Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
23 results
CVE-2026-20253 preview

CVE-2026-20253

GitHub0xblackash/cve-2026-20253

CVE-2026-20253

exploitationincident-responsepenetration-testing+2
53 months ago
mig preview
Archived

mig

GitHubmozilla/mig

Distributed & real time digital forensics at the speed of the cloud

configuration-auditingdigital-forensicsdisk-forensics+6
1.2k7 years ago
CVE-2025-68613-n8n-rce-analysis preview

CVE-2025-68613-n8n-rce-analysis

GitHubak-cybe/cve-2025-68613-n8n-rce-analysis

CVE-2025-68613 (n8n) Critical RCE analysis + defensive recommendations (patch validation, detection ideas, and hardening tips)

educationexploitationincident-response+3
19 months ago
DeadManSwitch preview

DeadManSwitch

GitHubblacksnufkin/deadmanswitch

DeadManSwitch in rust with several triggers (remote local and network)

data-exfiltrationdefensive-toolsencryption-decryption-tools+4
2710 months ago
CVE-2026-41089-Netlogon-RCE preview

CVE-2026-41089-Netlogon-RCE

GitHubhydrasoft/cve-2026-41089-netlogon-rce

Technical analysis and Proof-of-Concept (PoC) for CVE-2026-41089, a critical unauthenticated Remote Code Execution (RCE) vulnerability in the Windows…

educationexploitationincident-response+4
161 month ago
CVE-2026-48907 preview

CVE-2026-48907

GitHubk3ystr0k3r/cve-2026-48907

CVE-2026-48907 – Joomla JCE Unauthenticated Remote Code Execution (RCE)

educationexploitationincident-response+8
42 months ago
DNS-Mayhem-CVE-2026-41096-Deep-Dive preview

DNS-Mayhem-CVE-2026-41096-Deep-Dive

GitHubmrk336/dns-mayhem-cve-2026-41096-deep-dive

In‑depth technical analysis of CVE‑2026‑41096, a critical heap overflow in Windows DNSAPI.dll enabling remote code execution via crafted DNS…

dns-analysiseducationexploitation+4
44 months ago
React2Shell-CVE-2025-55182-The-Deserialization-Bug-That-Broke-the-Web preview

React2Shell-CVE-2025-55182-The-Deserialization-Bug-That-Broke-the-Web

GitHubadityabhatt3010/react2shell-cve-2025-55182-the-deserialization-bug-that-broke-the-web

React2Shell, CVE-2025-55182, RCE Vulnerability: A critical breakdown of the unsafe deserialization flaw in React Server Components that enables…

ctfeducationexploitation+8
89 months ago
Project-Vuln-Detection-N-Mitigation_101 preview

Project-Vuln-Detection-N-Mitigation_101

GitHubvaishnavucv/project-vuln-detection-n-mitigation_101

Vulnerability Detection and Mitigation Apache ActiveMQ | Security Architectures and Systems Administration - on - Apache ActiveMQ Deserialization…

educationexploitationincident-response+3
11 year ago
Log4Shell-PoC preview

Log4Shell-PoC

GitHubjosemariamicoli/log4shell-poc

**Log4Shell PoC is a high-fidelity exploitation environment designed to replicate the CVE-2021-44228 vulnerability.** It provides a containerized…

command-and-controleducationexploitation+6
8 months ago
Fortinet-FortiWeb-Fabric-Connector-CVE-2025-25257-Detection preview

Fortinet-FortiWeb-Fabric-Connector-CVE-2025-25257-Detection

GitHubgarethmsheldon/fortinet-fortiweb-fabric-connector-cve-2025-25257-detection

This repository provides production-ready detection engineering content for **CVE-2025-25257**, a pre-authentication SQL Injection vulnerability in…

educationexploitationforensics+8
6 months ago
LetsDefend-SOC173-Follina-0-Day-Detected preview

LetsDefend-SOC173-Follina-0-Day-Detected

GitHubarkha-corvus/letsdefend-soc173-follina-0-day-detected

We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered…

digital-forensicseducationincident-response+5
11 months ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubernestak/cve-2022-30190

Official guidance and workarounds for CVE-2022-30190, a remote code execution vulnerability in the Microsoft Support Diagnostic Tool (MSDT)…

defensive-toolseducationexploitation+3
4 years ago
MSDT_CVE-2022-30190 preview

MSDT_CVE-2022-30190

GitHubarchanchoudhury/msdt_cve-2022-30190

This Repository Talks about the Follina MSDT from Defender Perspective

educationincident-responseioc-management+3
374 years ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubgyaansastra/cve-2022-30190

Comprehensive analysis of CVE-2022-30190 (Follina MSDT vulnerability) with IOCs, detection rules for SIEMs/EDR, YARA signatures, mitigation scripts,…

educationexploitationforensics+5
24 years ago
CVE-2026-48282-coldfusion-rds-detection preview

CVE-2026-48282-coldfusion-rds-detection

GitHubg0thamrabb1t/cve-2026-48282-coldfusion-rds-detection

Laboratory validation of CVE-2026-48282 in Adobe ColdFusion RDS with arbitrary CFM file write, code execution, auditd/PCAP evidence, event timeline…

educationexploitationforensics+5
2 months ago
CVE-2017-0144 preview

CVE-2017-0144

GitHub0xblackash/cve-2017-0144

CVE-2017-0144

educationexploitationincident-response+3
23 months ago
LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-21298 preview

LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-21298

GitHubc-g-creator/letsdefend-soc336-windows-ole-zero-click-rce-exploitation-detected-cve-2025-21298

LetsDefend SOC336 case study on CVE-2025-21298

ctfeducationemail-security+6
4 months ago
Previous12Next