Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
45 results
Project-CVE-2026-50751 preview

Project-CVE-2026-50751

GitHube4zyy/project-cve-2026-50751

IKEv1 VPN scanners, attempts a Check Point authentication-bypass exploit, and includes internal network scanning and reverse-shell features.

exploitationnetwork-securitypayload-development+3
17 days ago
CVE-2024-6387_PoC preview

CVE-2024-6387_PoC

GitHubyassdev221608/cve-2024-6387_poc

Scans and exploits CVE-2024-6387 (regreSSHion) in OpenSSH servers. Features multi-threaded scanning, banner retrieval, grace time detection, and…

exploitationnetwork-securitypenetration-testing+2
171 year ago
CVE-2026-1459-POC preview

CVE-2026-1459-POC

GitHubtoouch67/cve-2026-1459-poc

POC for the CVE-2026-1459 which payload changes root SSH password.

exploitationnetwork-securitypenetration-testing+2
4 months ago
Tell-Me-Root preview

Tell-Me-Root

GitHubparameciumzhang/tell-me-root

Batch scanner for CVE-2026-24061 Telnet authentication bypass, with port liveness checks and automated payload attempts for authorized penetration…

authenticationexploitationnetwork-security+2
217 months ago
CVE-2026-39047 preview

CVE-2026-39047

GitHubazhariramadhan/cve-2026-39047

Printer exploitation framework for security testing via raw port 9100, featuring PCL payload delivery, DoS bombing, C2 QR codes, phishing QR codes,…

data-exfiltrationexploitationnetwork-security+4
5 months ago
CVE-2026-23009-DICOM-Network-Image-Injection-Without-Authentication preview

CVE-2026-23009-DICOM-Network-Image-Injection-Without-Authentication

GitHubgeorge0papasotiriou/cve-2026-23009-dicom-network-image-injection-without-authentication

Proof-of-concept for CVE-2026-23009 demonstrating unauthenticated DICOM image injection into vulnerable PACS servers using pynetdicom, with a…

authenticationexploitationnetwork-security+3
1 month ago
POC-CVE-2026-0300-exploit preview

POC-CVE-2026-0300-exploit

GitHubsam00/poc-cve-2026-0300-exploit

Palo Alto - CVE-2026-0300 exploit

binary-exploitationexploitationnetwork-security+6
1 month ago
CVE-2026-18649 preview

CVE-2026-18649

GitHub0xsemizzz/cve-2026-18649

Proof of concept for CVE-2026-18649, a remote denial of service vulnerability in GStreamer's H.264 RTP depayloader (rtph264depay).

exploitationnetwork-securitypayload-generation+1
41 month ago
NachoVPN preview

NachoVPN

GitHubamberwolfcyber/nachovpn

A delicious, but malicious SSL-VPN server 🌮

adversarial-attackexploitationnetwork-security+5
2696 months ago
knot-doq preview

knot-doq

GitHubvenglin/knot-doq

CVE-2026-66374: Knot Resolver 6.3.0 DNS-over-QUIC heap overflow (RCE)

binary-exploitationexploitationnetwork-security+3
1 month ago
FuxiOS preview

FuxiOS

GitHubl3onkers/fuxios

Modernized Python 3 exploit PoC for CVE-2016-4631 targeting iOS devices. Features network scanning, malformed IP/TCP payload generation, and packet…

educationexploitationios-security+3
11 year ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubl0n3m4n/cve-2024-6387

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

exploitationnetwork-securitypayload-development+6
1132 years ago
CVE-2018-10933-libSSH-Authentication-Bypass preview

CVE-2018-10933-libSSH-Authentication-Bypass

GitHublikekabin/cve-2018-10933-libssh-authentication-bypass

Exploit tool for CVE-2018-10933 libSSH authentication bypass, enabling remote shell access without credentials using Python scripts and optional fake…

authenticationexploitationnetwork-security+3
17 years ago
CVE-2024-38063 preview

CVE-2024-38063

GitHubpatchpoint/cve-2024-38063

Proof-of-concept exploit for CVE-2024-38063, a Windows TCP/IP remote code execution vulnerability triggered by sending two crafted IPv6 packets with…

binary-exploitationexploitationnetwork-security+3
202 years ago
watchTowr-vs-WatchGuard-CVE-2025-9242 preview

watchTowr-vs-WatchGuard-CVE-2025-9242

GitHubwatchtowrlabs/watchtowr-vs-watchguard-cve-2025-9242

Python-based detection artifact generator and exploit for WatchGuard Fireware OS CVE-2025-9242, an unauthenticated IKEv2 out-of-bounds write…

binary-exploitationexploitationnetwork-security+3
136 months ago
Microsoft-Windows-SMBGhost-Vulnerability-Checker---CVE-2020-0796---SMBv3-RCE preview

Microsoft-Windows-SMBGhost-Vulnerability-Checker---CVE-2020-0796---SMBv3-RCE

GitHubnyambiblaise/microsoft-windows-smbghost-vulnerability-checker---cve-2020-0796---smbv3-rce

SMBv3 vulnerability scanner for CVE-2020-0796 (SMBGhost) that checks SMB dialect 3.1.1 and compression capability via negotiate requests, with fixed…

exploitationnetwork-securitypenetration-testing+2
8 months ago
eero-zero-length-ipv6-options-header-dos preview

eero-zero-length-ipv6-options-header-dos

GitHubnomis/eero-zero-length-ipv6-options-header-dos

eeroOS Ethernet Interface Denial of Service Vulnerability (CVE-2023-5324)

exploitationfuzzinghardware-iot-security+3
12 years ago
CVE-2024-38063_PoC preview

CVE-2024-38063_PoC

GitHubkernelkraze/cve-2024-38063_poc

This is a C language program designed to test the Windows TCP/IP Remote Code Execution Vulnerability (CVE-2024-38063). It sends specially crafted…

exploitationnetwork-securitypayload-generation+3
92 years ago
Previous123Next