Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
90 results
CVE-2024-9474 preview

CVE-2024-9474

GitHubk4nfr3/cve-2024-9474

Python exploit script for CVE-2024-9474 targeting PAN-OS SSL VPN, enabling remote code execution and reverse shell deployment for penetration testing.

exploitationpayload-generationpenetration-testing+3
10
1 year ago
CVE-2024-40898 preview

CVE-2024-40898

GitHubanilpatel199n/cve-2024-40898

This Python script checks for the presence of CVE-2024-40898, a critical vulnerability in Apache HTTP Server that may allow SSL/TLS certificate…

educationexploitationpenetration-testing+2
11 year ago
poodle-PoC preview

poodle-PoC

GitHubmpgn/poodle-poc

:poodle: Poodle (Padding Oracle On Downgraded Legacy Encryption) attack CVE-2014-3566 :poodle:

cryptographyeducationencryption-decryption-tools+4
2673 years ago
CVE-2024-21762 preview

CVE-2024-21762

GitHub0x13-bytezer0/cve-2024-21762

Detects and exploits CVE-2024-21762 pre-authentication RCE in FortiGate SSL VPN, featuring baseline validation, automatic exploitation, ROP…

exploitationpayload-generationpenetration-testing+4
8 months ago
CVE-2024-0012-POC preview

CVE-2024-0012-POC

GitHubsachinart/cve-2024-0012-poc

CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) RCE POC

authentication-authorizationexploitationpenetration-testing+3
211 year ago
CVE-2019-11510_poc preview

CVE-2019-11510_poc

GitHubes0/cve-2019-11510_poc

PoC for CVE-2019-11510 | Pulse Secure 8.1R15.1/8.2/8.3/9.0 SSL VPN - Arbitrary File Disclosure vulnerability

exploitationinformation-gatheringpenetration-testing+2
57 years ago
CVE-2018-13379-Fortinet preview

CVE-2018-13379-Fortinet

GitHubk4nfr3/cve-2018-13379-fortinet

Exploit for CVE-2018-13379 targeting Fortinet SSL VPN path traversal vulnerability. Enables automated exploitation and credential extraction for…

exploitationinformation-gatheringpenetration-testing+2
65 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubomnigodz/cve-2022-1388

This repository consists of the python exploit for CVE-2022-1388 (F5's BIG-IP Authentication Bypass to RCE)

authentication-authorizationexploitationpenetration-testing+2
4 years ago
Netgear-ssl-vpn-20211222-CVE-2022-29383 preview

Netgear-ssl-vpn-20211222-CVE-2022-29383

GitHubbadboycxcc/netgear-ssl-vpn-20211222-cve-2022-29383

SQL injection exploit for CVE-2022-29383 in NETGEAR ProSafe SSL VPN, targeting scgi-bin/platform.cgi with sqlmap commands for FVS336Gv2 and FVS336Gv3…

exploitationnetwork-securitypenetration-testing+3
254 years ago
CVE-2023-27997-Check preview

CVE-2023-27997-Check

GitHubimbas007/cve-2023-27997-check

Lightweight Python script to check Fortinet SSL VPN instances for CVE-2023-27997 vulnerability, supporting single URL and batch file scanning.

exploitationpenetration-testingreconnaissance+2
13 years ago
CVE-2024-21762-Safe-Check preview

CVE-2024-21762-Safe-Check

GitHubsxmpl3/cve-2024-21762-safe-check

Safe, non-intrusive scanner that detects FortiOS SSL VPN out-of-bounds write vulnerability (CVE-2024-21762) by comparing normal and chunked HTTP POST…

exploitationinformation-gatheringnetwork-security+3
3 months ago
CVE-2024-10924-Bypass-MFA-Wordpress-LAB preview

CVE-2024-10924-Bypass-MFA-Wordpress-LAB

GitHubd1se0/cve-2024-10924-bypass-mfa-wordpress-lab

Lab environment and exploit script for CVE-2024-10924, demonstrating MFA bypass in WordPress via the Really Simple SSL plugin's skip_onboarding…

authenticationctfeducation+5
41 year ago
CVE-2024-21762-Checker preview

CVE-2024-21762-Checker

GitHubdefr0ggy/cve-2024-21762-checker

This script performs vulnerability scanning for CVE-2024-21762, a Fortinet SSL VPN remote code execution vulnerability. It checks whether a given…

exploitationnetwork-securitypenetration-testing+3
2 years ago
CVE-2024-27956-RCE-File-Package preview

CVE-2024-27956-RCE-File-Package

GitHubw3bw/cve-2024-27956-rce-file-package

Exploit scripts and scanner for CVE-2024-27956, a WordPress plugin vulnerability, including a modified exploit with SSL verification bypass.

exploitationpayload-generationpenetration-testing+3
2 years ago
fortiscan preview

fortiscan

GitHubanasbousselham/fortiscan

A high performance FortiGate SSL-VPN vulnerability scanning and exploitation tool.

exploitationpenetration-testingvulnerability-analysis+1
1603 years ago
Fortigate-SSL-VPN-Exploit-Kit preview

Fortigate-SSL-VPN-Exploit-Kit

GitHubabraxas/fortigate-ssl-vpn-exploit-kit

The FortiGate SSL-VPN pot of gold. CVE-2024-21762 and CVE-2023-27997. 79 working exploit clients. 53 hardware SKUs. 55 FortiOS builds.

command-and-controldata-exfiltrationexploitation+7
127 days ago
CVE-2021-3560 preview

CVE-2021-3560

GitHubneonwhiterabbit/cve-2021-3560

One-command Polkit privilege escalation exploit for CVE-2021-3560, creating a passwordless user and switching to root on vulnerable Linux systems.

exploitationpenetration-testingprivilege-escalation+2
34 years ago
SSLPatch preview

SSLPatch

GitHubmacressler/sslpatch

Patch iOS SSL vulnerability (CVE-2014-1266)

exploitationios-securitymobile-security+1
112 years ago
Previous12345Next