Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
27 results
CVE-2026-30252 preview

CVE-2026-30252

GitHubvenablee/cve-2026-30252

The ZenShare Suite application is vulnerable by a Reflected Cross-Site Scripting (XSS) vulnerability, affecting web application login and recovery…

educationexploitationpapers-research+2
3 days ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubtfawnies/cve-2026-31431

Proof-of-concept exploit for CVE-2026-31431, a Linux kernel vulnerability affecting multiple distributions, with tested versions and a technical…

binary-exploitationexploitationpapers-research+1
4 months ago
copy-fail-CVE-2026-31431 preview

copy-fail-CVE-2026-31431

GitHubmmionf/copy-fail-cve-2026-31431

Proof-of-concept exploit for CVE-2026-31431, a Linux kernel vulnerability affecting multiple distributions, with a technical writeup and tested…

binary-exploitationexploitationpapers-research+1
4 months ago
copy-fail-CVE-2026-31431 preview

copy-fail-CVE-2026-31431

GitHubjneuhauser/copy-fail-cve-2026-31431

Technical writeup and proof-of-concept for CVE-2026-31431, a Linux kernel vulnerability affecting multiple distributions, with tested versions and…

educationexploitationpapers-research+1
4 months ago
HiTMS_steganography preview

HiTMS_steganography

GitHubryehr/hitms_steganography

Embed multiple secret messages in LLM chat token choices using arithmetic/Discop steganographic coders, with bit-exact decoding and steganalysis…

ai-securitycryptographydata-exfiltration+4
31 month ago
slides preview

slides

GitHub0x3c3e/slides

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

dynamic-code-analysiseducationpapers-research+2
503 years ago
vulns preview

vulns

GitHubhnsecurity/vulns

HN Security's advisories.

curated-resourceseducationpapers-research+2
2210 months ago
WSO2-2020-0731 preview

WSO2-2020-0731

GitHubmbadanoiu/wso2-2020-0731

WSO2-2020-0731: XXE and XSS vulnerabilities in WSO2 Carbon

educationexploitationpapers-research+3
2 years ago
AWS-Tough-Library-Multiple-CVEs preview

AWS-Tough-Library-Multiple-CVEs

GitHubmurataydemir/aws-tough-library-multiple-cves

Issue with tough, versions prior to 0.20.0 (Multiple CVEs)

educationpapers-researchsupply-chain-security+1
11 year ago
marshalsec preview

marshalsec

GitHubmbechler/marshalsec

Java deserialization vulnerability exploitation tool with payload generators for multiple marshallers (Jackson, XStream, SnakeYAML) and JNDI…

educationexploitationpapers-research+5
3.7k1 year ago
DVDR_LLM preview

DVDR_LLM

GitHuberroristotle/dvdr_llm

Ensemble framework for software vulnerability detection and repair using multiple large language models, with consensus analysis and evaluation tools…

ai-securitycode-analysiseducation+3
38 months ago
CVE-2026-0847 preview

CVE-2026-0847

GitHubhyperps/cve-2026-0847

A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in multiple CorpusReader classes, including…

educationexploitationpapers-research+3
5 months ago
security-advisories preview

security-advisories

GitHubgregdurys/security-advisories

Curated collection of public security advisories detailing CVEs and CWEs across multiple products, intended for defensive research and educational…

curated-resourceseducationexploitation+3
1 month ago
blogpost_cve-2018-19987-analysis preview

blogpost_cve-2018-19987-analysis

GitHubnahueldsanchez/blogpost_cve-2018-19987-analysis

This repo has a blog post about my analysis for CVE-2018-19987 an authenticated OS command injection affecting multiple D-Link routers

educationexploitationfirmware-analysis+4
25 years ago
connectwise-automate-AiTM-rce preview

connectwise-automate-AiTM-rce

GitHubsynap5e/connectwise-automate-aitm-rce

Writeup and code for CVE-2025-11492, CVE-2025-11493 - RCE in ConnctWise Automate RMM via Adversary-in-the-Middle

command-and-controleducationexploitation+8
19 months ago
CVE-2025-45407 preview

CVE-2025-45407

GitHubyallasec/cve-2025-45407

CVE-2025-45407: Multiple XSS Vulnerabilities in DiscoveryNG v6.0.8 Hotfix 2 Discovered by: YallaSec Security Research Team CVE ID: CVE-2025-45407…

educationpapers-researchvulnerability-analysis+2
1 year ago
CVE-2023-36884-MS-Office-HTML-RCE preview

CVE-2023-36884-MS-Office-HTML-RCE

GitHubjakabakos/cve-2023-36884-ms-office-html-rce

MS Office and Windows HTML RCE (CVE-2023-36884) - PoC and exploit

educationexploitationpapers-research+3
412 years ago
react2shell preview

react2shell

GitHubfreeqaz/react2shell

RCE exploit toolkit for CVE-2025-55182 and CVE-2025-66478 in React Server Components. Includes multiple exploit variants, detection scripts, a…

code-analysisdynamic-analysis-sandboxingeducation+6
689 months ago
Previous12Next