Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
618 results
CVE-2025-66516-Writeup-POC preview

CVE-2025-66516-Writeup-POC

GitHubchasingimpact/cve-2025-66516-writeup-poc

CVE-2025-66516 working exploit, scanner, explanation.

data-exfiltrationeducationexploitation+5
11
8 months ago
CVE-2020-24227 preview

CVE-2020-24227

GitHubnathunandwani/cve-2020-24227

Playground Sessions - Storing User Credentials in Plaintext

data-exfiltrationforensicsinformation-gathering+2
95 years ago
Rogue-MySql-Server preview

Rogue-MySql-Server

GitHubal1ex/rogue-mysql-server

Rogue-MySql-Server

database-securitydata-exfiltrationexploitation+3
56 years ago
CVE-2026-74251 preview

CVE-2026-74251

GitHubtoanln-cov/cve-2026-74251

Unauthenticated SQL Injection via Attribute Filter in Phoca Cart - CVSS 9.3

database-securitydata-exfiltrationexploitation+3
1 month ago
CVE-2024-42009-PoC preview

CVE-2024-42009-PoC

GitHubdanithehack3r/cve-2024-42009-poc

CVE-2024-42009 Proof of Concept

data-exfiltrationeducationemail-security+3
81 year ago
pepeScraper preview

pepeScraper

GitHubjuaanreis/pepescraper

4chan content scraper

crawlerdata-exfiltrationgeneral-purpose-utilities+2
62 months ago
cve-2022-44268-detector preview

cve-2022-44268-detector

GitHubjnschaeffer/cve-2022-44268-detector

Detect images that likely exploit CVE-2022-44268

binary-analysisdata-exfiltrationforensics+3
52 years ago
enseal preview

enseal

GitHubfleralex/enseal

Secure, ephemeral secret sharing for developers.

authenticationcloud-securityconfiguration-auditing+6
55 months ago
c-CVE-2024-0044 preview

c-CVE-2024-0044

GitHub007criptografia/c-cve-2024-0044

CVE-2024-0044: uma vulnerabilidade de alta gravidade do tipo "executar como qualquer aplicativo" que afeta as versões 12 e 13 do Android

android-securitydata-exfiltrationexploitation+6
42 years ago
EsFileExplorer-CVE-2019-6447 preview

EsFileExplorer-CVE-2019-6447

GitHubchethine/esfileexplorer-cve-2019-6447

Exploiting Android Vulnerability in ES File Explorer

android-securitydata-exfiltrationexploitation+3
34 years ago
selenium-node-takeover-kit preview

selenium-node-takeover-kit

GitHubjonstratton/selenium-node-takeover-kit

A collection of selenium tests that might aid it takeover of a selenium node

command-and-controldata-exfiltrationexploit-frameworks+6
39 months ago
CVE-2026-21002-Serverless-Cold-Start-Credential-Leakage-via-Reused-tmp preview

CVE-2026-21002-Serverless-Cold-Start-Credential-Leakage-via-Reused-tmp

GitHubgeorge0papasotiriou/cve-2026-21002-serverless-cold-start-credential-leakage-via-reused-tmp

PoC exploit for CVE-2026-21002 serverless cold-start credential leakage, demonstrating how reused Lambda /tmp directories expose AWS secrets to other…

cloud-infrastructure-securitycloud-securitydata-exfiltration+4
1 month ago
CVE-2026-53576 preview

CVE-2026-53576

GitHubtamatahyt/cve-2026-53576

Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

authentication-authorizationcontainer-escapedata-exfiltration+7
1 month ago
APT-Backpack preview

APT-Backpack

GitHub34zy/apt-backpack

cve-2019-11510, cve-2019-19781, cve-2020-5902,               cve-2021-1497, cve-2021-20090, cve-2021-22006, cve-2021-22205, cve-2021-26084,…

command-and-controldata-exfiltrationexploitation+6
33 years ago
CVE-2026-11111-TOCTOU-in-File-Permission-Check-Before-Open preview

CVE-2026-11111-TOCTOU-in-File-Permission-Check-Before-Open

GitHubgeorge0papasotiriou/cve-2026-11111-toctou-in-file-permission-check-before-open

Educational CVE PoC for a TOCTOU file-permission race in Flask; uses symlink replacement during the check-open window to disclose sensitive files.

data-exfiltrationeducationexploitation+4
1 month ago
PrivateSphare preview

PrivateSphare

GitLabdshamany/privatesphare

An at-rest encrypted filesharing application with multiple clients who seek to share privately, without tracking.

cloud-securitydata-exfiltrationencryption-decryption-tools+1
2 months ago
ICMPTunnel preview

ICMPTunnel

GitHubal1ex/icmptunnel

icmptunnel

data-exfiltrationids-ips-evasionlateral-movement+3
26 years ago
CVE-2025-58443 preview

CVE-2025-58443

GitHubcasp3r0x0/cve-2025-58443

FOGProject Authentication bypass CVE-2025-58443 Exploit

database-securitydata-exfiltrationexploitation+3
21 year ago
Previous1…202122…35Next