Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
559 results
CVE-2018-18778 preview

CVE-2018-18778

GitHubk3ystr0k3r/cve-2018-18778

CVE-2018-18778 - ACME mini_httpd Arbitrary File Read

educationexploitationinformation-gathering+3
1
1 month ago
CVE-2025-2539 preview

CVE-2025-2539

GitHubrootharpy/cve-2025-2539

Unauthenticated Arbitrary File Read exploit for WordPress File Away Plugin ≤ 3.9.9.0.1

educationexploitationinformation-gathering+3
21 year ago
Active-Scanning-and-Information-Gathering-in-ICS-SCADA-Networks-Using-Network-Mapper-NMAP preview

Active-Scanning-and-Information-Gathering-in-ICS-SCADA-Networks-Using-Network-Mapper-NMAP

GitHubmurataydemir/active-scanning-and-information-gathering-in-ics-scada-networks-using-network-mapper-nmap

Active Scanning and Information Gathering in ICS/SCADA Networks using Network Mapper (NMAP) (Turkish)

educationinformation-gatheringnetwork-mapping+3
26 years ago
wordpress-cve-2024-10924-pentest preview

wordpress-cve-2024-10924-pentest

GitHubademto/wordpress-cve-2024-10924-pentest

Penetration testing report and exploit for CVE-2024-10924, a 2FA bypass in Really Simple SSL, including reconnaissance, exploitation, and remediation…

authenticationeducationexploitation+5
31 year ago
CVE-2021-20323 preview

CVE-2021-20323

GitHubcappricio-securities/cve-2021-20323

A POST based reflected Cross Site Scripting vulnerability on has been identified in Keycloak.

educationinformation-gatheringpenetration-testing+3
22 years ago
PHP-CGI-RCE-Scanner preview

PHP-CGI-RCE-Scanner

GitHubywchen-ntust/php-cgi-rce-scanner

Scanning CVE-2024-4577 vulnerability with a url list.

educationexploitationinformation-gathering+3
111 months ago
CVE-2025-20393 preview

CVE-2025-20393

GitHubcyberleelawat/cve-2025-20393

Cisco is aware of a potential vulnerability.  Cisco is currently investigating and will update these details as appropriate as more…

educationexploitationinformation-gathering+4
28 months ago
CVE-2025-57819_FreePBX preview

CVE-2025-57819_FreePBX

GitHuborange0mint/cve-2025-57819_freepbx

This repository includes two PoC scripts for CVE-2025-57819 in FreePBX: one to create a new admin user (poc_admin.py), and another to extract…

educationexploitationinformation-gathering+4
211 months ago
CVE-2023-28432 preview

CVE-2023-28432

GitHubbitwiz4rd/cve-2023-28432

PoC MinIO vulnerability exploit

educationexploitationinformation-gathering+3
21 year ago
php_filter_chain_oracle_poc preview

php_filter_chain_oracle_poc

GitHub4xura/php_filter_chain_oracle_poc

PoC scripts to exploit LFR (Local File Read) via PHP filters chain oracle (php://filter), especially for CTF purposes or the exploit of…

ctfexploitationinformation-gathering+3
21 year ago
CVE-2021-43798 preview

CVE-2021-43798

GitHubmonke443/cve-2021-43798

Arbitrary file read in Grafana allows an attacker to read server files by abusing a path traversal.

educationexploitationinformation-gathering+2
21 year ago
CVE-2026-6355 preview

CVE-2026-6355

GitHubpenguinsecq/cve-2026-6355

Exploit PoC of CVE-2026-6356

educationinformation-gatheringpenetration-testing+3
4 months ago
CVE-2025-11203-PoC preview

CVE-2025-11203-PoC

GitHublearner202649/cve-2025-11203-poc

The code for personally reproducing the corresponding vulnerability

api-securityeducationexploitation+3
3 months ago
-Grafana-LFI-CVE-2021-43798 preview

-Grafana-LFI-CVE-2021-43798

GitHubkikechans/-grafana-lfi-cve-2021-43798

📂 Grafana LFI Exploit (CVE-2021-43798). Extracción automatizada de credenciales y configuración. 🕵️

ctfexploitationinformation-gathering+3
4 months ago
CVE-2025-53580 preview

CVE-2025-53580

GitHubnxploited/cve-2025-53580

WordPress Simple Business Directory Pro Plugin < 15.6.9 is vulnerable to a high priority Privilege Escalation

educationexploitationinformation-gathering+6
4 months ago
CVE-2024-51482 preview

CVE-2024-51482

GitHubbwithe/cve-2024-51482

CVE-2024-51482 ZoneMinder v1.37.* <= 1.37.64 poc

database-securityeducationexploitation+4
110 months ago
CVE-2025-14847 preview

CVE-2025-14847

GitHubpeakcyber-security/cve-2025-14847

CVE-2025-14847 | MongoBleed vulnerability proof of concept project

database-securityeducationexploitation+3
27 months ago
OpenSSH-Vulnerability-test preview

OpenSSH-Vulnerability-test

GitHubbetancour/openssh-vulnerability-test

OpenSSH CVE-2024-6387 Vulnerability Checker

educationinformation-gatheringnetwork-security+3
22 years ago
Previous1…212223…32Next