Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
687 results
CVE-2024-24919---Exploit-Script preview

CVE-2024-24919---Exploit-Script

GitHubfunixone/cve-2024-24919---exploit-script

Command-line exploit script for CVE-2024-24919 path traversal vulnerability in Check Point Security Gateway, enabling unauthorized file access…

educationexploitationinformation-gathering+3
1
1 year ago
cve-2016-10924-POC preview

cve-2016-10924-POC

GitHubalealeluyah/cve-2016-10924-poc

Proof-of-Concept (PoC) exploit script for the Directory Traversal vulnerability (CVE-2016-10924) found in the WordPress plugin ebook-download…

educationexploitationinformation-gathering+3
11 year ago
CVE-2020-3452_Cisco_ASA_PathTraversal preview

CVE-2020-3452_Cisco_ASA_PathTraversal

GitHubabrewer251/cve-2020-3452_cisco_asa_pathtraversal

Proof-of-concept exploit for CVE-2020-3452, a path traversal in Cisco ASA/FTD, enabling unauthenticated file disclosure. Automates extraction of…

educationexploitationinformation-gathering+3
11 months ago
CVE-2025-2539---File-Away-WordPress-Plugin-Arbitrary-File-Read preview

CVE-2025-2539---File-Away-WordPress-Plugin-Arbitrary-File-Read

GitHubfazaroot/cve-2025-2539---file-away-wordpress-plugin-arbitrary-file-read

Authenticated arbitrary file read exploit for the File Away WordPress plugin (CVE-2025-2539). Includes PoC, attack flow, detection signatures, and…

ctfeducationexploitation+6
8 months ago
CVE-2023-31059-Repetier-Server-1.4.10-Unauthenticated-Path-Traversal preview

CVE-2023-31059-Repetier-Server-1.4.10-Unauthenticated-Path-Traversal

GitHubmbanyamer/cve-2023-31059-repetier-server-1.4.10-unauthenticated-path-traversal

Proof-of-concept exploit for CVE-2023-31059, an unauthenticated path traversal in Repetier-Server ≤1.4.10, enabling arbitrary file read via crafted…

educationexploitationinformation-gathering+3
6 months ago
CVE-2024-46987 preview

CVE-2024-46987

GitHubblueberryp1ll/cve-2024-46987

PoC exploit for CVE-2024-46987 — Camaleon CMS arbitrary path traversal (file read)

educationexploitationinformation-gathering+3
6 months ago
day03-jenkins-23897 preview

day03-jenkins-23897

GitHubamalpvatayam67/day03-jenkins-23897

Jenkins CLI arbitrary file read (CVE-2024-23897)

educationexploitationinformation-gathering+3
11 months ago
CVE-2024-27954 preview

CVE-2024-27954

GitHubr0otk3r/cve-2024-27954

Python-based scanner for CVE-2024-27954, a Local File Inclusion vulnerability in the WordPress wp-automatic plugin. Supports multithreaded scanning,…

educationexploitationinformation-gathering+3
1 year ago
CVE-2025-3419 preview

CVE-2025-3419

GitHubyucaerin/cve-2025-3419

The Eventin plugin (<= 4.0.26) for WordPress contains an unauthenticated arbitrary file read vulnerability

educationexploitationinformation-gathering+3
1 year ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubifconfig-me/cve-2024-23897

Proof-of-concept exploit for Jenkins arbitrary file leak vulnerability (CVE-2024-23897). Enables unauthorized file disclosure for security testing…

educationexploitationinformation-gathering+2
2 years ago
CVE-2024-57484 preview

CVE-2024-57484

GitHubyogeswaran6383/cve-2024-57484

Proof-of-concept for CVE-2024-57484: directory listing vulnerability in FoxyProxy extension exposing internal file structure and metadata, enabling…

information-gatheringmisconfigurationvulnerability-analysis+1
1 year ago
CVE-2023-47668 preview

CVE-2023-47668

GitHubrandomrobbiebf/cve-2023-47668

Restrict Content <= 3.2.7 - Information Exposure via legacy log file

information-gatheringlog-analysismisconfiguration+2
2 years ago
ES-File-Explorer-Open-Port-Vulnerability---CVE-2019-6447 preview

ES-File-Explorer-Open-Port-Vulnerability---CVE-2019-6447

GitHubsandarufdo/es-file-explorer-open-port-vulnerability---cve-2019-6447

ES File Explorer Open Port Vulnerability - CVE-2019-6447

android-securityexploitationinformation-gathering+2
6 years ago
portscan-CVE-2026-41940 preview

portscan-CVE-2026-41940

GitHubamirrezamarzban/portscan-cve-2026-41940

IP CIDRs (presumably as input, maybe command line or file) and checks ports 2083 and 2087 for openness

information-gatheringnetwork-securitypenetration-testing+3
14 months ago
CVE-2025-11371 preview

CVE-2025-11371

GitHubnetvanguard-cmd/cve-2025-11371

Proof-of-concept exploit for CVE-2025-11371, an unauthenticated Local File Inclusion in Gladinet CentreStack and TrioFox, enabling remote file…

educationexploitationinformation-gathering+3
110 months ago
hakrawler preview

hakrawler

GitHubhakluke/hakrawler

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

crawlerinformation-gatheringpenetration-testing+2
5.1k25 days ago
HaE preview

HaE

GitHuboverspace-labs/hae

Modular Burp Suite extension for fine-grained highlighting and extraction of sensitive data from HTTP and WebSocket traffic, enabling efficient…

information-gatheringutilities-frameworksweb-security
4.4k8 days ago
net-creds preview

net-creds

GitHubdanmcinerney/net-creds

Sniffs sensitive data from interface or pcap

information-gatheringnetwork-securitypacket-sniffing-analysis+1
1.9k6 years ago
Previous1…36373839Next