Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
92 results
CVE-2022-21894 preview

CVE-2022-21894

GitHubwack0/cve-2022-21894

baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

binary-exploitationdata-exfiltrationencryption-decryption-tools+5
353
3 years ago
CVE-2020-11651 preview

CVE-2020-11651

GitHub0xc0d/cve-2020-11651

CVE-2020-11651: Proof of Concept

command-and-controldata-exfiltrationexploitation+3
405 years ago
cve-2017-0065 preview

cve-2017-0065

GitHubdankirk/cve-2017-0065

Exploiting Edge's read:// urlhandler

data-exfiltrationeducationexploitation+2
154 years ago
CVE-2026-46585 preview

CVE-2026-46585

GitHuboscerd/cve-2026-46585

Reproducer for CVE-2026-46585: Apache Camel camel-lucene QUERY header injection enabling authorization bypass / index data exfiltration (fixed in…

data-exfiltrationexploitationpenetration-testing+2
1 month ago
firebase preview
Archived

firebase

GitHubfrancesc-h/firebase

Exploiting misconfigured firebase databases

crawlerdata-exfiltrationdns-subdomain-enumeration+5
1247 years ago
ESFileExplorerOpenPortVuln preview

ESFileExplorerOpenPortVuln

GitHubfs0c131y/esfileexploreropenportvuln

ES File Explorer Open Port Vulnerability - CVE-2019-6447

android-securitydata-exfiltrationexploitation+5
6782 years ago
cve-2016-1764 preview

cve-2016-1764

GitHubmoloch--/cve-2016-1764

Extraction of iMessage Data via XSS

data-exfiltrationexploitationinformation-gathering+4
5110 years ago
CVE-2026-60004 preview

CVE-2026-60004

GitHubshinthink/cve-2026-60004

CVE-2026-60004 — Gitea/Forgejo Diffpatch Git Hook RCE. Bare clone → post-index-change hook injection. CVSS 9.8 | CWE-94 | Gitea < 1.27.1

data-exfiltrationexploitationpenetration-testing+4
17 days ago
CVE-2026-64640 preview

CVE-2026-64640

GitHuboscerd/cve-2026-64640

Reproducer that exploits credential vending before location validation in Apache Polaris Iceberg REST, proving cross-tenant cloud reads and bucket…

api-securitycloud-securitydata-exfiltration+5
13 days ago
CVE-2026-15409 preview

CVE-2026-15409

GitHubch4120n/cve-2026-15409

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…

data-exfiltrationexploitationpenetration-testing+4
317 days ago
CVE-2024-48914 preview

CVE-2024-48914

GitHubeqstlab/cve-2024-48914

Arbitrary File Read and DoS in vendure-ecommerce exploit

data-exfiltrationexploitationinformation-gathering+3
51 year ago
CVE-2026-42527 preview

CVE-2026-42527

GitHuboscerd/cve-2026-42527

Reproducer for CVE-2026-42527 — Apache Camel permissive default ObjectInputFilter admits java.net.URL, enabling a DNS-based out-of-band side channel

data-exfiltrationdns-analysisexploitation+3
1 month ago
CallStranger preview

CallStranger

GitHubyunuscadirci/callstranger

Vulnerability checker for Callstranger (CVE-2020-12695)

data-exfiltrationdns-analysisiot-security+3
4035 years ago
Grafana-CVE-2021-43798 preview

Grafana-CVE-2021-43798

GitHubjas502n/grafana-cve-2021-43798

Grafana Unauthorized arbitrary file reading vulnerability

data-exfiltrationexploitationinformation-gathering+3
3693 years ago
CVE-2024-0044 preview

CVE-2024-0044

GitHub0xbinder/cve-2024-0044

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

android-securitydata-exfiltrationexploitation+6
3301 year ago
CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera preview

CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera

GitHubpuliczek/cve-2022-0337-poc-google-chrome-microsoft-edge-opera

🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak -…

data-exfiltrationeducationexploitation+2
3413 years ago
libreoffice-remote-arbitrary-file-disclosure preview

libreoffice-remote-arbitrary-file-disclosure

GitHubjollheef/libreoffice-remote-arbitrary-file-disclosure

Proof of concept of LibreOffice remote arbitrary file disclosure vulnerability

data-exfiltrationexploitationinformation-gathering+1
968 years ago
android_autorooter preview

android_autorooter

GitHubscs-labrat/android_autorooter

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely

android-securitydata-exfiltrationexploitation+5
772 years ago
Previous123456Next