Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2339 results
CVE-2021-31800-Impacket-SMB-Server-Arbitrary-file-read-write preview

CVE-2021-31800-Impacket-SMB-Server-Arbitrary-file-read-write

GitHubp0dalirius/cve-2021-31800-impacket-smb-server-arbitrary-file-read-write

A path traversal in smbserver.py allows an attacker to read/write arbitrary files on the server.

data-exfiltrationexploitationpenetration-testing+2
11
3 years ago
CVE-2021-43008-AdminerRead preview

CVE-2021-43008-AdminerRead

GitHubp0dalirius/cve-2021-43008-adminerread

Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability

exploitationinformation-gatheringpenetration-testing+3
852 years ago
xxexploiter preview

xxexploiter

GitHubluisfontes19/xxexploiter

Tool to help exploit XXE vulnerabilities

exploitationfuzzingpayload-generation+2
6174 years ago
RawHive preview

RawHive

GitHubnmht3t/rawhive

Cobalt Strike BOF that extracts selected Windows registry hives directly from a raw NTFS volume by parsing NTFS metadata and reading file data…

digital-forensicsdisk-forensicsexploitation+4
963 months ago
WeblogicScan preview

WeblogicScan

GitHubrabbitmask/weblogicscan

Automated vulnerability scanner for Oracle WebLogic Server, detecting historical CVEs including deserialization, SSRF, and arbitrary file upload with…

exploitationinformation-gatheringpenetration-testing+3
2.3k3 years ago
Ropper preview

Ropper

GitHubsashs/ropper

Display information about files in different file formats and find gadgets to build rop chains for different architectures (x86/x86_64, ARM/ARM64,…

binary-analysisbinary-exploitationctf+3
2.2k1 month ago
fuxploider preview

fuxploider

GitHubalmandin/fuxploider

File upload vulnerability scanner and exploitation tool.

exploitationpenetration-testingvulnerability-scanners+1
3.3k1 year ago
Kernelhub preview

Kernelhub

GitHubascotbe/kernelhub

🌴Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details,…

curated-resourceseducationexploitation+4
3.2k3 years ago
FakeImageExploiter preview

FakeImageExploiter

GitHubr00t-3xp10it/fakeimageexploiter

Use a Fake image.jpg to exploit targets (hide known file extensions)

command-and-controlexploitationpayload-development+5
9481 year ago
kfd preview

kfd

GitHubfelix-pb/kfd

kfd, short for kernel file descriptor, is a project to read and write kernel memory on Apple devices.

binary-exploitationexploitationios-security+1
1.0k2 years ago
ESFileExplorerOpenPortVuln preview

ESFileExplorerOpenPortVuln

GitHubfs0c131y/esfileexploreropenportvuln

ES File Explorer Open Port Vulnerability - CVE-2019-6447

android-securitydata-exfiltrationexploitation+5
6797 years ago
SMBetray preview

SMBetray

GitHubquickbreach/smbetray

SMB MiTM tool with a focus on attacking clients through file content swapping, lnk swapping, as well as compromising any data passed over the wire in…

exploitationnetwork-securityred-teaming
3828 years ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubjas502n/cve-2020-5902

Proof-of-concept exploit for CVE-2020-5902, a directory traversal and remote code execution vulnerability in F5 BIG-IP TMUI. Includes file read,…

command-and-controlexploitationpenetration-testing+3
3744 years ago
CVE-2022-29072 preview

CVE-2022-29072

GitHubkagancapar/cve-2022-29072

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents…

binary-exploitationcommand-and-controlexploitation+5
6724 years ago
CVE-2017-0199 preview

CVE-2017-0199

GitHubbhdresh/cve-2017-0199

Exploit toolkit CVE-2017-0199 - v4.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test…

educationexploitationmalware-analysis+3
7258 years ago
Grafana-CVE-2021-43798 preview

Grafana-CVE-2021-43798

GitHubjas502n/grafana-cve-2021-43798

Grafana Unauthorized arbitrary file reading vulnerability

data-exfiltrationexploitationinformation-gathering+3
3693 years ago
CVE-2022-29464 preview

CVE-2022-29464

GitHubhakivvi/cve-2022-29464

Python exploit for CVE-2022-29464, an unauthenticated arbitrary file upload vulnerability in WSO2 servers, enabling remote code execution via…

exploitationpayload-generationpenetration-testing+3
3774 years ago
ProxyShell preview

ProxyShell

GitHubktecv2000/proxyshell

Proof-of-concept exploit for Microsoft Exchange Server Remote Code Execution via ACL bypass, privilege escalation, and arbitrary file write…

exploitationpenetration-testingvulnerability-analysis+1
3245 years ago
Previous12…100Next