Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
784 results
CVE-2021-44228---Log4Shell-Analysis preview

CVE-2021-44228---Log4Shell-Analysis

GitHubpcmkuit/cve-2021-44228---log4shell-analysis

Technical deep dive into Apache Log4j2 JNDI injection vulnerability. Features static code analysis, patch comparison, attack vectors (LDAP/RMI/DNS),…

code-analysiseducationexploitation+3
9 months ago
polkit-CVE-2021-3560_writeup preview

polkit-CVE-2021-3560_writeup

GitHubrealatharva15/polkit-cve-2021-3560_writeup

beginner friendly write-up for the TryHackMe easy level module- polkit:CVE-2021-3560

binary-exploitationctfeducation+4
7 months ago
CVE-2021-44228-poc preview

CVE-2021-44228-poc

GitHubkadantte/cve-2021-44228-poc

log4shell sample application (CVE-2021-44228)

educationexploitationlabs-practice+3
4 years ago
cve-2016-10033 preview

cve-2016-10033

GitHubcved-sources/cve-2016-10033

Docker container for CVE-2016-10033 (PHPMailer remote code execution) used for practicing exploitation in a controlled lab environment.

educationexploitationlabs-practice+2
5 years ago
CVE-2023-32571-POC preview

CVE-2023-32571-POC

GitHubvert16x/cve-2023-32571-poc

Proof-of-concept exploit for CVE-2023-32571 demonstrating Dynamic Linq injection to achieve remote code execution, with a Docker-based lab…

code-analysiseducationexploitation+4
2 years ago
log4j-shell-poc preview

log4j-shell-poc

GitHubocastel/log4j-shell-poc

A Proof-Of-Concept for the CVE-2021-44228 vulnerability.

educationexploitationlabs-practice+4
3 years ago
cve-2019-9978 preview

cve-2019-9978

GitHubcved-sources/cve-2019-9978

Docker container providing a vulnerable environment for CVE-2019-9978 (WordPress Social Networks Auto Poster RCE) for security training and…

container-securityeducationexploitation+3
5 years ago
SMB-PenTest-Exploiting-CVE-2007-2447-on-Metasploitable-2 preview

SMB-PenTest-Exploiting-CVE-2007-2447-on-Metasploitable-2

GitHubdevinliggins14/smb-pentest-exploiting-cve-2007-2447-on-metasploitable-2

Step-by-step penetration testing lab exploiting Samba CVE-2007-2447 on Metasploitable 2 using Metasploit, demonstrating root compromise, credential…

command-and-controldata-exfiltrationeducation+6
1 year ago
day01-sessionreaper-lab preview

day01-sessionreaper-lab

GitHubamalpvatayam67/day01-sessionreaper-lab

This is a tiny lab that simulates the core idea reported for CVE-2025-54236 (“SessionReaper”)

ctfeducationlabs-practice+2
0 years ago
cve-2016-8869 preview

cve-2016-8869

GitHubcved-sources/cve-2016-8869

Dockerized vulnerable environment for CVE-2016-8869 (Joomla privilege escalation) used for security training and exploitation practice.

container-securityeducationexploitation+3
5 years ago
log4shell-homework9 preview

log4shell-homework9

GitHubserpilrivas/log4shell-homework9

Log4Shell (CVE-2021-44228) exploit demo for SEAS 8405. Includes a vulnerable Spring Boot app, fake LDAP server, Docker setup, MITRE mapping, incident…

educationexploitationincident-response+3
1 year ago
cve-2025-29927 preview

cve-2025-29927

GitHubjeymo092/cve-2025-29927

Proof-of-concept exploit for CVE-2025-29927, a Next.js middleware bypass vulnerability. Includes version-specific payloads and a Docker-based lab for…

educationexploitationlabs-practice+3
1 year ago
cve-2016-7434 preview

cve-2016-7434

GitHubcved-sources/cve-2016-7434

cve-2016-7434

container-securityeducationexploitation+2
5 years ago
cve-2018-3811 preview

cve-2018-3811

GitHubcved-sources/cve-2018-3811

Docker container providing a vulnerable environment for CVE-2018-3811, designed for security testing and exploit practice within the Cved vulnerable…

container-securityeducationexploitation+3
5 years ago
cve-2017-4971 preview

cve-2017-4971

GitHubcved-sources/cve-2017-4971

Docker-based vulnerable environment for CVE-2017-4971 (Spring WebFlow RCE) to practice exploitation and security testing in a controlled lab setup.

container-securityeducationexploitation+3
5 years ago
cve-2010-0426 preview

cve-2010-0426

GitHubcved-sources/cve-2010-0426

Docker container with a pre-configured CVE-2010-0426 environment for practicing privilege escalation exploitation in a controlled lab setting.

container-securityeducationexploitation+3
5 years ago
cve-2018-16509 preview

cve-2018-16509

GitHubcved-sources/cve-2018-16509

cve-2018-16509

container-securityeducationexploitation+2
5 years ago
cve-2015-1427 preview

cve-2015-1427

GitHubcved-sources/cve-2015-1427

Docker container with a pre-configured vulnerable Elasticsearch instance for practicing CVE-2015-1427 exploitation in a safe lab environment.

container-securityeducationexploitation+2
5 years ago
Previous1…394041…44Next