Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
784 results
CVE-2024-3094 preview

CVE-2024-3094

GitHubextracoding-dozen/cve-2024-3094

Research of CVE-2024-3094 vulnerability.

container-securityeducationexploitation+3
5 months ago
Reporte-de-Escalada-de-Privilegios-Local-Dirty-Frag preview

Reporte-de-Escalada-de-Privilegios-Local-Dirty-Frag

GitHubdylanclaudio/reporte-de-escalada-de-privilegios-local-dirty-frag

Se realizó una evaluación de vulnerabilidades sobre una máquina virtual con Kali Linux utilizando un script detector para la vulnerabilidad Dirty…

binary-exploitationeducationexploitation+4
3 months ago
cve-2026-23398-poc preview

cve-2026-23398-poc

GitHubzpol/cve-2026-23398-poc

Reproducible lab for CVE-2026-23398, a Linux kernel NULL dereference in icmp_tag_validation() triggered by ICMP Fragmentation Needed packets, causing…

educationexploitationfuzzing+3
15 months ago
CVE-2026-4255 preview

CVE-2026-4255

GitHubard33/cve-2026-4255

Proof-of-concept for CVE-2026-4255, a DLL side-loading privilege escalation in Thermalright TR-VISION HOME, demonstrating PATH-based planting of…

binary-exploitationeducationexploitation+4
13 months ago
BadHost-CVE-2026-48710-Exploit preview

BadHost-CVE-2026-48710-Exploit

GitHubbhanunamikaze/badhost-cve-2026-48710-exploit

Detection scanner for CVE-2026-48710 - Host-header auth bypass in Starlette/FastAPI

api-security-testingauthentication-authorizationexploitation+4
13 months ago
CTF-Web-Exploitation preview

CTF-Web-Exploitation

GitHubarnavps/ctf-web-exploitation

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

container-securityctfeducation+8
15 months ago
firewall preview

firewall

GitHubsalo-404/firewall

🔒 Spring4Shell Firewall Defense — Cybersecurity Incident Simulation This project is part of a Cybersecurity Job Simulation I completed in August…

educationincident-responseintrusion-detection+3
111 months ago
CVE-2018-19629 preview

CVE-2018-19629

GitHubexcellencedev/cve-2018-19629

Hyland Perceptive Content Server - Denial of Service

container-securityeducationexploitation+2
8 months ago
Computer-Security-Equifax-2017 preview

Computer-Security-Equifax-2017

GitHubkaylertee/computer-security-equifax-2017

A hands-on simulation of CVE-2017-5638 (Apache Struts2 RCE), showcasing exploit reproduction, OS-level command execution, and mitigations such as…

code-analysiseducationexploitation+5
11 months ago
MSTeams---Vulnerability---Remediation preview

MSTeams---Vulnerability---Remediation

GitHubksgassama-lab/msteams---vulnerability---remediation

Automated remediation of CVE-2025-53783 (Teams RCE) using PowerShell

educationlabs-practicescripting-automation+2
7 months ago
Moniker-Link-CVE-2024-21413 preview

Moniker-Link-CVE-2024-21413

GitHubmqkgithub/moniker-link-cve-2024-21413

Step-by-step walkthrough of exploiting CVE-2024-21413 in Microsoft Outlook to bypass Protected View and leak NTLM credentials via Moniker Links,…

ctfeducationemail-security+5
1 year ago
cve-lfi-lab preview

cve-lfi-lab

GitHubthecyberfairy/cve-lfi-lab

A hands on lab investigating CVE-2025-39507 from a Tier 1 SOC analyst perspective. Includes log review in Microsoft Sentinel, IP analysis, real world…

ctfeducationincident-response+5
1 year ago
node-pdf-generator-ssrf preview

node-pdf-generator-ssrf

GitHubcs4239-u6/node-pdf-generator-ssrf

An example of CVE-2020-7740

educationexploitationlabs-practice+2
4 years ago
CVE-2019-16784-POC preview

CVE-2019-16784-POC

GitHubckrielle/cve-2019-16784-poc

A Proof of Concept exploit for the PyInstaller CVE-2019-16783

binary-exploitationeducationexploitation+4
2 years ago
CVE-2023-7028 preview

CVE-2023-7028

GitHubsoltanali0/cve-2023-7028

Implementation and exploitation of CVE-2023-7028 account takeover vulnerability related to GO-TO CVE weekly articles of the 11th week.

educationexploitationlabs-practice+3
2 years ago
CVE-2023-32243-Detection-and-Mitigation-in-WordPress preview

CVE-2023-32243-Detection-and-Mitigation-in-WordPress

GitHubdev0558/cve-2023-32243-detection-and-mitigation-in-wordpress

Educational lab demonstrating detection and mitigation of CVE-2023-32243 privilege escalation in WordPress Essential Addons for Elementor, using…

educationexploitationlabs-practice+6
1 year ago
Simulating-and-preventing-Zerologon-CVE-2020-1472-vulnerability-attacks. preview

Simulating-and-preventing-Zerologon-CVE-2020-1472-vulnerability-attacks.

GitHubpakwansk/simulating-and-preventing-zerologon-cve-2020-1472-vulnerability-attacks.

Simulation of the Zerologon (CVE-2020-1472) vulnerability attack in Active Directory on Windows Server 2016 and the use of the Trend Micro Deep…

educationexploitationlabs-practice+2
1 year ago
gha-lab-6c3094af9e preview

gha-lab-6c3094af9e

GitHubpvharmo2/gha-lab-6c3094af9e

Authorized security-research lab reproducing CVE-2026-27941 (pwn request in pull_request_target workflows) — snapshot of openlit/openlit

educationexploitationlabs-practice+1
2 days ago
Previous1…345…44Next