Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
212 results
CVE-2025-55182-advanced-scanner- preview

CVE-2025-55182-advanced-scanner-

GitHubzack0x01/cve-2025-55182-advanced-scanner-

Command-line scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

educationexploitationpenetration-testing+3
282
9 months ago
nginxrift-CVE-2026-42945 preview

nginxrift-CVE-2026-42945

GitHubnanwinata/nginxrift-cve-2026-42945

Proof-of-concept exploit for CVE-2026-42945 (NGINX Rift) with multi-mode RCE, blind verification, reverse shell, and batch scanning capabilities for…

educationexploitationpayload-development+3
23 months ago
CVE-2026-31431-Checker-Mitigator preview

CVE-2026-31431-Checker-Mitigator

GitHubzenzue/cve-2026-31431-checker-mitigator

Detects and mitigates CVE-2026-31431, a Linux kernel local privilege escalation vulnerability, with optional PoC execution for isolated testing.

educationexploitationprivilege-escalation+1
4 months ago
CVE-2025-55182-mass preview

CVE-2025-55182-mass

GitHubhunter24x24/cve-2025-55182-mass

Command-line scanner for detecting and exploiting CVE-2025-55182 (RCE) in Next.js React Server Components. Supports batch scanning from domain lists…

educationexploitationpenetration-testing+2
9 months ago
POC-CVE-2025-55182 preview

POC-CVE-2025-55182

GitHubiamblacksolo2-bugbounty/poc-cve-2025-55182

Bash-based scanner for detecting and exploiting CVE-2025-55182 (React Server Components RCE) in Next.js applications. Supports custom command…

educationexploitationpenetration-testing+3
9 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubcarlosaruy/cve-2025-55182

a critical Remote Code Execution (RCE) vulnerability in React Server Components (RSC). It also includes a realistic "Lab Environment" to safely test…

ctfeducationexploitation+6
9 months ago
CVE-2024-50603 preview

CVE-2024-50603

GitHubth3gokul/cve-2024-50603

CVE-2024-50603: Aviatrix Controller Unauthenticated Command Injection

command-and-controleducationexploitation+3
171 year ago
CVE-2025-9491_POC preview

CVE-2025-9491_POC

GitHubamperclock/cve-2025-9491_poc

Proof-of-Concept of the CVE-2025-9491 using invisible characters in the arguments of a Windows shortcut file (.lnk)

binary-analysiseducationexploitation+3
1810 months ago
CVE-2024-34102 preview

CVE-2024-34102

GitHubth3gokul/cve-2024-34102

CVE-2024-34102: Unauthenticated Magento XXE

educationexploitationinformation-gathering+3
141 year ago
CVE-2024-27292 preview

CVE-2024-27292

GitHubth3gokul/cve-2024-27292

CVE-2024-27292 : Docassemble V1.4.96 Unauthenticated Path Traversal

educationexploitationpenetration-testing+2
72 years ago
CVE-2024-5009 preview

CVE-2024-5009

GitHubth3gokul/cve-2024-5009

CVE-2024-5009 : WhatsUp Gold SetAdminPassword Privilege Escalation

educationexploitationpenetration-testing+3
62 years ago
CVE-2026-20230-Scanner preview

CVE-2026-20230-Scanner

GitHubhalildeniz/cve-2026-20230-scanner

Cisco Unified Communications Manager (Unified CM) deployments affected by CVE-2026-20230.

educationexploitationpenetration-testing+2
2 months ago
CVE-2024-34470 preview

CVE-2024-34470

GitHubth3gokul/cve-2024-34470

CVE-2024-34470 : An Unauthenticated Path Traversal Vulnerability in HSC Mailinspector

educationexploitationpenetration-testing+2
32 years ago
CVE-Arsenal-Lab preview

CVE-Arsenal-Lab

GitHubcchopin/cve-arsenal-lab

TomcatScanner is a comprehensive security tool designed for detecting and exploiting the CVE-2025-24813 vulnerability in Apache Tomcat servers.

educationexploitationpenetration-testing+3
41 year ago
CVE-2026-56290 preview

CVE-2026-56290

GitHubjenderal92/cve-2026-56290

CVE-2026-56290 - Mass Exploit for Joomla Com_pagebuilderck component (Unrestricted File Upload → RCE). Multi-threaded, automatic CSRF bypass, PHP…

command-and-controleducationexploitation+5
52 months ago
CVE-2024-9264 preview

CVE-2024-9264

GitHubcythonic1/cve-2024-9264

A go implementation for CVE-2024-9264 which effect grafana versions 11.0.x, 11.1.x, and 11.2.x.

educationexploitationpenetration-testing+2
31 year ago
CVE-2022-46364-Proof-of-the-concept preview

CVE-2022-46364-Proof-of-the-concept

GitHubcybermaksx/cve-2022-46364-proof-of-the-concept

This vulnerability allows an attacker to perform SSRF (Server-Side Request Forgery) attacks on Apache CXF webservices that accept MTOM/XOP requests.…

educationexploitationinformation-gathering+3
35 months ago
CVE-2026-47670 preview

CVE-2026-47670

GitHuberror-inside/cve-2026-47670

Authenticated Remote Code Execution via loadReader functionName code injection in DbGate

code-analysiseducationexploitation+4
2 months ago
Previous123…12Next