Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
24 results
CVE-2025-24893 preview

CVE-2025-24893

GitHubvasilysaint/cve-2025-24893

Unauthenticated remote code execution exploit for CVE-2025-24893 targeting Linux XWiki, delivering a reverse shell for authorized penetration testing…

educationexploitationlabs-practice+3
1
2 months ago
kubernetes-goat preview

kubernetes-goat

GitHubmadhuakula/kubernetes-goat

Intentionally vulnerable Kubernetes cluster environment for hands-on security training. Includes 22+ scenarios covering container escape, RBAC…

cloud-securitycontainer-escapecontainer-security+4
5.8k4 months ago
CVE-2025-53770 preview

CVE-2025-53770

GitHubj4ck3lsyn-gen2/cve-2025-53770

Isolated research lab and proof-of-concept for validating a SharePoint deserialization vulnerability (CVE-2025-53770) with a Python exploit driver,…

container-securityeducationexploitation+5
15 months ago
CVE-2018-15133-laravel-framework preview

CVE-2018-15133-laravel-framework

GitHubflame-11/cve-2018-15133-laravel-framework

Reproducible Docker lab for CVE-2018-15133 (Laravel Framework token unserialize RCE) with a known APP_KEY and a /poc route for testing exploit…

container-securityeducationexploitation+3
7 months ago
cve-2025-59532-poc preview

cve-2025-59532-poc

GitHubbaktistr/cve-2025-59532-poc

Docker-based research environment for analyzing CVE-2025-59532, a path traversal in OpenAI Codex CLI, with vulnerable and patched versions for…

container-securityctfeducation+5
8 months ago
React2Shell preview

React2Shell

GitHubsubzer0x0/react2shell

Intentionally vulnerable Next.js lab for CVE-2025-55182 exploitation research. Docker-packaged environment for practicing web application security…

container-securityeducationlabs-practice+3
18 months ago
React2Shell-CVE-2025-55182-Testing-Environment preview

React2Shell-CVE-2025-55182-Testing-Environment

GitHubabcfabian/react2shell-cve-2025-55182-testing-environment

A containerized testing environment for CVE-2025-55182, a critical (10.0 CVSS) Remote Code Execution vulnerability in React Server Components.

container-securityeducationexploitation+4
18 months ago
cve-2025-13486-vuln-setup preview

cve-2025-13486-vuln-setup

GitHubkre80r/cve-2025-13486-vuln-setup

Docker test environment for CVE-2025-13486 (ACF Extended RCE). For security research only.

container-securityeducationexploitation+3
8 months ago
CVE-2022-0543-Home-Lab preview

CVE-2022-0543-Home-Lab

GitHubnetw0rk7/cve-2022-0543-home-lab

CVE-2022-0543 - Redis RCE Vulnerability home lab for Red Teaming, Penetration Testing Training with just one DOCKER

container-securityeducationexploitation+5
8 months ago
cve-2022-42889-text4shell-docker preview

cve-2022-42889-text4shell-docker

GitHubreachabilityorg/cve-2022-42889-text4shell-docker

Dockerized vulnerable Java application demonstrating CVE-2022-42889 (Text4Shell) remote code execution via Apache Commons Text string lookups, for…

container-securityeducationexploitation+3
9 months ago
CVE-2025-24813 preview

CVE-2025-24813

GitHubalpereny-cs/cve-2025-24813

Hands-on lab environment for testing Apache Tomcat unauthenticated RCE (CVE-2025-24813) with Docker setup and step-by-step exploitation guide.

container-securityeducationexploitation+4
31 year ago
CVE-2024-22262 preview

CVE-2024-22262

GitHubperformant-labs/cve-2024-22262

Proof-of-concept exploit for CVE-2024-22262 in Spring applications, with a Dev Container environment for hands-on vulnerability exploration and…

container-securityeducationexploitation+3
1 year ago
CVE-2021-44228 preview

CVE-2021-44228

GitHubsrcporter/cve-2021-44228

Deliberately vulnerable Spring Boot application containing the Log4Shell (CVE-2021-44228) remote code execution vulnerability for controlled security…

container-securityeducationexploitation+3
12 years ago
CVE-2023-30212-LAB preview

CVE-2023-30212-LAB

GitHubkuttappu123/cve-2023-30212-lab

Hands-on lab environment for exploiting CVE-2023-30212, a stored XSS vulnerability in OURPHP ≤7.2.0, using Docker containers for safe penetration…

container-securityeducationexploitation+3
13 years ago
horrors-log4shell preview

horrors-log4shell

GitHubtasooshi/horrors-log4shell

Micro lab for CVE-2021-44228 (Log4Shell) with automated multi-target exploitation, runtime payload generation, and adjustable bypasses for security…

exploitationlabs-practicepayload-generation+3
24 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubblasty/cve-2021-41773

Docker-based playground for testing CVE-2021-41773, demonstrating local file disclosure and remote code execution in Apache HTTPd 2.4.49.

container-securityeducationexploitation+3
2114 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubblueteamsteve/cve-2021-41773

Provides vulnerable Docker images for CVE-2021-41773 (Apache path traversal) with PoCs for file read and RCE, enabling security testing and practice.

container-securityeducationexploitation+3
234 years ago
cve-2019-6340 preview

cve-2019-6340

GitHubcved-sources/cve-2019-6340

Docker container for CVE-2019-6340 exploitation lab, part of the Cved vulnerable container management framework for practicing Drupal security…

container-securityeducationexploitation+3
5 years ago
Previous12Next