Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
112 results
HTC preview

HTC

GitHubwmasday/htc

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

exploitationiot-securitypassword-attacks+3
33 years ago
HTC preview

HTC

GitHubawesome-consumer-iot/htc

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

exploitationpassword-attacksreconnaissance+2
16 years ago
CVE-2025-63406-PoC preview

CVE-2025-63406-PoC

GitHubnxvh1337/cve-2025-63406-poc

Small PoC to automate exploitation of CVE-2025-63406.

command-and-controlexploitationpenetration-testing+2
410 months ago
CVE-2024-54772 preview

CVE-2024-54772

GitHubdeauther890/cve-2024-54772

Python-based exploit for CVE-2024-54772 enabling username enumeration on MikroTik RouterOS versions v6.43 through v7.17.2 using wordlist or…

exploitationinformation-gatheringnetwork-security+3
341 year ago
CVE-2020-14181 preview

CVE-2020-14181

GitHubrival420/cve-2020-14181

POC For CVE-2020-1481 - Jira Username Enumerator/Validator

exploitationinformation-gatheringosint+3
81 year ago
cve-2018-15473 preview

cve-2018-15473

GitHubwtbacon/cve-2018-15473

Remote OpenSSH username enumeration exploit for CVE-2018-15473, featuring malformed packet and timing attack scripts with multi-threaded scanning.

exploitationinformation-gatheringnetwork-security+3
5 months ago
CVE-2018-15473 preview

CVE-2018-15473

GitHubkaktus5454/cve-2018-15473

SSH username enumeration exploit for CVE-2018-15473 (OpenSSH 2.3-7.7). Sends malformed authentication packets to identify valid users on vulnerable…

exploitationinformation-gatheringpenetration-testing+3
5 months ago
CVE-2023-30458 preview

CVE-2023-30458

GitHubd34dun1c02n/cve-2023-30458

Username enumeration exploit for Medicine Tracker System 1.0 leveraging response timing discrepancies in the login functionality to identify valid…

exploitationinformation-gatheringpenetration-testing+2
3 years ago
smb-usermap preview

smb-usermap

GitHubh3x0v3rl0rd/smb-usermap

Python exploit for Samba 3.0.20-3.0.25rc3 'username map script' command injection, providing unauthenticated remote code execution and reverse shell.

exploitationpenetration-testingremote-access-tool
4 years ago
CVE-2007-2447 preview

CVE-2007-2447

GitHub0xkn/cve-2007-2447

Python exploit for Samba CVE-2007-2447 username map script remote command execution, delivering a reverse shell payload to a configurable remote…

command-and-controlexploitationpenetration-testing+3
5 years ago
CVE-2023-3897 preview

CVE-2023-3897

GitHubjfriedli/cve-2023-3897

Exploit for CVE-2023-3897 enabling username enumeration via CAPTCHA bypass in On-premise SureMDM on Windows. Includes PoC script for local user…

captcha-bypassexploitationinformation-gathering+3
2 years ago
CVE-2007-2447_Samba_3.0.25rc3 preview

CVE-2007-2447_Samba_3.0.25rc3

GitHubwildfootw/cve-2007-2447_samba_3.0.25rc3

Exploit for Samba 3.0.0-3.0.25rc3 'Username' map script command execution vulnerability (CVE-2007-2447), enabling remote code execution.

command-and-controlexploitationpenetration-testing+2
5 years ago
CVE-2018-15473 preview

CVE-2018-15473

GitHub1stpeak/cve-2018-15473

Proof-of-concept SSH username enumeration exploit for OpenSSH CVE-2018-15473. Supports threading, wordlists, IPv6, and detection of valid accounts on…

exploitationinformation-gatheringnetwork-security+3
5 years ago
CVE-2018-15473 preview

CVE-2018-15473

GitHub0xrobiul/cve-2018-15473

Python-based exploit for CVE-2018-15473 enabling OpenSSH username enumeration via authentication response oracle, with single-user and wordlist modes.

exploitationinformation-gatheringnetwork-security+3
14 years ago
CVE-2007-2447 preview

CVE-2007-2447

GitHubfoudadev/cve-2007-2447

Educational exploit implementation for CVE-2007-2447 Samba 3.0.20-3.0.25rc username map script command execution vulnerability with Python SMB client…

binary-exploitationcommand-and-controleducation+6
2 years ago
OracleOTM preview

OracleOTM

GitHubofirhamam/oracleotm

Python tool for exploiting CVE-2021-35616

database-securityexploitationinformation-gathering+3
114 years ago
CVE-2007-2447-in-Python preview

CVE-2007-2447-in-Python

GitHubziemni/cve-2007-2447-in-python

Python implementation of 'Username' map script' RCE Exploit for Samba 3.0.20 < 3.0.25rc3 (CVE-2007-2447).

command-and-controlexploitationpayload-generation+3
35 years ago
CVE-2011-2523-exploit preview

CVE-2011-2523-exploit

GitHubdahalsamir/cve-2011-2523-exploit

Python exploit for vsFTPd 2.3.4 backdoor (CVE-2011-2523) that triggers a hidden shell on port 6200 via a crafted username, enabling remote command…

binary-exploitationcommand-and-controleducation+5
5 months ago
Previous1234567Next