Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
793 results
CVE-2022-46169 preview

CVE-2022-46169

GitHubnicostan15/cve-2022-46169

Educational demonstration of CVE-2022-46169: unauthenticated remote code execution in Cacti ≤1.2.22 via authorization bypass and command injection.…

educationexploitationlabs-practice+3
5 months ago
CVE-2017-12635_36 preview

CVE-2017-12635_36

GitHubdungsocool/cve-2017-12635_36

Step-by-step lab demonstrating exploitation of CVE-2017-12635 (privilege escalation) and CVE-2017-12636 (remote code execution) against Apache…

educationexploitationlabs-practice+3
3 months ago
CVE-2023-25690-POC preview

CVE-2023-25690-POC

GitHuboocyginxoo/cve-2023-25690-poc

CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling…

educationexploitationlabs-practice+3
21 year ago
CVE-2023-22527-POC preview

CVE-2023-22527-POC

GitHubmaanvader/cve-2023-22527-poc

Atlassian Confluence Remote Code Execution(RCE) Proof Of Concept

educationexploitationlabs-practice+3
12 years ago
log4j-polkit-poc preview

log4j-polkit-poc

GitHub0xalwayslucky/log4j-polkit-poc

vulnerable setup to display an attack chain of log4j CVE-2021-44228 with privilege escalation to root using the polkit exploit CVE-2021-4034

educationexploitationlabs-practice+4
14 years ago
cve-2012-1889 preview

cve-2012-1889

GitHubl-iberty/cve-2012-1889

Educational exploit demo for CVE-2012-1889 with heap spray technique, providing a practical walkthrough of binary exploitation targeting Internet…

binary-exploitationeducationexploitation+2
15 years ago
Vulnerable-Lab-NextJS-CVE-2025-29927 preview

Vulnerable-Lab-NextJS-CVE-2025-29927

GitHubkamal-418/vulnerable-lab-nextjs-cve-2025-29927

Deliberately vulnerable Next.js application designed for practicing exploitation of CVE-2025-29927, with a tutorial video for guided learning.

ctfeducationlabs-practice+2
14 months ago
CVE-2025-29927 preview

CVE-2025-29927

GitHubs11s11/cve-2025-29927

Demo of CVE-2025-29927 for secure programming class

educationlabs-practicepenetration-testing+2
3 months ago
CVE-2025-38001 preview

CVE-2025-38001

GitHubjevil36239/cve-2025-38001

Repository ini berisi Proof of Concept (PoC) untuk celah keamanan CVE-2025-38001 yang menyerang modul HFSC pada Kernel Linux. Dibuat khusus untuk…

binary-exploitationeducationexploitation+4
5 months ago
CVE-2017-18349 preview

CVE-2017-18349

GitHubdungsocool/cve-2017-18349

Step-by-step walkthrough of CVE-2017-18349 Fastjson deserialization RCE exploitation, covering attack surface identification, fingerprinting, JNDI…

binary-exploitationeducationexploitation+6
3 months ago
Binary-Exploitation-and-Kernel-Escalation preview

Binary-Exploitation-and-Kernel-Escalation

GitHubanilkashyap01/binary-exploitation-and-kernel-escalation

Secured root-level access by identifying and exploiting misconfigurations and outdated software. Buffer overflow vulnerability in an outdated version…

binary-exploitationeducationexploitation+7
4 months ago
Exploiting-Samba-on-Metasploitable-2 preview

Exploiting-Samba-on-Metasploitable-2

GitHubvig9610/exploiting-samba-on-metasploitable-2

Utilize metasploit from a Kali Linux machine to exploit a well-known samba vulnerability (CVE-2007-2447). This is done in order to infiltrate a…

educationexploitationexploit-frameworks+8
6 months ago
CVE-2026-2005_lab preview

CVE-2026-2005_lab

GitHubstvm8/cve-2026-2005_lab

Self-contained Docker lab for practicing exploitation of CVE-2026-2005, a heap buffer overflow in PostgreSQL's pgcrypto extension, enabling privilege…

binary-exploitationctfdatabase-security+4
4 months ago
CVE-2025-25279-Mattermost-Path-Traversal preview

CVE-2025-25279-Mattermost-Path-Traversal

GitHubabokormahammadmousse/cve-2025-25279-mattermost-path-traversal

Proof-of-concept exploit for CVE-2025-25279, a Mattermost Focalboard path traversal enabling authenticated arbitrary file read and exfiltration of…

educationexploitationlabs-practice+3
4 months ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubalvarosr/cve-2025-5548

Documented technical analysis and controlled exploitation of CVE-2025-5548 in FreeFloat FTP Server, covering lab setup, static/dynamic binary…

binary-analysisdebuggerseducation+5
5 months ago
CVE-2025-5844 preview

CVE-2025-5844

GitHubkeyframe-bytes/cve-2025-5844

Technical analysis and functional Proof of Concept for CVE-2025-5548, a buffer overflow vulnerability in FreeFloat FTP Server v1.0, including exploit…

binary-exploitationeducationexploitation+3
5 months ago
APACHE-PATH-TRAVERSAL-RCE-CVE-2021-41773- preview

APACHE-PATH-TRAVERSAL-RCE-CVE-2021-41773-

GitHubabds059/apache-path-traversal-rce-cve-2021-41773-

A comprehensive analysis of CVE-2021-41773 (Apache HTTP Server 2.4.49), featuring vulnerability research, controlled lab-based exploitation,…

educationexploitationlabs-practice+3
5 months ago
ethical-hacking-CVE-2011-2523 preview

ethical-hacking-CVE-2011-2523

GitHubchathura123git/ethical-hacking-cve-2011-2523

Ethical Hacking Assessment | Practical vulnerability testing of vsftpd 2.3.4 backdoor (CVE-2011-2523) on Metasploitable2 using Kali Linux & Metasploit

ctfeducationexploitation+3
3 months ago
Previous1…171819…45Next