Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
415 results
cve-2023-21987-poc preview

cve-2023-21987-poc

GitHubchunzhennn/cve-2023-21987-poc

Proof-of-concept exploit for Oracle VirtualBox VGA out-of-bounds read vulnerability, demonstrating address leaking from VirtualBox components on…

binary-exploitationexploitationfuzzing+3
1
1 year ago
CVE-2025-62821 preview

CVE-2025-62821

GitHubhyunjungg/cve-2025-62821

Microsoft HEIF Extension (msheif_store.dll) OOB-read

binary-analysisexploitationfuzzing+3
11 months ago
CVE-2025-55891 preview

CVE-2025-55891

GitHubterribledactyl/cve-2025-55891

Proof-of-concept for CVE-2025-55891: heap corruption in TIFFCP.EXE via malformed TIFF file, triggering segmentation fault during LZW decompression in…

binary-exploitationexploitationfuzzing+3
11 months ago
CVE-2026-24688 preview

CVE-2026-24688

GitHubjoakimbulow/cve-2026-24688

Proof-of-concept exploit for CVE-2026-24688, a denial-of-service vulnerability in pypdf's outline parsing. Includes malicious PDF generator and…

educationexploitationfuzzing+2
7 months ago
jfrog-CVE-2023-43786-libX11_DoS preview

jfrog-CVE-2023-43786-libX11_DoS

GitHubjfrog/jfrog-cve-2023-43786-libx11_dos

Proof-of-concept for CVE-2023-43786, a libX11 integer overflow causing infinite loop DoS. Demonstrates triggering the vulnerability via sxpm with a…

binary-analysisexploitationfuzzing+1
2 years ago
d-os-descriptor preview

d-os-descriptor

GitHubszymonh/d-os-descriptor

CVE-2022-25258 - Demo exploit targeting usb gadget's os descriptor handler

binary-exploitationembedded-systems-securityexploitation+3
4 years ago
httpfuzz-robomiller preview

httpfuzz-robomiller

GitHubmavproxyuser/httpfuzz-robomiller

Dumb Fuzzer used to find CVE-2010-1411

exploitationfuzzingpenetration-testing+2
6 years ago
Mutator preview

Mutator

Bitbucketalone/mutator

Generate mutations over a wordlist

fuzzinggeneral-purpose-utilitiespassword-cracking
12 years ago
CVE-2025-54574-Squid-Heap-Buffer-Overflow preview

CVE-2025-54574-Squid-Heap-Buffer-Overflow

GitHubstarrynightsecurity/cve-2025-54574-squid-heap-buffer-overflow

Vulnerability Found on Squid Proxy.

binary-analysisexploitationfuzzing+3
7 months ago
CVE-2025-52099 preview

CVE-2025-52099

GitHubscreambby/cve-2025-52099

Proof-of-concept for CVE-2025-52099, an integer overflow in SQLite 3.50.0's setupLookaside function leading to heap-buffer-overflow.

binary-analysiscode-analysisexploitation+2
10 months ago
CVE-2025-51495 preview

CVE-2025-51495

GitHubcainiao159357/cve-2025-51495

Proof-of-concept exploit for CVE-2025-51495, an integer overflow in Mongoose WebSocket's mg_ws_cb function leading to out-of-bounds memory access and…

binary-exploitationexploitationfuzzing+3
11 months ago
CVE-2023-48194 preview

CVE-2023-48194

GitHubzt20xx/cve-2023-48194

Proof-of-concept exploit for a buffer overflow vulnerability in Tenda AC8v4 router firmware (V16.03.34.09) via the SetNetControlList endpoint,…

binary-exploitationembedded-systems-securityexploitation+4
2 years ago
CVE-2023-38545 preview

CVE-2023-38545

GitHubyang-shun-yu/cve-2023-38545

Proof-of-concept exploit for CVE-2023-38545, a curl heap buffer overflow. Includes SOCKS5 proxy and HTTP server to trigger the vulnerability and…

exploitationfuzzingnetwork-security+3
2 years ago
CVE-2024-1441 preview

CVE-2024-1441

GitHubalmkuznetsov/cve-2024-1441

Reproduces fuzzing and crash analysis for CVE-2024-1441 using AFL++ and CASR, with detailed setup and commands for libvirt.

binary-analysisdynamic-analysis-sandboxingexploitation+2
2 years ago
CVE-2024-22640 preview

CVE-2024-22640

GitHubzunak/cve-2024-22640

Proof-of-concept exploit for CVE-2024-22640, a ReDoS vulnerability in TCPDF <=6.7.4 triggered by crafted HTML color input, with demonstration code.

code-analysisexploitationfuzzing+3
2 years ago
dtls-fuzzer preview

dtls-fuzzer

GitLabpfg666/dtls-fuzzer

dtls-fuzzer is a protocol-state-fuzzer for DTLS server implementations.

fuzzingnetwork-security
5 years ago
EXPLOIT-CVE-2026-22778 preview

EXPLOIT-CVE-2026-22778

GitHubjoaovicdev/exploit-cve-2026-22778

Proof-of-concept exploit for CVE-2026-22778, an unauthenticated RCE in vLLM's video processing, demonstrating heap address disclosure and a heap…

binary-exploitationeducationexploitation+5
1 day ago
appmon preview
Archived

appmon

GitHubdpnishant/appmon

Documentation:

android-securitybinary-analysisdebuggers+6
1.6k3 years ago
Previous1…192021…24Next