Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
86 results
Cisco-Unified-Communications-Manager-Server-Side-Forgery-Request-Vulnerability-CVE-2026-20230 preview

Cisco-Unified-Communications-Manager-Server-Side-Forgery-Request-Vulnerability-CVE-2026-20230

GitHubw5m1n9/cisco-unified-communications-manager-server-side-forgery-request-vulnerability-cve-2026-20230

Analyzes CVE-2026-20230 SSRF to arbitrary file write and RCE in Cisco Unified Communications Manager, providing PoC derivation, detection logic, and…

educationexploitationpapers-research+4
1
2 months ago
CVE-2025-56399 preview

CVE-2025-56399

GitHubtheethat-thamwasin/cve-2025-56399

An authenticated Remote Code Execution (RCE) vulnerability in laravel-file-manager v3.3.1 and below allows attackers with access to the file manager…

educationexploitationpapers-research+3
39 months ago
CVE-2023-41717 preview

CVE-2023-41717

GitHubfederella/cve-2023-41717

Detailed write-up and proof of concept for CVE-2023-41717, demonstrating bypass of Zscaler proxy file download/upload restrictions via HTTP Range…

educationexploitationpapers-research+2
123 years ago
CVE-2026-34070 preview

CVE-2026-34070

GitHubrickidevs/cve-2026-34070

I Found a Zero-Day Vulnerability in langchain — Here’s How It Went

educationexploitationpapers-research+2
5 months ago
CVE-2022-44268-MagiLeak preview

CVE-2022-44268-MagiLeak

GitHubadhikara13/cve-2022-44268-magileak

Tools for working with ImageMagick to handle arbitrary file read vulnerabilities. Generate, read, and apply profile information to PNG files using a…

educationexploitationpapers-research+2
23 years ago
CVE-2025-63830 preview

CVE-2025-63830

GitHubshubham03007/cve-2025-63830

Identified a Stored Cross-Site Scripting (XSS) vulnerability in CKFinder v1.4.3 via malicious SVG file upload leading to script execution upon file…

educationpapers-researchvulnerability-analysis+2
9 months ago
CVE-2025-4517-PoC preview

CVE-2025-4517-PoC

GitHubanimeprincess420/cve-2025-4517-poc

CVE‑2025‑4517 Proof‑of‑Concept Script

binary-exploitationeducationexploitation+2
26 months ago
CVE-2023-46442_POC preview

CVE-2023-46442_POC

GitHubjacklosingheart/cve-2023-46442_poc

POC for CVE-2023-46442 Denial of Service vulnerability found within Soot

binary-analysiseducationexploitation+2
1 year ago
CVE-2026-23499 preview

CVE-2026-23499

GitHublukasz-rybak/cve-2026-23499

CVE-2026-23499 - Saleor vulnerable to stored XSS via Unrestricted File Upload

educationpapers-researchvulnerability-analysis+2
4 months ago
CVE-2024-50803-Redaxo preview

CVE-2024-50803-Redaxo

GitHubpraison001/cve-2024-50803-redaxo

Stored XSS in mediapool feature of Redaxo

educationpapers-researchvulnerability-analysis+2
1 year ago
CVE-2026-0847 preview

CVE-2026-0847

GitHubhyperps/cve-2026-0847

A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in multiple CorpusReader classes, including…

educationexploitationpapers-research+3
5 months ago
CVE-2023-36250 preview

CVE-2023-36250

GitHubbrunoteixeira1996/cve-2023-36250

Proof-of-concept for CSV injection in GNOME Time Tracker 3.0.2, demonstrating arbitrary code execution via crafted .tsv files and formula injection.

educationexploitationpapers-research+2
32 years ago
Detection-Tool-Kit-for-CVE-2026-31431 preview

Detection-Tool-Kit-for-CVE-2026-31431

GitHubvishvacyber/detection-tool-kit-for-cve-2026-31431

Layered detection toolkit for CVE-2026-31431 (Copy Fail) Linux kernel LPE. Provides eBPF, auditd, Sigma rules, page-cache diff, and IOC guides for…

educationforensicsincident-response+4
3 months ago
CVE-2026-30691 preview

CVE-2026-30691

GitHubwalidriouah/cve-2026-30691

CVE-2026-30691: Stored Cross-Site Scripting (XSS) in @cyntler/react-doc-viewer

educationpapers-researchvulnerability-analysis+2
3 months ago
CVE-2026-30480 preview

CVE-2026-30480

GitHubparlakbarann/cve-2026-30480

Proof-of-concept for CVE-2026-30480, a Local File Inclusion vulnerability in LibreNMS NFSen module, demonstrating path traversal to include arbitrary…

educationexploitationpapers-research+2
4 months ago
CVE-2021-22204 preview

CVE-2021-22204

GitHubcc3305/cve-2021-22204

Exploit script for CVE-2021-22204, an RCE vulnerability in ExifTool via malicious DjVu files, targeting versions 7.44 to 12.23.

educationexploitationpapers-research+2
2 years ago
CVE-2026-6227 preview

CVE-2026-6227

GitHubpixel-defaultbr/cve-2026-6227

Educational proof-of-concept for CVE-2026-6227, an authenticated Local File Inclusion in BackWPup WordPress plugin, including root cause analysis,…

educationexploitationpapers-research+2
4 months ago
codecrypt preview

codecrypt

GitHubexaexa/codecrypt

Post-quantum cryptography tool (THIS REPOSITORY IS ONLY A MIRROR OF THE MAIN ONE, PLEASE DO NOT FILE BUGS HERE)

cryptographyencryption-decryption-toolspapers-research+1
3253 years ago
Previous12345Next