Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
457 results
DesckVB-RAT preview

DesckVB-RAT

GitHubshadowopcode/desckvb-rat

Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain

command-and-controldigital-forensicseducation+8
9
6 months ago
o3_finds_cve-2025-37899 preview

o3_finds_cve-2025-37899

GitHubseanheelan/o3_finds_cve-2025-37899

Artefacts for blog post on finding CVE-2025-37899 with o3

curated-resourceseducationexploitation+2
3521 year ago
o3_finds_cve-2025-37899 preview

o3_finds_cve-2025-37899

GitHubccss17/o3_finds_cve-2025-37899

Artefacts for blog post on finding CVE-2025-37899 with o3

ai-securityeducationexploitation+3
9 months ago
bitbucket-test preview

bitbucket-test

GitHubjohangabrielson/bitbucket-test

Investigating CVE-2022-36804

educationexploitationlabs-practice+3
4 months ago
CVE-2025-56399 preview

CVE-2025-56399

GitHubtheethat-thamwasin/cve-2025-56399

An authenticated Remote Code Execution (RCE) vulnerability in laravel-file-manager v3.3.1 and below allows attackers with access to the file manager…

educationexploitationpapers-research+3
39 months ago
CVE-2025-54123 preview

CVE-2025-54123

GitHubtristanqtn/cve-2025-54123

CVE-2025-54123 exploit and documentation

educationexploitationpapers-research+3
4 months ago
Flowise-RCE-CVE-2025-59528 preview

Flowise-RCE-CVE-2025-59528

GitHubr3nsi15/flowise-rce-cve-2025-59528

Authenticated Remote Code Execution (RCE) exploit for Flowise AI versions ≤ 3.0.4. Leverages a vulnerability in the…

educationexploitationpapers-research+4
14 months ago
Azure-Networking-Privilege-Escalation-Exploit-CVE-2025-54914 preview

Azure-Networking-Privilege-Escalation-Exploit-CVE-2025-54914

GitHubmrk336/azure-networking-privilege-escalation-exploit-cve-2025-54914

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

cloud-infrastructure-securitycloud-securityeducation+6
11 months ago
React2Shell-CVE-2025-55182-The-Deserialization-Bug-That-Broke-the-Web preview

React2Shell-CVE-2025-55182-The-Deserialization-Bug-That-Broke-the-Web

GitHubadityabhatt3010/react2shell-cve-2025-55182-the-deserialization-bug-that-broke-the-web

React2Shell, CVE-2025-55182, RCE Vulnerability: A critical breakdown of the unsafe deserialization flaw in React Server Components that enables…

ctfeducationexploitation+8
88 months ago
glass-cage-i18-2025-24085-and-cve-2025-24201 preview

glass-cage-i18-2025-24085-and-cve-2025-24201

GitHub5ky9uy/glass-cage-i18-2025-24085-and-cve-2025-24201

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox…

binary-exploitationdata-exfiltrationeducation+9
511 months ago
CVE-2024-32002-PoC preview

CVE-2024-32002-PoC

GitHubnishanthanand21/cve-2024-32002-poc

PoC of CVE-2024-32002 - Remote Code Execution while cloning special-crafted local repositories

educationexploitationpapers-research+2
32 years ago
SuiteCRM-RCE preview

SuiteCRM-RCE

GitHubmcorybillington/suitecrm-rce

Writeup on CVE-2020-28328: SuiteCRM Log File Remote Code Execution plus some bonus Cross-Site Scripting

educationexploitationpapers-research+4
25 years ago
CVE-2024-34328 preview

CVE-2024-34328

GitHub0xsu3ks/cve-2024-34328
educationpapers-researchphishing+2
1 year ago
CVE-2026-Termius preview

CVE-2026-Termius

GitHubnicetop1027/cve-2026-termius
educationexploitationmisconfiguration+4
6 months ago
CVE-2007-3831 preview

CVE-2007-3831

GitHubalt3kx/cve-2007-3831

PHP remote file inclusion in main.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5

exploitationinformation-gatheringpapers-research+3
8 years ago
CVE-2024-28397-js2py-Sandbox-Escape preview

CVE-2024-28397-js2py-Sandbox-Escape

GitHubnaved124/cve-2024-28397-js2py-sandbox-escape
binary-exploitationcode-analysiseducation+5
11 months ago
CVE-2023-34838 preview

CVE-2023-34838

GitHubsahiloj/cve-2023-34838

Microworld Technologies eScan Management Console version 14.0.1400.2281 is vulnerable to a Stored Cross-Site Scripting (XSS) attack.

educationpapers-researchpenetration-testing+2
16 months ago
Switcheroo preview

Switcheroo

GitHubidan5x/switcheroo

Exploiting CVE-2016-4657 to JailBreak the Nintendo Switch

binary-exploitationeducationexploitation+3
568 years ago
Previous123…26Next