Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
29 results
CVE-2022-0492-Docker-Breakout-Checker-and-PoC preview

CVE-2022-0492-Docker-Breakout-Checker-and-PoC

GitHubt1erno/cve-2022-0492-docker-breakout-checker-and-poc

Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)

cloud-securitycontainer-escapecontainer-security+6
8
3 years ago
CVE-2021-29447 preview

CVE-2021-29447

GitHubdanilo1992-sys/cve-2021-29447

Exploit for CVE-2021-29447, an XXE vulnerability in WordPress 5.7.0 and earlier. Generates malicious WAV payloads to read arbitrary server files via…

educationexploitationlabs-practice+3
5 months ago
CVE-2021-34824 preview

CVE-2021-34824

GitHubrsalmond/cve-2021-34824

reproducing an old istio bug

cloud-securityeducationlabs-practice+2
3 years ago
CyberResponders preview

CyberResponders

GitHubunclesocks/cyberresponders

CyberResponders is a terminal-based cybersecurity training game that enables players to respond to different cyber incident scenarios. Here, they…

defensive-toolseducationincident-response+2
47 months ago
redis_exploit preview

redis_exploit

GitHubraminfp/redis_exploit

CVE-2025-49844 (RediShell)

binary-exploitationdatabase-securityeducation+3
34410 months ago
DEFCON-CICD-pipelines-workshop preview

DEFCON-CICD-pipelines-workshop

GitHubwavestone-cdt/defcon-cicd-pipelines-workshop

Hands-on CI/CD pipeline security workshop with Terraform lab, AWS exploitation, Kubernetes escape, and artifact backdooring exercises for offensive…

cloud-securitycontainer-escapecontainer-security+8
933 years ago
react2shell-lab preview

react2shell-lab

GitHubalsaut1/react2shell-lab

CVE-2025-55182 React2Shell PoC lab

code-analysisctfeducation+7
78 months ago
redis-CVE-2025-49844 preview

redis-CVE-2025-49844

GitHublastvocher/redis-cve-2025-49844

Educational lab environment with a proof-of-concept exploit for CVE-2025-49844 (RediShell), a critical use-after-free in Redis Lua interpreter,…

educationexploitationlabs-practice+2
1410 months ago
CVE-2025-49844 preview

CVE-2025-49844

GitHubpedrorichil/cve-2025-49844

Educational lab environment demonstrating CVE-2025-49844 (RediShell) in Redis. Includes Docker setup, exploit PoC script, and security…

educationexploitationlabs-practice+3
610 months ago
stego-toolkit preview

stego-toolkit

GitHubdominicbreuker/stego-toolkit

Collection of steganography tools - helps with CTF challenges

ctfeducationforensics+2
2.7k6 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubblueteamsteve/cve-2021-41773

Vulnerable docker images for CVE-2021-41773

container-securityeducationexploitation+3
234 years ago
CVE_Demo preview

CVE_Demo

GitHubnavaidzansari/cve_demo

Curated collection of CVE demonstrations with fix recommendations for hands-on vulnerability analysis and educational exploitation practice.

curated-resourceseducationexploitation+2
53 years ago
CVE-2025-60012-POC preview

CVE-2025-60012-POC

GitHubsid6224/cve-2025-60012-poc

A POC for the Apache Livy Unauthorized File Access Vunerability

cloud-securityeducationexploitation+3
5 months ago
CVE-2025-66249-POC preview

CVE-2025-66249-POC

GitHubsid6224/cve-2025-66249-poc

A POC for Apache Livy Path Traversal Whitelist Bypass Vulnerability

educationexploitationlabs-practice+3
5 months ago
CVE-2021-41773S preview

CVE-2021-41773S

GitHubmightysai1997/cve-2021-41773s

Docker-based vulnerable lab for CVE-2021-41773 Apache path traversal, providing PoC configurations for file read and remote code execution in a…

container-securityeducationexploitation+3
18 months ago
HTB-Pterodactyl-RCE-CVE-2025-49132 preview

HTB-Pterodactyl-RCE-CVE-2025-49132

GitHubsymphony2colour/htb-pterodactyl-rce-cve-2025-49132

This repo contains RCE exploit for Pterodactyl htb machine

ctfeducationexploitation+5
16 months ago
IT19115276 preview

IT19115276

GitHubkiruthikan99/it19115276

SNP Assignment 1 Report - Linux box exploitation ( Vulnerability CVE-2014-0038)

educationexploitationlabs-practice+2
6 years ago
CVE-2025-1094 preview

CVE-2025-1094

GitHubaninfosec/cve-2025-1094

It is an input sanitization flaw caused by an encoding mismatch, allowing crafted input to bypass filters. If a server is vulnerable, an attacker can…

database-securityeducationexploitation+5
11 year ago
Previous12Next