Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
39 results
AwesomeXSS preview

AwesomeXSS

GitHubs0md3v/awesomexss

Awesome XSS stuff

ctfcurated-resourceseducation+6
5.1k1 year ago
athena preview

athena

GitHubathena-os/athena

Athena OS is a Arch/Nix-based distro focused on Cybersecurity. Learn, practice and enjoy with any hacking tool!

educationlabs-practicelearning-paths-courses+3
1.3k1 day ago
Burp-Suite-Certified-Practitioner-Exam-Study preview

Burp-Suite-Certified-Practitioner-Exam-Study

GitHubbotesjuan/burp-suite-certified-practitioner-exam-study

Practical study notes and walkthroughs for PortSwigger Academy labs, covering web vulnerabilities, payloads, enumeration, and BSCP exam strategies.

curated-resourceseducationinformation-gathering+7
1.5k5 days ago
RemoteTLSCallbackInjection preview

RemoteTLSCallbackInjection

GitHubmaldev-academy/remotetlscallbackinjection

Utilizing TLS callbacks to execute a payload without spawning any threads in a remote process

binary-exploitationeducationlabs-practice+1
2912 years ago
CVE-2018-12533 preview

CVE-2018-12533

GitHubllamaonsecurity/cve-2018-12533

RF-14310 / CVE-2018-12533 - Payload generator

exploitationlabs-practicepapers-research+3
95 years ago
Embedded-Backdoor-Connection preview

Embedded-Backdoor-Connection

GitHubomarothmann/embedded-backdoor-connection

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

command-and-controleducationexploitation+5
84 years ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubfkshield/cve-2025-5548

End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

binary-exploitationdynamic-analysis-sandboxingeducation+9
1 month ago
POC-GeoLeak-CVE-2026-52715 preview

POC-GeoLeak-CVE-2026-52715

GitHub686f6c61/poc-geoleak-cve-2026-52715

PoC funcional de CVE-2026-52715 (GeoLeak): SQLi no autenticada en GEO my WordPress <= 4.5.5 via swlatlng/nelatlng. Laboratorio Docker + exploit…

educationexploitationlabs-practice+4
9 days ago
CVE-2025-2502 preview

CVE-2025-2502

GitHubihk-one/cve-2025-2502

Step-by-step demonstration of a local privilege escalation vulnerability in Lenovo PC Manager, exploiting weak file permissions on a system service…

educationexploitationlabs-practice+2
511 months ago
Code-Roulette preview

Code-Roulette

GitHubsorcerio/code-roulette

Code Roulette is a terminal interface based (TUI), online multiplayer, Russian Roulette game where the loser executes the winner's Python payload…

command-and-controlctfeducation+3
76 months ago
CVE-2026-33017 preview

CVE-2026-33017

GitHublxxexxbxx/cve-2026-33017

PoC exploit for an unauthenticated RCE in Langflow <=1.8.1, including source-level root cause analysis, AST-aware reverse shell payload, Docker lab,…

educationexploitationlabs-practice+3
19 days ago
CVE-2025-24813 preview

CVE-2025-24813

GitHubloufa0/cve-2025-24813

right payload for java CVE

ctfeducationexploitation+3
2 months ago
CVE-2025-1913-PoC preview

CVE-2025-1913-PoC

GitHubs0haib518-ksa/cve-2025-1913-poc

A PoC demonstrating CVE-2025-1913, showing how the plugin’s unsafe unserialize handling can lead to high-impact behavior in controlled environments.…

educationexploitationlabs-practice+3
27 months ago
Offensive-lab-2 preview

Offensive-lab-2

GitHubmafiosohack/offensive-lab-2

Penetration test walkthrough on a vulnerable Ubuntu VM. Exploited the ProFTPD 1.3.3c backdoor (CVE-2010-4221) to gain root access and capture the…

ctfeducationexploitation+8
8 months ago
dirtycow-lab preview

dirtycow-lab

GitHubmohammadamin382/dirtycow-lab

Educational PoC for Dirty COW (CVE-2016-5195) with logging, ptrace fallback, and binary payload support.

binary-exploitationeducationexploitation+5
1 year ago
CVE-2026-16723 preview

CVE-2026-16723

GitHubsuperman-l/cve-2026-16723

Reproduces fastjson 1.2.83 @JSONType RCE with a vulnerable Spring Boot target and ASM-based payload generator using HTTP or file protocol jar chains.

educationexploitationlabs-practice+4
5 days ago
CVE-2017-12611_Exploit preview

CVE-2017-12611_Exploit

GitHubzeynepsilao/cve-2017-12611_exploit

RCE project

exploitationlabs-practicepayload-generation+3
11 months ago
CVE-2026-12191 preview

CVE-2026-12191

GitHubhakaioffsec/cve-2026-12191

PoC for CVE-2026-12191

binary-exploitationcode-analysiseducation+3
51 month ago
Previous123Next