Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
90 results
cve-2022-42475-poc preview

cve-2022-42475-poc

GitHubull0a/cve-2022-42475-poc

Proof of Concept (PoC) for research and controlled laboratory validation of CVE-2022-42475, a critical heap-based buffer overflow vulnerability…

exploitationpenetration-testingred-teaming+3
1
1 month ago
CVE-2023-27997-POC preview

CVE-2023-27997-POC

GitHubnode011/cve-2023-27997-poc

Fortigate SSL VPN buffer overflow exploit

educationexploitationpenetration-testing+2
1 year ago
netgear-to-CVE-2022-29383 preview

netgear-to-CVE-2022-29383

GitHubcxaqhq/netgear-to-cve-2022-29383

Exploit for CVE-2022-29383 SQL injection in NETGEAR ProSafe SSL VPN (FVS318Gv2/FVS318N) via scgi-bin/platform.cgi.

exploitationnetwork-securitypenetration-testing+2
4 years ago
VisualDoor preview

VisualDoor

GitHubdarrenmartyn/visualdoor

SonicWall SSL-VPN Exploit

exploitationvulnerability-analysisweb-security
1845 years ago
CVE-2014-0160 preview

CVE-2014-0160

GitHub0x90/cve-2014-0160

Heartbleed variants

cryptographyeducationexploitation+6
812 years ago
SonicWall preview

SonicWall

GitHubal1ex/sonicwall

SonicWall SSL-VPN RCE

exploitationvulnerability-analysisweb-application-exploitation
105 years ago
CVE-2016-8610-PoC preview

CVE-2016-8610-PoC

GitHubcujanovic/cve-2016-8610-poc

Proof-of-concept exploit for CVE-2016-8610 (SSL Death Alert) causing denial of service against OpenSSL servers via rapid SSL/TLS alert flooding.

exploitationnetwork-securitypenetration-testing+1
339 years ago
CVE-2022-0778 preview

CVE-2022-0778

GitHub0xuhaw/cve-2022-0778

Proof of concept for CVE-2022-0778 in P12 and PEM format

cryptographyexploitationvulnerability-analysis
24 years ago
cve-2020-0601_poc preview

cve-2020-0601_poc

GitHubgremwell/cve-2020-0601_poc

Proof-of-concept exploit for CVE-2020-0601 (Windows CryptoAPI spoofing) that generates rogue CA certificates to intercept HTTPS traffic, with…

cryptographyeducationexploitation+2
26 years ago
scan4log4j preview
Archived

scan4log4j

GitHubssl/scan4log4j

Python script that sends CVE-2021-44228 log4j payload requests to url list

exploitationpayload-generationpenetration-testing+2
64 years ago
dheater preview

dheater

GitHubc0r0n3r/dheater

Proof-of-concept denial-of-service tool that exploits the DHEat attack (CVE-2002-20001) by enforcing Diffie-Hellman key exchange against TLS and SSH…

cryptographyexploitationnetwork-security+1
2211 month ago
CVE-2023-27997-check preview

CVE-2023-27997-check

GitHubbishopfox/cve-2023-27997-check

Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing

exploitationnetwork-securitypenetration-testing+3
1352 years ago
cve-2024-21762-check preview

cve-2024-21762-check

GitHubbishopfox/cve-2024-21762-check

Safely detect whether a FortiGate SSL VPN is vulnerable to CVE-2024-21762

exploitationnetwork-securitypenetration-testing+3
1072 years ago
renef-skills preview

renef-skills

GitHubvichhka-git/renef-skills

Agent Skill for operating renef.io — Android ARM64 dynamic instrumentation: hook native/Java, patch memory, trace syscalls, bypass SSL pinning/root…

android-securitybinary-analysisctf+9
153 months ago
CVE-2026-41940-PoC-Exploit preview

CVE-2026-41940-PoC-Exploit

GitHubtc4dy/cve-2026-41940-poc-exploit

🚀 CVE-2026-41940 cPanel/WHM Auth Bypass Exploit - Best Flow 💥 CRLF injection leads to auth bypass, session hijacking & account leak. ✅ Proxy,…

authentication-authorizationcommand-and-controlexploitation+8
92 months ago
A2SV--SSL-VUL-Scan preview

A2SV--SSL-VUL-Scan

GitHubanthophilee/a2sv--ssl-vul-scan

A2SV = Auto Scanning to SSL Vulnerability HeartBleed, CCS Injection, SSLv3 POODLE, FREAK... etc Support Vulnerability [CVE-2007-1858] Anonymous…

encryption-decryption-toolsexploitationnetwork-security+3
55 years ago
CVE-2024-21762_FortiNet_PoC preview

CVE-2024-21762_FortiNet_PoC

GitHubabrewer251/cve-2024-21762_fortinet_poc

Proof-of-concept scanner targeting CVE-2024-21762 in FortiOS SSL VPN’s /remote/hostcheck_validate endpoint with reverse shell payload delivery.

exploitationpayload-generationpenetration-testing+3
41 year ago
CVE-2026-60137-With-Skip-SSL preview

CVE-2026-60137-With-Skip-SSL

GitHubnorthsia/cve-2026-60137-with-skip-ssl

Adding --insecure to skip ssl

exploitationvulnerability-analysisweb-application-exploitation+1
2 months ago
Previous12345Next