Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
262 results
CVE-2025-10351-POC preview

CVE-2025-10351-POC

GitHubivansmc/cve-2025-10351-poc

Exploit for CVE-2025-10351. SQL Injection on Melis Platform Framework

database-securityexploitationinformation-gathering+3
1
6 months ago
CVE-2025-63572 preview

CVE-2025-63572

GitHubrrespxwnss/cve-2025-63572

A SQL injection vulnerability was discovered in the endpoint responsible for searching for platform clients. User input sent to the search parameter…

database-securityexploitationinformation-gathering+3
9 months ago
CVE-2024-48427 preview

CVE-2024-48427

GitHubvighneshnair7/cve-2024-48427

Proof-of-concept for CVE-2024-48427: SQL injection in Sourcecodester Packers and Movers Management System v1.0. Exploits the id parameter to execute…

database-securityexploitationinformation-gathering+3
11 year ago
CVE-2025-40677 preview

CVE-2025-40677

GitHubpetergabaldon/cve-2025-40677

Summar Employee Portal Prior to 3.98.0 Authenticated SQL Injection - CVE-2025-40677

database-securityexploitationinformation-gathering+3
111 months ago
CVE-2022-27434 preview

CVE-2022-27434

GitHublongwayhomie/cve-2022-27434

UNIT4 TETA Mobile Edition 29HF13 was discovered to contain a SQL injection vulnerability via the ProfileName parameter in the errorReporting page.

database-securityinformation-gatheringpenetration-testing+2
14 years ago
MongoDeepDive preview

MongoDeepDive

GitHubtunahantekeoglu/mongodeepdive

Context-Aware Memory Leak Scanner & Exploit for CVE-2025-14847.

database-securityexploitationinformation-gathering+3
8 months ago
CVE-2025-14847 preview

CVE-2025-14847

GitHub0xblackash/cve-2025-14847

CVE-2025-14847

database-securityexploitationinformation-gathering+3
6 months ago
MongoBleed-CVE-2025-14847 preview

MongoBleed-CVE-2025-14847

GitHubsystemhaus-schulz/mongobleed-cve-2025-14847

MongoBleed CVE-2025-14847 Vulnerability Checker

database-securityexploitationinformation-gathering+3
8 months ago
exploit-joomla preview

exploit-joomla

GitHubareaventuno/exploit-joomla

Un semplice exploit che sfrutta CVE-2015-7297, CVE-2015-7857 and CVE-2015-7858 per elencare gli utenti con la psw del db

database-securityexploitationinformation-gathering+3
5 years ago
sakthivel10q.github.io preview

sakthivel10q.github.io

GitHubsakthivel10q/sakthivel10q.github.io

🛠 Exploit the CVE-2025-14847 MongoDB vulnerability to reveal sensitive information through crafted zlib-compressed packets and real-time output.

database-securityexploitationinformation-gathering+2
6 months ago
CVE-2025-45346 preview

CVE-2025-45346

GitHub0xsu3ks/cve-2025-45346

Proof-of-concept exploit for time-based blind SQL injection in Bacula-Web's jobfiles endpoint, using pg_sleep() delays to extract PostgreSQL version…

database-securityexploitationinformation-gathering+3
1 year ago
CVE-2019-14529 preview

CVE-2019-14529

GitHubwezery/cve-2019-14529

OpenEMR Security issue

database-securityinformation-gatheringpenetration-testing+2
6 years ago
CVE-2021-2173 preview

CVE-2021-2173

GitHubemad-almousa/cve-2021-2173

Proof-of-concept exploit for CVE-2021-2173, demonstrating Oracle Database metadata exposure via broken PDB isolation. Includes technical details and…

database-securityexploitationinformation-gathering+2
5 years ago
redis-checker preview

redis-checker

GitHubrandomrobbiebf/redis-checker

Checks for exposed Redis servers

database-securityinformation-gatheringmisconfiguration+3
3 years ago
CVE-2025-51970 preview

CVE-2025-51970

GitHubm4xiq/cve-2025-51970

SQL Injection in Online Shopping System Advanced (CVE-2025-51970)

database-securityexploitationinformation-gathering+3
1 year ago
CVE-2023-31719 preview

CVE-2023-31719

GitHubmateustesser/cve-2023-31719

Proof-of-concept exploit for CVE-2023-31719, demonstrating SQL injection in the FUXA web application's /api/signin endpoint via a crafted JSON…

api-security-testingdatabase-securityexploitation+3
2 years ago
CVE-2021-42666 preview

CVE-2021-42666

GitHub0xdeku/cve-2021-42666

CVE-2021-42666 - SQL Injection vulnerability in the Engineers online portal system.

database-securityexploitationinformation-gathering+3
4 years ago
CVE-2020-2978 preview

CVE-2020-2978

GitHubemad-almousa/cve-2020-2978

Proof-of-concept exploit for CVE-2020-2978 targeting Oracle RMAN audit table point-in-time recovery bypass, enabling unauthorized database access.

database-securityexploitationinformation-gathering+2
5 years ago
Previous1…131415Next