Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
5351 results
jdwp-shellifier preview

jdwp-shellifier

GitHubioactive/jdwp-shellifier

Exploitation script for exposed Java Debug Wire Protocol (JDWP) services, enabling pentesters to inject Java code and execute arbitrary OS commands…

debuggersexploitationmisconfiguration+1
917
9 years ago
CVE-2025-34152 preview

CVE-2025-34152

GitHubkh4sh3i/cve-2025-34152

Go-based PoC exploit for unauthenticated remote code execution on Shenzhen Aitemi M300 Wi-Fi repeaters. Includes a scanner and does not reboot the…

exploitationhardware-securityiot-security+3
21 year ago
Packages_wpa_supplicant8_CVE-2021-0326 preview

Packages_wpa_supplicant8_CVE-2021-0326

GitHubnanopathi/packages_wpa_supplicant8_cve-2021-0326

Source code of wpa_supplicant and hostapd, focused on CVE-2021-0326 vulnerability for analysis, testing, and understanding of Wi-Fi security flaws.

exploitationnetwork-securityvulnerability-analysis+1
4 years ago
CVE-2024-35106-POC preview

CVE-2024-35106-POC

GitHublaskdjlaskdj12/cve-2024-35106-poc

Proof-of-concept exploit for CVE-2024-35106, a stack buffer overflow in NEXTU FLETA AX1500 Wi-Fi 6 router. Demonstrates denial-of-service and…

binary-exploitationembedded-systems-securityexploitation+5
1 year ago
CVE-2024-55504 preview

CVE-2024-55504

GitHubsyfi/cve-2024-55504

CVE-2024-55504

binary-exploitationcode-analysisexploitation+1
1 year ago
CVE-2025-20029 preview

CVE-2025-20029

GitHubmbadanoiu/cve-2025-20029

CVE-2025-20029: Command Injection in TMSH CLI in F5 BIG-IP

command-and-controlexploitationpenetration-testing+3
221 year ago
mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce preview

mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

GitHubhunt-benito/mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce

Proof-of-concept exploit for CVE-2026-20452, a heap-based buffer overflow in MediaTek WLAN AP drivers. Uses scapy to send crafted Wi-Fi management…

binary-exploitationeducationembedded-systems-security+5
33 months ago
PoCForCVE-2015-1528 preview

PoCForCVE-2015-1528

GitHubkanpol/pocforcve-2015-1528

Proof-of-concept exploit for CVE-2015-1528 demonstrating privilege escalation on Android 5.0 via binder call fuzzing, with staged code injection into…

android-securitybinary-exploitationexploitation+3
111 years ago
mdk4 preview

mdk4

GitHubaircrack-ng/mdk4

IEEE 802.11 Wi-Fi testing tool for protocol weakness exploitation, including beacon flooding, deauthentication, packet fuzzing, and IDS evasion.…

exploitationfuzzingids-ips-evasion+5
8124 months ago
CVE-2024-57366 preview

CVE-2024-57366

GitHubh4ckusaur/cve-2024-57366

Remote code execution exploit for CVE-2024-57366 targeting WAVLINK routers via MAC address validation bypass and command injection, with automatic…

command-and-controlexploitationiot-security+6
1 year ago
CVE-2019-13361 preview

CVE-2019-13361

GitHublodi-g/cve-2019-13361

Smanos W100 1.0.0 devices have Insecure Permissions, exploitable by an attacker on the same Wi-Fi network.

exploitationiot-securitypenetration-testing+2
7 years ago
CVE-2026-58457 preview

CVE-2026-58457

GitHubj4ck3lsyn-gen2/cve-2026-58457

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…

command-and-controleducationexploitation+7
22 months ago
-CVE-2024-21683-RCE-in-Confluence-Data-Center-and-Server preview

-CVE-2024-21683-RCE-in-Confluence-Data-Center-and-Server

GitHubr00t7oo2jm/-cve-2024-21683-rce-in-confluence-data-center-and-server

This vulnerability allows an unauthenticated attacker to remotely execute arbitrary code on a vulnerable Confluence server. The vulnerability exists…

exploitationpayload-developmentpenetration-testing+3
22 years ago
PoCForCVE-2015-1528 preview

PoCForCVE-2015-1528

GitHubsecmob/pocforcve-2015-1528

I'll submit the poc after blackhat

android-securitybinary-exploitationexploitation+4
11711 years ago
CVE-2026-78071 preview

CVE-2026-78071

GitHubtoanln-cov/cve-2026-78071

Stored XSS via Location Title in DPCalendar Free

code-analysisexploitationvulnerability-analysis+2
1 month ago
frameworks_opt_net_wifi_CVE-2021-0390 preview

frameworks_opt_net_wifi_CVE-2021-0390

GitHubuthrasri/frameworks_opt_net_wifi_cve-2021-0390

Android Wi-Fi framework patch for CVE-2021-0390, addressing a remote code execution vulnerability in the Wi-Fi subsystem.

android-securityexploitationvulnerability-analysis+2
12 years ago
CVE-2025-34159 preview

CVE-2025-34159

GitHubeyodav/cve-2025-34159

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

cloud-securitycontainer-securityexploitation+5
1 year ago
CVE-2022-27665 preview

CVE-2022-27665

GitHubdievus/cve-2022-27665

Reflected XSS via AngularJS Sandbox Escape Expressions in IPSwitch WS_FTP Server 8.6.0

exploitationpenetration-testingvulnerability-analysis+2
3 years ago
Previous12…100Next