Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
959 results
CVE-2025-29972 preview

CVE-2025-29972

GitHubth-secforge/cve-2025-29972

CVE-2025-29927 - Critical Security Vulnerability in Next.js

authentication-authorizationexploitationpenetration-testing+3
1
1 year ago
react-cve-2025-55182 preview

react-cve-2025-55182

GitHubniokagi/react-cve-2025-55182

Test & Analyze the CVE-2025-55182 vulnerability within Next.js Server Actions

code-analysiseducationexploitation+5
9 months ago
CVE-2025-29927 preview

CVE-2025-29927

GitHubzs1n/cve-2025-29927

PoC | NextJS Middleware 15.2.2 - Authorization Bypass

authentication-authorizationexploitationids-ips-evasion+3
1 year ago
struts2-rce preview

struts2-rce

GitHubsonatype-workshops/struts2-rce

Exploitable target to CVE-2017-5638

container-securityeducationexploitation+3
4 years ago
CVE-2022-24716-2 preview

CVE-2022-24716-2

GitHubgmh5225/cve-2022-24716-2

CVE-2022-24716 (Arbitrary File Disclosure Icingaweb2)

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2023-30226 preview

CVE-2023-30226

GitHubifygecko/cve-2023-30226

Documentation of a denial-of-service vulnerability in the Rizin reverse engineering framework's ELF parser, caused by a forged DT_VERNEEDNUM value…

binary-analysisexploitationfuzzing+2
3 years ago
CVE-2024-36401-WoodpeckerPlugin preview

CVE-2024-36401-WoodpeckerPlugin

GitHubfunnydog896/cve-2024-36401-woodpeckerplugin

CVE-2024-36401-GeoServer Property 表达式注入 Rce woodpecker-framework 插件

exploitationpayload-developmentpayload-generation+4
1 year ago
nanwinata-CVE-2024-52301 preview

nanwinata-CVE-2024-52301

GitHubfckoo/nanwinata-cve-2024-52301

Scans for CVE-2024-52301, an argument injection vulnerability in Laravel, using subfinder and httpx to identify affected web applications.

exploitationinformation-gatheringreconnaissance+2
1 year ago
CVE-2022-22978 preview

CVE-2022-22978

GitHubraghvendra1207/cve-2022-22978

Proof-of-concept demonstrating authorization bypass in Spring Security's RegexRequestMatcher (CVE-2022-22978) using CRLF injection, with analysis and…

authentication-authorizationeducationexploitation+3
3 years ago
name_reverser preview

name_reverser

GitHubterracatta/name_reverser

Silly Rails App to demonstrate vuln CVE-2013-0156

educationexploitationpenetration-testing+2
13 years ago
CVE-2025-68613 preview

CVE-2025-68613

GitHubsecjoker/cve-2025-68613

基于Pocsuite3 框架编写的漏洞验证与利用脚本,用于检测 n8n工作流自动化工具中的认证后远程代码执行漏洞(RCE)

command-and-controlexploitationpayload-development+4
8 months ago
CVE-2023-35674 preview

CVE-2023-35674

GitHubthampakon/cve-2023-35674

ช่องโหว่ CVE-2023-35674 *สถานะ: ยังไม่เสร็จ*

android-securityexploitationmobile-security+2
3 years ago
Log4Shell-PoC-Application preview

Log4Shell-PoC-Application

GitHubnikitapark/log4shell-poc-application

Log4Shell (CVE-2021-44228) PoC Application

educationexploitationpenetration-testing+2
1 year ago
CVE-2022-26265 preview

CVE-2022-26265

GitHubredteamsecurity2023/cve-2022-26265

The first proof of concept of the Contao CMS RCE

exploitationpayload-generationpenetration-testing+2
3 years ago
gh-repo-clone-marklindsey11--CVE-2021-44228_scanner-Applications-that-are-vulnerable-to-the-log4j-CV preview

gh-repo-clone-marklindsey11--CVE-2021-44228_scanner-Applications-that-are-vulnerable-to-the-log4j-CV

GitHubmarklindsey11/gh-repo-clone-marklindsey11--cve-2021-44228_scanner-applications-that-are-vulnerable-to-the-log4j-cv

Scans applications for the Log4Shell vulnerability (CVE-2021-44228) to identify systems at risk of remote code execution.

exploitationinformation-gatheringpenetration-testing+2
4 years ago
CVE-2023-45503 preview

CVE-2023-45503

GitHubally-petitt/cve-2023-45503

CVE-2023-45503 Reference

database-securityeducationexploitation+3
2 years ago
WiFi-Pumpkin-deprecated preview
Archived

WiFi-Pumpkin-deprecated

GitHubp0cl4bs/wifi-pumpkin-deprecated

DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3

captcha-bypasscommand-and-controldns-analysis+9
3.2k6 years ago
dnSpy preview
Archived

dnSpy

GitHubdnspy/dnspy

.NET debugger and assembly editor

binary-analysisbinary-exploitationcode-analysis+8
29.7k5 years ago
Previous1…525354Next