Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
162 results
CVE-2021-23394 preview

CVE-2021-23394

GitHub0xnemian/cve-2021-23394

Docker container to setup a vulnerable elfinder version on both nginx and apache servers. Can be used to test vulnerability POC

container-securityeducationlabs-practice+3
8 months ago
CVE-2022-0847-DirtyPipe-Exploits preview

CVE-2022-0847-DirtyPipe-Exploits

GitHubjxpsx/cve-2022-0847-dirtypipe-exploits

A collection of exploits and documentation that can be used to exploit the Linux Dirty Pipe vulnerability.

binary-exploitationeducationexploitation+2
4 years ago
CVE-2023-50164Analysis- preview

CVE-2023-50164Analysis-

GitHubasfandalimemon25/cve-2023-50164analysis-

CVE-2023-50164 An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a…

educationexploitationlabs-practice+3
2 years ago
CVE-2018-6574-go-get-RCE preview

CVE-2018-6574-go-get-RCE

GitHubhasharmujahid/cve-2018-6574-go-get-rce

The issue is due to the fact that when installing a package, Golang will build native extensions. This can be used to pass additional flags to the…

educationexploitationpayload-development+2
3 years ago
SSR-DNSSEC preview
Archived

SSR-DNSSEC

GitHubmeirelez/ssr-dnssec

In this repository you can find the files used to try to produce a POC for the CVE-2023-50387

dns-analysiseducationexploitation+2
2 years ago
atomic-operator preview
Archived

atomic-operator

GitHubswimlane/atomic-operator

A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.

cloud-securitydefensive-toolseducation+3
1562 years ago
FTC-Skystone-Dark-Angels-Romania-2020 preview

FTC-Skystone-Dark-Angels-Romania-2020

GitHubchrisneagu/ftc-skystone-dark-angels-romania-2020

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC…

educationembedded-systems-securityhardware-security+3
3035 years ago
SharpExchange preview

SharpExchange

GitHubceramicskate0/sharpexchange

C# Tool to interact with MS Exchange based on MS docs

data-exfiltrationeducationinformation-gathering+4
1023 years ago
LOLBins preview

LOLBins

GitHubhamza-megahed/lolbins

Desktop application to browse and search Living Off The Land Binaries and Scripts (LOLBAS) for Windows and Unix binaries (GTFOBins) for privilege…

educationinformation-gatheringpenetration-testing+1
444 years ago
JavaScript-Example preview

JavaScript-Example

GitHubseal-sec-demo-2/javascript-example

Seal Security example — vulnerable npm app (EJS CVE-2022-29078) remediated to sealed versions; GitHub Actions + Jenkins integration

code-analysisdevsecopseducation+3
17 days ago
Java-Example preview

Java-Example

GitHubseal-sec-demo-2/java-example

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration

code-analysisdevsecopseducation+3
1 month ago
Python-Example preview

Python-Example

GitHubseal-sec-demo-2/python-example

Seal Security example — vulnerable pip app (PyYAML CVE-2020-14343) remediated to sealed versions; GitHub Actions + Jenkins integration

code-analysisdevsecopseducation+2
1 month ago
CVE-2024-28247-Pi-hole-Arbitrary-File-Read preview

CVE-2024-28247-Pi-hole-Arbitrary-File-Read

GitHubt0x1cx/cve-2024-28247-pi-hole-arbitrary-file-read

This repository provides an exploit for CVE-2024-28247, highlighting a vulnerability that permits a remote attacker to read arbitrary files on the…

educationexploitationpenetration-testing+2
32 years ago
CVE-2019-18634-writeup preview

CVE-2019-18634-writeup

GitHubcyrusrazavi/cve-2019-18634-writeup

analysis of the sudo buffer overflow affect sudo version <1.8.26 and how to use GCC to compile publicly availible exploits

binary-exploitationctfeducation+4
7 months ago
google-ctf preview

google-ctf

GitHubgoogle/google-ctf

Archived CTF challenge sources and deployable sandboxes since 2017, with intentionally vulnerable exercises for hands-on security training and…

ctfcurated-resourceseducation+1
5.0k6 months ago
exploitation-course preview

exploitation-course

GitHubashemery/exploitation-course

Offensive Software Exploitation Course

binary-exploitationeducationexploitation+7
2.5k3 years ago
CVE-2021-1675 preview

CVE-2021-1675

GitHublaresllc/cve-2021-1675

CVE-2021-1675 Detection Info

curated-resourceseducationexploitation+4
2143 years ago
CVE-2021-23017-PoC preview

CVE-2021-23017-PoC

GitHubm507/cve-2021-23017-poc

PoC for Nginx 0.6.18 - 1.20.0 Memory Overwrite Vulnerability CVE-2021-23017

educationexploitationpenetration-testing+2
1352 years ago
Previous123…9Next