Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
111 results
CVE-2025-5304 preview

CVE-2025-5304

GitHubnxploited/cve-2025-5304

PT Project Notebooks 1.0.0 - 1.1.3 - Missing Authorization to Unauthenticated Privilege Escalation

ctfeducationexploitation+5
0 years ago
CVE-2021-43857-Gerapy-v0.9.7 preview

CVE-2021-43857-Gerapy-v0.9.7

GitHubafifudinmtop/cve-2021-43857-gerapy-v0.9.7

Exploit for CVE-2021-43857 in Gerapy v0.9.7, providing a reverse shell via authenticated project creation and command injection.

exploitationpenetration-testingremote-access-tool+2
7 months ago
cve-2023-5966 preview

cve-2023-5966

GitHubll104567/cve-2023-5966

Proof-of-concept exploit for CVE-2023-5966, an arbitrary file upload vulnerability in EspoCRM 2.7.4 and earlier, enabling remote code execution via a…

exploitationpayload-developmentpenetration-testing+2
2 years ago
CVE-2024-32019-poc preview

CVE-2024-32019-poc

GitHubc0deinblack/cve-2024-32019-poc

Netdata ndsudo PoC

binary-exploitationexploitationpayload-generation+3
1 year ago
cve-2022-44268 preview

cve-2022-44268

GitHubjkobierczynski/cve-2022-44268
ctfexploitationinformation-gathering+3
1 year ago
cve-2025-29927 preview

cve-2025-29927

GitHub0xcucumbersalad/cve-2025-29927

Proof-of-concept for CVE-2025-29927 that bypasses Next.js middleware authentication by sending a crafted x-middleware-subrequest header to protected…

exploitationids-ips-evasionpenetration-testing+2
1 year ago
CVE-2025-6058 preview

CVE-2025-6058

GitHubnxploited/cve-2025-6058

WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload

educationexploitationpayload-generation+3
1 year ago
CVE-2024-51358 preview

CVE-2024-51358

GitHubkov404/cve-2024-51358

Proof-of-concept exploit for CVE-2024-51358, a server-side request forgery (SSRF) vulnerability in Heimdall 2.6.1, enabling remote HTTP requests to…

exploitationinformation-gatheringreconnaissance+2
1 year ago
CVE-2021-25094 preview

CVE-2021-25094

GitHubxdx57/cve-2021-25094

Tatsu Plugin ZIP File add_custom_font unrestricted upload

exploitationpayload-generationpenetration-testing+2
4 years ago
CVE-2024-39031 preview

CVE-2024-39031

GitHubtoneemarqus/cve-2024-39031

Stored Cross-Side Scripting (XSS) leads to privilege escalation in SilverPeas social-networking portal

educationexploitationpenetration-testing+3
2 years ago
CVE-2020-24033 preview

CVE-2020-24033

GitHubm0nsterrr/cve-2020-24033

Proof-of-concept for CVE-2020-24033: Cross-Site Request Forgery on fs.com S3900 24T4S switch allows unauthenticated admin account creation via…

educationexploitationpenetration-testing+3
5 years ago
CVE-2022-33075 preview

CVE-2022-33075

GitHubangelopioamirante/cve-2022-33075

Zoo Management System 1.0 - Stored Cross-Site-Scripting (XSS)

exploitationpenetration-testingvulnerability-analysis+2
4 years ago
CVE-2024-45264 preview

CVE-2024-45264

GitHubthehermione/cve-2024-45264

CVE-2024-45264

exploitationpenetration-testingprivilege-escalation+2
2 years ago
CVE-2023-43877-RiteCMS-Stored-XSS---Home preview

CVE-2023-43877-RiteCMS-Stored-XSS---Home

GitHubsromanhu/cve-2023-43877-ritecms-stored-xss---home

RiteCMS 3.0 is affected by a Multiple Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload…

educationexploitationpenetration-testing+3
3 years ago
CVE_Project preview

CVE_Project

GitHubmhe18/cve_project

CVE-2016-1240 exploit and patch

binary-exploitationexploitationprivilege-escalation+2
7 years ago
CVE-2023-44764_ConcreteCMS-Stored-XSS---Site_Installation preview

CVE-2023-44764_ConcreteCMS-Stored-XSS---Site_Installation

GitHubsromanhu/cve-2023-44764_concretecms-stored-xss---site_installation

Cross Site Scripting vulnerability in ConcreteCMS v.9.2.1 allows a local attacker to execute arbitrary code via a crafted script to the SITE from…

exploitationpenetration-testingvulnerability-analysis+2
3 years ago
CVE-2021-41773-Scanner preview

CVE-2021-41773-Scanner

GitHubanldori/cve-2021-41773-scanner

CVE-2021-41773 Shodan scanner

exploitationinformation-gatheringosint+3
4 years ago
CVE-2020-9332 preview
Archived

CVE-2020-9332

GitHubsentinel-one/cve-2020-9332

Proof-of-concept for CVE-2020-9332, a local privilege escalation in FabulaTech USB for Remote Desktop and USB over Network via a controlled software…

educationexploitationhardware-security+2
36 years ago
Previous1234567Next