Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
20 results
CVE-2025-63587 preview

CVE-2025-63587

GitHubnrtlox/cve-2025-63587

CVE-2025-63587

authenticationhardware-securityinformation-gathering+3
6 months ago
CVE-2025-13780 preview

CVE-2025-13780

GitHubthemehackers/cve-2025-13780

A comprehensive vulnerability scanner for CVE-2025-13780, a Remote Code Execution (RCE) vulnerability in pgAdmin 4 versions ≤ 8.14.

exploitationinformation-gatheringpenetration-testing+3
38 months ago
CVE-2024-9014 preview

CVE-2024-9014

GitHubr0otk3r/cve-2024-9014

Scripts to detect and exploit CVE-2024-9014 OAuth2 authentication bypass in pgAdmin 4, including vulnerability checking and OAuth2 configuration…

authenticationexploitationinformation-gathering+3
1 year ago
CVE-2002-0347 preview

CVE-2002-0347

GitHubalt3kx/cve-2002-0347

Directory traversal vulnerability in Cobalt RAQ 4 allows remote attackers to read password-protected files, and possibly files outside the web root,…

exploitationinformation-gatheringreconnaissance+2
8 years ago
CVE-2002-0346 preview

CVE-2002-0346

GitHubalt3kx/cve-2002-0346

Cross-site scripting vulnerability in Cobalt RAQ 4 allows remote attackers to execute arbitrary script as other Cobalt users via Javascript in a URL…

exploitationinformation-gatheringpenetration-testing+2
8 years ago
CVE-2024-51026_Overview preview

CVE-2024-51026_Overview

GitHubbrotherofjhonny/cve-2024-51026_overview

Sistema NetAdmin IAM 4 é vulnerável a Cross Site Scripting (XSS), no endpoint /BalloonSave.ashx

information-gatheringpenetration-testingvulnerability-analysis+2
1 year ago
BloodHound-Legacy preview

BloodHound-Legacy

GitHubspecterops/bloodhound-legacy

Six Degrees of Domain Admin

information-gatheringlateral-movementpenetration-testing+4
10.6k6 months ago
EvilCrowRF_Custom_Firmware_CC1101_FlipperZero preview

EvilCrowRF_Custom_Firmware_CC1101_FlipperZero

GitHubh-rat/evilcrowrf_custom_firmware_cc1101_flipperzero

This firmware is an alternative to the EvilCrowRF default firmware. Module: CC1101 - Compatible Flipper Zero file.

embedded-systems-securityhardware-hackinghardware-iot-security+5
5992 years ago
BlackDir-Framework preview

BlackDir-Framework

GitHubjehadalqurashi/blackdir-framework

Web Application Vulnerability Scanner

encryption-decryption-toolshash-analysisinformation-gathering+5
1375 years ago
mmiotic preview

mmiotic

GitHubxoreaxeaxeax/mmiotic

Latency x-ray for undocumented hardware

hardware-hackinghardware-securityinformation-gathering+2
1411 month ago
CVE-2019-8540 preview

CVE-2019-8540

GitHubmaldiohead/cve-2019-8540

Kernel Stack info leak at exportObjectToClient function

binary-analysisexploitationinformation-gathering+2
407 years ago
CVE-2021-26086 preview

CVE-2021-26086

GitHubcoldfusionx/cve-2021-26086

Atlassian Jira Server/Data Center 8.4.0 - Arbitrary File read (CVE-2021-26086)

exploitationinformation-gatheringpenetration-testing+2
254 years ago
CVE-2021-26085 preview

CVE-2021-26085

GitHubcoldfusionx/cve-2021-26085

Atlassian Confluence Server 7.5.1 Pre-Authorization Arbitrary File Read vulnerability (CVE-2021-26085)

exploitationinformation-gatheringpenetration-testing+2
134 years ago
poc_monitor preview

poc_monitor

GitHubtnkr/poc_monitor

A short scraper looking for a POC of CVE-2024-49112

crawlerexploitationinformation-gathering+3
141 year ago
whisperpair-poc-tool preview

whisperpair-poc-tool

GitHubaalex954/whisperpair-poc-tool

A security research tool that identifies and demonstrates the CVE-2025-36911: Fast Pair Pairing Mode Bypass vulnerability

bluetooth-securityexploitationhardware-security+6
87 months ago
CVE-2026-27886-PoC-Account-Takeover preview

CVE-2026-27886-PoC-Account-Takeover

GitHubthesw0rd/cve-2026-27886-poc-account-takeover

Account takeover full PoC for CVE-2026-27886 in Strapi CMS

exploitationinformation-gatheringpassword-attacks+4
23 months ago
CVE-2015-2166-EXPLOIT preview

CVE-2015-2166-EXPLOIT

GitHubk3ystr0k3r/cve-2015-2166-exploit

A PoC exploit for CVE-2015-2166 - Directory Traversal Vulnerability in Ericsson Drutt Mobile Service Delivery Platform (MSDP)

exploitationinformation-gatheringpenetration-testing+3
23 years ago
cPanelSniper preview

cPanelSniper

GitHubzwanski2019/cpanelsniper

CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection

authentication-authorizationcommand-and-controlexploitation+6
4 months ago
Previous12Next