Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2385 results
digital-forensics-lab preview

digital-forensics-lab

GitHubfrankwxu/digital-forensics-lab

Free hands-on digital forensics labs for students and faculty

ai-securityctfdigital-forensics+9
3.0k
6 days ago
CVE-2026-4480-PoC preview

CVE-2026-4480-PoC

GitHubthecybergeek/cve-2026-4480-poc

Proof-of-concept exploit for CVE-2026-4480, an unauthenticated remote command execution in Samba's print subsystem via %J injection. Includes reverse…

ctfeducationexploitation+3
213 months ago
CrushFTP10-Docker-CVE-2024-4040 preview

CrushFTP10-Docker-CVE-2024-4040

GitHubjuanorts/crushftp10-docker-cve-2024-4040

A Dockerized setup for running a vulnerable CrushFTP 10 server instance (CVE-2024-4040).

container-securityeducationexploitation+3
10 months ago
BestEdrOfTheMarket preview

BestEdrOfTheMarket

GitHubxacone/bestedrofthemarket

Open-source Windows kernel-level EDR lab for understanding and testing detection methods against process injection, credential dumping, and other…

defensive-toolseducationlabs-practice+1
1.6k2 months ago
AI-Vulnerabilities-Playground preview

AI-Vulnerabilities-Playground

GitHubowasp/ai-vulnerabilities-playground

Hands-on AI security lab platform with 50+ scenarios across prompt injection, agentic system exploitation, model manipulation, and MCP trust boundary…

adversarial-attackai-securityctf+4
174 months ago
CVE-2025-32463-PoC preview

CVE-2025-32463-PoC

GitHubfreedurok/cve-2025-32463-poc

Proof of Concept for CVE-2025-32463 Local privilege escalation exploit targeting sudo -R on vulnerable Linux systems. For educational and authorized…

educationexploitationlabs-practice+3
51 year ago
Penetration-Testing-Assessment-23-04-2026 preview

Penetration-Testing-Assessment-23-04-2026

GitHubadmin2099/penetration-testing-assessment-23-04-2026

Penetration testing assessment of a vulnerable IIS 6.0 WebDAV server, demonstrating reconnaissance, enumeration, exploitation (CVE-2017-7269), and…

educationexploitationexploit-frameworks+9
2 months ago
cve-2026-31431 preview

cve-2026-31431

GitHubvasyapokemon/cve-2026-31431

Research and detection toolkit for Linux kernel LPE CVE-2026-31431, including exploit analysis, YARA rules, auditd/Falco detection, patching guide,…

curated-resourcesdigital-forensicseducation+8
4 months ago
CVE-2022-0185-Analysis-and-Exploit preview

CVE-2022-0185-Analysis-and-Exploit

GitHubsandesh9978/cve-2022-0185-analysis-and-exploit

Research and proof-of-concept for CVE-2022-0185 Linux kernel heap overflow vulnerability.

binary-exploitationeducationexploitation+4
5 months ago
ZygoteExploitDemo preview

ZygoteExploitDemo

GitHubgitamans/zygoteexploitdemo

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

android-securitybinary-exploitationeducation+7
26 months ago
CVE-2022-0492 preview

CVE-2022-0492

GitHubchenaotian/cve-2022-0492

Detailed technical analysis and working exploit for CVE-2022-0492 Linux kernel container escape via cgroup release_agent, with step-by-step lab setup…

container-escapeeducationexploitation+3
344 years ago
DEMO-Proof-of-Concept-Temporal-Memory-Inconsistency-in-cldflt.sys-CVE-2025-62221 preview

DEMO-Proof-of-Concept-Temporal-Memory-Inconsistency-in-cldflt.sys-CVE-2025-62221

GitHubteodor1231241/demo-proof-of-concept-temporal-memory-inconsistency-in-cldflt.sys-cve-2025-62221

Proof-of-concept demonstrating a use-after-free in cldflt.sys (CVE-2025-62221) that enables local privilege escalation to SYSTEM via kernel pool…

binary-exploitationeducationexploitation+3
27 months ago
CVE-2017-5638 preview

CVE-2017-5638

GitHubdungsocool/cve-2017-5638

Hands-on lab demonstrating Apache Struts2 OGNL injection (CVE-2017-5638) with step-by-step system analysis, exploitation, sandbox bypass, and…

educationexploitationlabs-practice+3
3 months ago
SUDO-privilege-escalation preview

SUDO-privilege-escalation

GitHublaxmiyamkolu/sudo-privilege-escalation

Educational simulation of CVE-2023-22809 Sudo privilege escalation vulnerability with automated Bash exploit script, lab manual, and mitigation…

educationexploitationlabs-practice+3
2 years ago
CVE-2019-10149 preview

CVE-2019-10149

GitHubdarsigovrustam/cve-2019-10149

Instructions for installing a vulnerable version of Exim and its expluatation

educationemail-securityexploitation+3
56 years ago
Dirty-Frag-CVE-2026-43284 preview

Dirty-Frag-CVE-2026-43284

GitHubkuniyal08/dirty-frag-cve-2026-43284

A report on Dirty Frag, which is a Linux Local Privilege Escalation (LPE) vulnerability chain that allows an unprivileged user to gain root access

educationexploitationforensics+5
119 days ago
cve-testing preview

cve-testing

GitHubkuankuanqaq/cve-testing

Reproduce CVE-2022-32250 and CVE-2025-21756 by tampering with modprobe_path and hijacking control flow, respectively.

binary-exploitationeducationexploitation+2
1 year ago
CVE-2012-2982 preview

CVE-2012-2982

GitHubcpyre/cve-2012-2982

Practice POC scripting in Tryhackme’s intro poc scripting room (For Linux)

educationexploitationlabs-practice+3
2 years ago
Previous1…456…100Next