve-2024-52317

CVE-2024-52317 - Apache Tomcat HTTP/2 Data Leakage Vulnerability

data-exfiltrationexploitationinformation-gathering+2
41 year ago
CVE-2024-48914 preview

CVE-2024-48914

GitHubeqstlab/cve-2024-48914

Arbitrary File Read and DoS in vendure-ecommerce exploit

data-exfiltrationexploitationinformation-gathering+3
51 year ago
CVE-2024-34102-CosmicSting-XXE-in-Adobe-Commerce-and-Magento preview

CVE-2024-34102-CosmicSting-XXE-in-Adobe-Commerce-and-Magento

GitHubjakabakos/cve-2024-34102-cosmicsting-xxe-in-adobe-commerce-and-magento

CosmicSting: critical unauthenticated XXE vulnerability in Adobe Commerce and Magento (CVE-2024-34102)

data-exfiltrationexploitationinformation-gathering+3
92 years ago
Microsoft-Edge-Information-Disclosure preview

Microsoft-Edge-Information-Disclosure

GitHubabsholi7ly/microsoft-edge-information-disclosure

CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

data-exfiltrationexploitationinformation-gathering+3
172 years ago
CVE-2023-08-21-exploit preview

CVE-2023-08-21-exploit

GitHubamirzargham/cve-2023-08-21-exploit

Axigen < 10.3.3.47, 10.2.3.12 - Reflected XSS

data-exfiltrationexploitationinformation-gathering+3
12 years ago
CVE-2023-35636 preview

CVE-2023-35636

GitHubduy-31/cve-2023-35636

Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC

data-exfiltrationeducationemail-security+3
432 years ago
CVE-2023-5808 preview

CVE-2023-5808

GitHubarszilla/cve-2023-5808

Exploit for CVE-2023-5808, an IDOR in Hitachi NAS SMU Backup & Restore, allowing unauthorized download of sensitive configuration backups.

data-exfiltrationexploitationinformation-gathering+3
22 years ago
CVE-2023-31711 preview

CVE-2023-31711

GitHubhritikthapa7/cve-2023-31711

Zero-day Vulnerability in ZKTEco biometric fingerprint reader.

data-exfiltrationexploitationinformation-gathering+3
33 years ago
TFTPlunder preview

TFTPlunder

GitHubysaxon/tftplunder

Info and exploit for CVE-2023-29930: blind file read/write in Genesys TFTP provisioning server configuration

data-exfiltrationexploitationinformation-gathering+3
13 years ago
kyocera-cve-2022-1026 preview

kyocera-cve-2022-1026

GitHubac3lives/kyocera-cve-2022-1026

An unauthenticated data extraction vulnerability in Kyocera printers, which allows for recovery of cleartext address book and domain joined passwords

data-exfiltrationexploitationinformation-gathering+3
263 years ago
Grafana-CVE-2021-43798 preview

Grafana-CVE-2021-43798

GitHubjas502n/grafana-cve-2021-43798

Grafana Unauthorized arbitrary file reading vulnerability

data-exfiltrationexploitationinformation-gathering+3
3693 years ago
Previous12Next