Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
625 results
CVE-2026-37072 preview

CVE-2026-37072

GitHubjfs-jfs/cve-2026-37072

Veno File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access Control in admin-head-updates.php

authentication-authorizationexploitationmisconfiguration+3
2 months ago
CVE_2019_18935 preview

CVE_2019_18935

GitHubthanhuutuan/cve_2019_18935

This project for CVE-2019-18935

encryption-decryption-toolsexploitationpayload-generation+3
26 years ago
Shiro-basic preview

Shiro-basic

GitHubal1ex/shiro-basic

This is a simple Shiro-basic project .Just for pentest env

authentication-authorizationexploitationpenetration-testing+2
6 years ago
Project-Exploiting-CVE-2024-27198-RCE-Vulnerability preview

Project-Exploiting-CVE-2024-27198-RCE-Vulnerability

GitHubartemcyberlab/project-exploiting-cve-2024-27198-rce-vulnerability

In this project, I exploited the CVE-2024-27198-RCE vulnerability to perform a remote code execution (RCE) attack on a vulnerable TeamCity server.

exploitationpayload-developmentpenetration-testing+3
1 year ago
Project-Exploiting-a-Vulnerability-in-Fuel-CMS-CVE-2018-16763- preview

Project-Exploiting-a-Vulnerability-in-Fuel-CMS-CVE-2018-16763-

GitHubartemcyberlab/project-exploiting-a-vulnerability-in-fuel-cms-cve-2018-16763-

The goal of this project was to conduct a security audit of a blog recently launched by Ackme Support Incorporated, identifying any critical…

exploitationpenetration-testingred-teaming+3
1 year ago
DCOMUploadExec preview

DCOMUploadExec

GitHubdeepinstinct/dcomuploadexec

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

exploitationlateral-movementpayload-development+3
3941 year ago
LabS4U2Self preview

LabS4U2Self

GitHubotterhacker/labs4u2self
authentication-authorizationdatabase-securityeducation+5
313 years ago
CVE-2022-32532 preview

CVE-2022-32532

GitHublay0us/cve-2022-32532

Apache Shiro CVE-2022-32532

authentication-authorizationexploitationpenetration-testing+2
134 years ago
cve-2025-66398 preview

cve-2025-66398

GitHubshowy-headteacher114/cve-2025-66398

Demonstrate exploitation of Signal K Server CVE-2025-66398 allowing unauthenticated attackers to inject backdoor and enable remote code execution.

exploitationpayload-developmentpenetration-testing+3
110h 34m ago
CVE-2026-0257 preview

CVE-2026-0257

GitHubhorkimhab/cve-2026-0257

CVE-2026-0257 - PAN-OS

authentication-authorizationeducationexploitation+3
2 months ago
cve-2022-39227-jwt-auth-bypass-demo preview

cve-2022-39227-jwt-auth-bypass-demo

GitHubmelikesraoz/cve-2022-39227-jwt-auth-bypass-demo
authentication-authorizationeducationexploitation+3
13 months ago
CVE-2024-1709-ConnectWise-ScreenConnect-Authentication-Bypass preview

CVE-2024-1709-ConnectWise-ScreenConnect-Authentication-Bypass

GitHubsxyrxyy/cve-2024-1709-connectwise-screenconnect-authentication-bypass
authentication-authorizationexploitationpenetration-testing+3
12 years ago
CVE-2021-43857-Gerapy-v0.9.7 preview

CVE-2021-43857-Gerapy-v0.9.7

GitHubafifudinmtop/cve-2021-43857-gerapy-v0.9.7
exploitationpenetration-testingremote-access-tool+2
6 months ago
es_inject preview

es_inject

GitHubjeffgeiger/es_inject

Demonstration of CVE-2014-3120

exploitationpenetration-testingremote-access-tool+2
12 years ago
CVE-2025-49173 preview

CVE-2025-49173

GitHubaliyabuz25/cve-2025-49173

Security research — PoC for local root privilege escalation on macOS Mavericks 10.9.

authentication-authorizationeducationexploitation+2
8 months ago
bluekeep_CVE-2019-0708_poc_to_exploit preview
Archived

bluekeep_CVE-2019-0708_poc_to_exploit

GitHubalgo7/bluekeep_cve-2019-0708_poc_to_exploit

An Attempt to Port BlueKeep PoC from @Ekultek to actual exploits

exploitationpayload-developmentpenetration-testing+3
3425 years ago
security-research preview

security-research

GitHubgoogle/security-research

This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…

curated-resourceseducationexploitation+3
4.6k25 days ago
ettercap preview

ettercap

GitHubettercap/ettercap

Ettercap Project

dns-analysisexploitationinformation-gathering+6
2.8k2 months ago
Previous1…567…35Next