Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
219 results
webmin_docker_and_exp preview

webmin_docker_and_exp

GitHubhachp1/webmin_docker_and_exp

Dockerfiles for CVE-2019-15107(webmin RCE) recurrence including v1.890 and v1.920 with Exp for each version.

container-securityeducationexploitation+3
2
7 years ago
CVE-2023-30212-LAB preview

CVE-2023-30212-LAB

GitHubkuttappu123/cve-2023-30212-lab

Hands-on lab environment for exploiting CVE-2023-30212, a stored XSS vulnerability in OURPHP ≤7.2.0, using Docker containers for safe penetration…

container-securityeducationexploitation+3
13 years ago
Demo_CVE-2025-3248 preview

Demo_CVE-2025-3248

GitHubkiraly07/demo_cve-2025-3248

Educational lab simulating CVE-2025-3248 with a vulnerable Docker service and PoC exploit for hands-on security training and mitigation practice.

container-securityeducationexploitation+3
211 months ago
CVE-2021-41773S preview

CVE-2021-41773S

GitHubmightysai1997/cve-2021-41773s

Docker-based vulnerable lab for CVE-2021-41773 Apache path traversal, providing PoC configurations for file read and remote code execution in a…

container-securityeducationexploitation+3
18 months ago
CVE-2021-3156-Baron-Samedit preview

CVE-2021-3156-Baron-Samedit

GitHubtheleopard65/cve-2021-3156-baron-samedit

A simple Docker lab and Exploit setup for CVE-2021-3156 - "Baron Samedit".

binary-exploitationcontainer-securityeducation+5
15 months ago
CVE-2026-39987-Lab preview

CVE-2026-39987-Lab

GitHubrootdirective-sec/cve-2026-39987-lab

Local Docker lab reproducing CVE-2026-39987, a pre-auth RCE in marimo's terminal WebSocket. Compares vulnerable and patched versions with least-harm…

container-securityeducationexploitation+3
14 months ago
CVE-2025-64424-Coolify- preview

CVE-2025-64424-Coolify-

GitHubandroidteacher/cve-2025-64424-coolify-

Containerized CTF lab for learning and exploiting CVE-2025-64424, a command injection RCE in Coolify. Includes vulnerable environment, walkthrough,…

container-securityctfeducation+5
16 months ago
CVE-2019-14287-demo preview

CVE-2019-14287-demo

GitHubcashwilliams/cve-2019-14287-demo

This is a container built for demonstration purposes that has a version of the sudo command which is vulnerable to CVE-2019-14287

container-securityeducationexploitation+3
15 years ago
CVE-2021-44228 preview

CVE-2021-44228

GitHubsrcporter/cve-2021-44228

DO NOT USE FOR ANYTHING REAL. Simple springboot sample app with vulnerability CVE-2021-44228 aka "Log4Shell"

container-securityeducationexploitation+3
12 years ago
cve-2018-11776 preview

cve-2018-11776

GitHubcved-sources/cve-2018-11776

Docker container providing a vulnerable Apache Struts2 environment for CVE-2018-11776 exploitation practice and security education.

container-securityeducationexploitation+3
15 years ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubzsxen/cve-2025-1974

Windows 11-first educational lab for studying CVE-2025-1974 in ingress-nginx. Provides safe attack emulation and defense validation with local…

cloud-securitycontainer-securitydefensive-tools+7
5 months ago
cve-images preview

cve-images

GitHubedgecases-purplehax/cve-images

Intentionally-vulnerable nginx 1.30.0 CVE lab images (CVE-2026-40701/42934/42945/42946) for isolated security research. Lab use only.

container-securityctfcurated-resources+5
13 months ago
cve-2019-10678 preview

cve-2019-10678

GitHubcved-sources/cve-2019-10678

Docker container providing a vulnerable environment for CVE-2019-10678, designed for security training and exploitation practice within the Cved…

container-securityeducationexploitation+2
15 years ago
CVE-2021-42013-LAB preview

CVE-2021-42013-LAB

GitHubjas9reet/cve-2021-42013-lab

Docker-based lab environment for exploiting Apache HTTP Server 2.4.50 path traversal and RCE vulnerability (CVE-2021-42013) with automated exploit…

container-securityeducationexploitation+4
14 years ago
React2Shell preview

React2Shell

GitHubsubzer0x0/react2shell

React2Shell (CVE-2025-55182) – An intentionally vulnerable Next.js application created for educational and research purposes.

container-securityeducationlabs-practice+3
19 months ago
React2Shell-CVE-Lab preview

React2Shell-CVE-Lab

GitHubxxxtectationxxx/react2shell-cve-lab

A self-hosted vulnerable Next.js environment running on Docker for simulating CVE-2025-55182. Built for educational security research and CTF…

container-securityctfeducation+6
18 months ago
React2Shell-CVE-2025-55182-Testing-Environment preview

React2Shell-CVE-2025-55182-Testing-Environment

GitHubabcfabian/react2shell-cve-2025-55182-testing-environment

A containerized testing environment for CVE-2025-55182, a critical (10.0 CVSS) Remote Code Execution vulnerability in React Server Components.

container-securityeducationexploitation+4
19 months ago
CVE-2024-1071-Docker preview

CVE-2024-1071-Docker

GitHubmatrexdz/cve-2024-1071-docker

Docker-based lab for practicing WordPress CVE-2024-1071 exploitation with automated PoC scripts and step-by-step setup instructions.

container-securityeducationexploitation+3
12 years ago
Previous1234…13Next