Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
405 results
NoSQLMap preview

NoSQLMap

GitHubcodingo/nosqlmap

Automated NoSQL database enumeration and web application exploitation tool.

database-securityexploitationinformation-gathering+3
3.4k7 months ago
CVE-2023-24488 preview

CVE-2023-24488

GitHubraytheon0x21/cve-2023-24488

Tools to perform exploit CVE-2023-24488

exploitationinformation-gatheringpenetration-testing+2
3 years ago
aclpwn.py preview

aclpwn.py

GitHubfox-it/aclpwn.py

Active Directory ACL exploitation with BloodHound

exploitationinformation-gatheringpenetration-testing+1
7667 years ago
VertXploit preview

VertXploit

GitHubcoldfusion39/vertxploit

Exploiting HID VertX and EDGE access control systems

exploitationhardware-iot-securityinformation-gathering+3
259 years ago
CVE-2025-4428 preview

CVE-2025-4428

GitHubxie-22/cve-2025-4428

Ivanti EPMM Pre-Auth RCE Chain

command-and-controlexploitationpenetration-testing+3
40 years ago
CVE-2015-57115 preview

CVE-2015-57115

GitHubtrixsec/cve-2015-57115

Mass Checker For CVE-2015-57115

exploitationinformation-gatheringpenetration-testing+3
52 years ago
GreeDoS_V2 preview

GreeDoS_V2

GitHubmrechofi/greedos_v2

A Multi-vector DoS tool for Cybersecurity Red Teamers' .

exploitationnetwork-securitypayload-generation+4
178 months ago
CVE-2021-3441-check preview

CVE-2021-3441-check

GitHubtcbutler320/cve-2021-3441-check

CVE-2021-3441 CVE Check is a python script to search targets for indicators of compromise to CVE-2021-3441

exploitationinformation-gatheringioc-management+3
25 years ago
emby_ssrf preview

emby_ssrf

GitHubbtnz-k/emby_ssrf

Metasploit auxiliary module that identifies Emby Media Server version and exploits CVE-2020-26948 SSRF vulnerability to scan internal network…

exploitationnetwork-mappingreconnaissance+3
5 years ago
Seth preview

Seth

GitHubsyss-research/seth

Perform a MitM attack and extract clear text credentials from RDP connections

authenticationeducationexploitation+4
1.5k10 months ago
wp2shell preview

wp2shell

GitHubjohenlastgen-jlg/wp2shell

wp2shell - WordPress RCE & PoC (CVE-2026-63030 + CVE-2026-60137)

exploitationinformation-gatheringpenetration-testing+3
22 months ago
CVE-2024-7928 preview

CVE-2024-7928

GitHubth3gokul/cve-2024-7928

CVE-2024-7928: FastAdmin < V1.3.4.20220530 Arbitrary File Reading Vulnerability

educationexploitationinformation-gathering+3
22 years ago
Apache-Struts-Shodan-Exploit preview

Apache-Struts-Shodan-Exploit

GitHub649/apache-struts-shodan-exploit

This tool takes advantage of CVE-2018-11776 and Shodan to perform mass exploitation of verified and vulnerable Apache Struts servers.

exploitationinformation-gatheringpenetration-testing+3
568 years ago
CVE-2022-46364-Proof-of-the-concept preview

CVE-2022-46364-Proof-of-the-concept

GitHubcybermaksx/cve-2022-46364-proof-of-the-concept

This vulnerability allows an attacker to perform SSRF (Server-Side Request Forgery) attacks on Apache CXF webservices that accept MTOM/XOP requests.…

educationexploitationinformation-gathering+3
36 months ago
FDsploit preview
Archived

FDsploit

GitHubchrispetrou/fdsploit

File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.

exploitationfuzzinginformation-gathering+3
2745 years ago
CVE-2021-29156 preview

CVE-2021-29156

GitHubguidepointsecurity/cve-2021-29156

Proof-of-concept exploit for CVE-2021-29156, an LDAP injection vulnerability in ForgeRock OpenAM v13.0.0, enabling character-by-character brute force…

exploitationinformation-gatheringpenetration-testing+2
43 years ago
CVE-2024-4577 preview

CVE-2024-4577

GitHubbughuntar/cve-2024-4577

CVE-2024-4577 Exploits

exploitationpenetration-testingreconnaissance+2
2 years ago
CVE-2020-17519 preview

CVE-2020-17519

GitHubgazettel/cve-2020-17519

Python-based directory traversal exploit for CVE-2020-17519 (Apache Flink) with multi-threading, proxy support, and configurable depth for retrieving…

exploitationinformation-gatheringpenetration-testing+3
1 year ago
Previous1…678…23Next