Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
362 results
CVE-2026-7229-SQLI preview

CVE-2026-7229-SQLI

GitHubxmyronn/cve-2026-7229-sqli

Proof of concept for authenticated SQL injection in Coaching Management System, demonstrating database dump via unsanitized complaintreply parameter.

database-securityexploitationpenetration-testing+3
5 months ago
CVE-2025-14847---MongoBleed preview

CVE-2025-14847---MongoBleed

GitHubsaereya/cve-2025-14847---mongobleed

Go proof-of-concept exploit for CVE-2025-14847 (MongoBleed), a MongoDB memory disclosure vulnerability. Crafts malformed BSON documents to leak…

database-securityeducationexploitation+3
8 months ago
CVE-2025-14847 preview

CVE-2025-14847

GitHubvfa-tuannt/cve-2025-14847

Remake of CVE-2025-14847 MongoDB vulnerability demonstration

database-securityeducationexploitation+2
8 months ago
CVE-2024-51030 preview

CVE-2024-51030

GitHubvighneshnair7/cve-2024-51030

Proof-of-concept exploit for SQL injection in Sourcecodester Cab Management System 1.0, demonstrating arbitrary SQL execution via the id parameter in…

database-securityexploitationinformation-gathering+3
1 year ago
redis-poc preview

redis-poc

GitHubberabuddies/redis-poc

RCE PoC for Redis 6.2.22, 7.4.9, 8.6.4, 8.8.0, 8.8.1

binary-exploitationdatabase-securityexploitation+3
5151 month ago
CVE-2017-16082 preview

CVE-2017-16082

GitHubnulldreams/cve-2017-16082

NodeJS + Postgres (Remote Code Execution) 🛰

code-analysisdatabase-securityexploitation+3
57 years ago
CVE-2024-36039_PoC preview

CVE-2024-36039_PoC

GitHubzenniskayy2k4/cve-2024-36039_poc

PoC for CVE-2024-36039: Demonstrating SQL Injection via PyMySQL Object-to-String serialization flaw

database-securityeducationexploitation+3
15 months ago
CVE-2024-42327_Zabbix_SQLI preview

CVE-2024-42327_Zabbix_SQLI

GitHubwatchdog1337/cve-2024-42327_zabbix_sqli

POC for CVE-2024-42327, an authenticated SQL Injection in Zabbix through the user.get API Method

database-securityexploitationinformation-gathering+3
31 year ago
CVE-2021-42670 preview

CVE-2021-42670

GitHub0xdeku/cve-2021-42670

CVE-2021-42670 - SQL Injection vulnerability in the Engineers online portal system.

database-securityexploitationinformation-gathering+3
24 years ago
CVE-2021-42667 preview

CVE-2021-42667

GitHub0xdeku/cve-2021-42667

CVE-2021-42667 - SQL Injection vulnerability in the Online event booking and reservation system.

database-securityexploitationinformation-gathering+3
24 years ago
CVE-2026-7394-SQLI preview

CVE-2026-7394-SQLI

GitHubxmyronn/cve-2026-7394-sqli

Proof-of-concept exploit for CVE-2026-7394, a SQL injection vulnerability in SourceCodester Pizzafy Ecommerce System 1.0. Demonstrates authenticated…

database-securityexploitationinformation-gathering+3
4 months ago
CVE-2021-42666 preview

CVE-2021-42666

GitHub0xdeku/cve-2021-42666

CVE-2021-42666 - SQL Injection vulnerability in the Engineers online portal system.

database-securityexploitationinformation-gathering+3
4 years ago
CVE-2026-78804_Dolibarr_authenticated_SQL_injection preview

CVE-2026-78804_Dolibarr_authenticated_SQL_injection

GitHubrepo4chu/cve-2026-78804_dolibarr_authenticated_sql_injection

The action responsible for setting the per-warehouse stock alert threshold (`seuil_stock_alerte`) accepts user-controlled input and later…

database-securityexploitationpenetration-testing+4
5 days ago
CVE-2025-26794-exploit preview

CVE-2025-26794-exploit

GitHubxploitgh0st/cve-2025-26794-exploit

SQL injection exploit for CVE-2025-26794 in Exim 4.98. Automated data extraction via time-based blind SQLi. For authorized penetration testing only.

database-securityexploitationinformation-gathering+3
210 months ago
CVE-2025-29529 preview

CVE-2025-29529

GitHubyoshik0xf6/cve-2025-29529

SQLi ITC Multiplan v3.7.4.1002 (CVE-2025-29529)

database-securityexploitationinformation-gathering+3
1 year ago
moveit-transfer-2023-breach preview

moveit-transfer-2023-breach

GitHubkhengar9274-web/moveit-transfer-2023-breach

Educational case study of the MOVEit Transfer SQL injection breach (CVE-2023-34362) by Cl0p ransomware group, covering attack timeline, exploitation,…

database-securityeducationincident-response+3
7 months ago
N1QLMap preview

N1QLMap

GitHubfsecurelabs/n1qlmap

The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.

database-securitydata-exfiltrationpenetration-testing+1
756 years ago
atproto preview

atproto

GitHubblacksky-algorithms/atproto

Fork of the AT Protocol reference implementation with performance-optimized AppView, Rust-based firehose indexer, Redis caching, and community…

api-securityauthenticationcloud-infrastructure-security+6
9311 days ago
Previous1…789…21Next