Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
205 results
CVE-2023-36643 preview

CVE-2023-36643

GitHubcaffeinated-labs/cve-2023-36643

Proof-of-concept for CVE-2023-36643: an incorrect access control vulnerability in ITB-GmbH TradePro v9.5 that allows remote attackers to enumerate…

information-gatheringmisconfigurationpenetration-testing+2
2 years ago
CVE-2025-49132 preview

CVE-2025-49132

GitHubwebsafety-2tina/cve-2025-49132

CVE-2025-49132

exploitationinformation-gatheringmisconfiguration+3
1 year ago
CVE-2025-54554 preview

CVE-2025-54554

GitHubaman-parmar/cve-2025-54554

CVE-2025-54554 – Unauthenticated Access in tiaudit REST API leading to Sensitive Information Disclosure

api-securityinformation-gatheringmisconfiguration+2
1 year ago
CVE-2022-1442 preview

CVE-2022-1442

GitHubrandomrobbiebf/cve-2022-1442

WordPress Plugin Metform <= 2.1.3 - Improper Access Control Allowing Unauthenticated Sensitive Information Disclosure

exploitationinformation-gatheringmisconfiguration+3
3 years ago
cgi-printenv preview

cgi-printenv

GitHubcappricio-securities/cgi-printenv

CGI Print ENV leaking

information-gatheringmisconfigurationpenetration-testing+3
2 years ago
CVE-2023-39144 preview

CVE-2023-39144

GitHubcduram/cve-2023-39144

CVE-2023-39144 disclosure: cleartext password exposure in Element55 Maketime appliance admin pages, enabling privilege escalation via…

exploitationinformation-gatheringmisconfiguration+3
3 years ago
CVE-2021-42913 preview

CVE-2021-42913

GitHubkernel-cyber/cve-2021-42913

Samsung Printer SCX-6X55X Improper Access Control

exploitationinformation-gatheringmisconfiguration+2
4 years ago
CVE-2023-33477 preview

CVE-2023-33477

GitHubskr11lex/cve-2023-33477

Exploit for CVE-2023-33477, an unauthorized configuration file download vulnerability in Harmonic NSG 9000-6G modulator, allowing remote attackers to…

exploitationinformation-gatheringmisconfiguration+2
3 years ago
CVE-2019-19653 preview

CVE-2019-19653

GitHubjra89/cve-2019-19653

Chevereto information disclosure <= 3.13.5 Core

exploitationinformation-gatheringmisconfiguration+2
6 years ago
redis-checker preview

redis-checker

GitHubrandomrobbiebf/redis-checker

Checks for exposed Redis servers

database-securityinformation-gatheringmisconfiguration+3
3 years ago
CVE-2023-49979 preview

CVE-2023-49979

GitHubgeraldoalcantara/cve-2023-49979

Best Student Management System v1.0 - Incorrect Access Control - Directory Listing

information-gatheringmisconfigurationpenetration-testing+2
2 years ago
xpl-ModernWMS-CVE-2024-57698 preview

xpl-ModernWMS-CVE-2024-57698

GitHubrodolfomarianocy/xpl-modernwms-cve-2024-57698

It is possible to view the MD5 hash of the admin password and other attributes without authentication, even after initial setup and password change.…

exploitationinformation-gatheringmisconfiguration+3
1 year ago
CVE-2020-25747 preview

CVE-2020-25747

GitHubjet-pentest/cve-2020-25747

Proof-of-concept exploit for CVE-2020-25747 demonstrating unauthenticated remote access to RTSP and ONVIF services on Rubetek RV-3406/3409/3411…

exploitationinformation-gatheringiot-security+2
6 years ago
CVE-2024-12535 preview

CVE-2024-12535

GitHubrandomrobbiebf/cve-2024-12535

Host PHP Info <= 1.0.4 - Missing Authorization to Unauthenticated Sensitive Information Disclosure

information-gatheringmisconfigurationvulnerability-analysis+1
1 year ago
CVE-2024-23733 preview

CVE-2024-23733

GitHubekcrsm/cve-2024-23733

Proof-of-concept exploit for CVE-2024-23733: Incorrect Access Control in Software AG webMethods Integration Server 10.15.0 allowing remote attackers…

information-gatheringmisconfigurationpenetration-testing+2
1 year ago
CVE-2023-4800 preview

CVE-2023-4800

GitHubb0marek/cve-2023-4800

Repository for CVE-2023-4800 vulnerability.

authentication-authorizationinformation-gatheringmisconfiguration+2
3 years ago
CVE-2024-1302---Badgermeter-moni-tool-Sensitive-information-exposure preview

CVE-2024-1302---Badgermeter-moni-tool-Sensitive-information-exposure

GitHubguillermogm4/cve-2024-1302---badgermeter-moni-tool-sensitive-information-exposure

Proof-of-concept exploit for CVE-2024-1302 demonstrating unauthenticated log file download in Badgermeter moni:tool, exposing sensitive information…

exploitationinformation-gatheringmisconfiguration+3
2 years ago
CVE-2024-11396 preview

CVE-2024-11396

GitHubrandomrobbiebf/cve-2024-11396

Event monster <= 1.4.3 - Information Exposure Via Visitors List Export

data-exfiltrationinformation-gatheringmisconfiguration+2
1 year ago
Previous1…9101112Next