Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
558 results
CVE-2025-65264 preview

CVE-2025-65264

GitHubcwjchoi01/cve-2025-65264

Proof-of-concept exploit for CVE-2025-65264 demonstrating arbitrary kernel memory read via IOCTL in CPU-Z driver, enabling token theft and potential…

binary-exploitationeducationexploitation+2
7 months ago
CVE-2024-46987 preview

CVE-2024-46987

GitHubblueberryp1ll/cve-2024-46987

PoC exploit for CVE-2024-46987 — Camaleon CMS arbitrary path traversal (file read)

educationexploitationinformation-gathering+3
6 months ago
CVE-2024-46987 preview

CVE-2024-46987

GitHubrival420/cve-2024-46987

CVE-2024-46987 - Camaleon CMS LFI Exploit

educationexploitationinformation-gathering+3
6 months ago
CTT-HEARTBLEED-Temporal-Resonance-Memory-Leak-Exploit-Heartbleed-CVE-2014-0160 preview

CTT-HEARTBLEED-Temporal-Resonance-Memory-Leak-Exploit-Heartbleed-CVE-2014-0160

GitHubsimoesctt/ctt-heartbleed-temporal-resonance-memory-leak-exploit-heartbleed-cve-2014-0160

Heartbleed (CVE-2014-0160) was devastating because it leaked adjacent memory. CTT-Heartbleed goes further—it uses 33-layer temporal resonance to map,…

educationexploitationinformation-gathering+6
7 months ago
CVE-2025-29094-Multiple-Stored-Cross-Site-Scripting-XSS preview

CVE-2025-29094-Multiple-Stored-Cross-Site-Scripting-XSS

GitHubframarcuccio/cve-2025-29094-multiple-stored-cross-site-scripting-xss

This repository reveals a security vulnerability discovered in Motivian Content Management System v.41.0.0.

educationexploitationinformation-gathering+3
6 months ago
Bot-exploit-CVE-2025-55182 preview

Bot-exploit-CVE-2025-55182

GitHubitsismarcos/bot-exploit-cve-2025-55182

Educational scanner for CVE-2025-55182 (React2Shell) vulnerability detection in React Server Components/Next.js apps. Uses dorks for target discovery…

educationexploitationinformation-gathering+3
18 months ago
Vulnerable-Lab-Exploitation preview

Vulnerable-Lab-Exploitation

GitHubhackhermind-pixel/vulnerable-lab-exploitation

A hands-on project demonstrating the setup of virtual security lab, network reconnaissance, and exploitation of CVE-2012-1823.

educationexploitationinformation-gathering+8
17 months ago
CVE-2025-24011-PoC preview

CVE-2025-24011-PoC

GitHubpuben/cve-2025-24011-poc

Umbraco User Enum - CVE-2025-24011 PoC

educationexploitationinformation-gathering+3
11 year ago
CVE-2022-37177 preview

CVE-2022-37177

GitHubjc175/cve-2022-37177

CVE-2022-37177 - HireVue-Broken-Or-Risky-Cryptographic-Algorithm

cryptographyeducationinformation-gathering+2
14 years ago
codoforum preview

codoforum

GitHubprasanthc41m/codoforum

CVE-2020-5842 Stored XSS Vulnerability in Codoforum 4.8.3

educationexploitationinformation-gathering+3
13 years ago
CVE-2024-57725 preview

CVE-2024-57725

GitHubpointedsec/cve-2024-57725

This repository documents an unauthenticated GPON manipulation vulnerability discovered in certain Arcadyan routers.

educationexploitationinformation-gathering+3
11 year ago
CVE-2024-24919-Check-Point-Remote-Access-VPN preview

CVE-2024-24919-Check-Point-Remote-Access-VPN

GitHubpraison001/cve-2024-24919-check-point-remote-access-vpn

Exploit and scanner for CVE-2024-24919, an unauthenticated arbitrary file read in Check Point VPN appliances, enabling sensitive file disclosure and…

educationexploitationinformation-gathering+3
12 years ago
CVE-2021-26084 preview

CVE-2021-26084

GitHubnahcusira/cve-2021-26084

Technical analysis and proof-of-concept exploit for CVE-2021-26084, an OGNL injection vulnerability in Atlassian Confluence Server. Includes root…

educationexploitationinformation-gathering+3
12 years ago
CVE-2025-69295 preview

CVE-2025-69295

GitHubhexissam/cve-2025-69295

Blind SQL injection vulnerability detection tool for TeconceTheme Coven Core WordPress theme. Enables safe testing of input sanitization and…

database-securityeducationinformation-gathering+3
6 months ago
CVE-2023-5359 preview

CVE-2023-5359

GitHubenzocipher/cve-2023-5359

CVE-2023-5359 scanner for W3 Total Cache cleartext storage vulnerability. Detects exposed credentials (API keys, OAuth tokens) in publicly accessible…

educationexploitationinformation-gathering+3
9 months ago
day03-jenkins-23897 preview

day03-jenkins-23897

GitHubamalpvatayam67/day03-jenkins-23897

Jenkins CLI arbitrary file read (CVE-2024-23897)

educationexploitationinformation-gathering+3
11 months ago
CVE-Newgen-Software-Advisories preview

CVE-Newgen-Software-Advisories

GitHubcbx216/cve-newgen-software-advisories

Advisory for CVE-2025-65742 — Newgen OmniDocs LDAP Admin BFLA

educationexploitationinformation-gathering+3
7 months ago
AVX-Side-Channel preview

AVX-Side-Channel

GitHubbytereaper77/avx-side-channel

AVX-Based Timing Side Channel — ASLR Detection

educationhardware-securityinformation-gathering+1
10 years ago
Previous1…252627…31Next