Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
67 results
CVE-2025-68621 preview

CVE-2025-68621

GitHubsivaadityacoder/cve-2025-68621

Educational PoC and analysis of CVE-2025-68621, a timing attack on Trilium Notes sync login. Demonstrates HMAC hash recovery via network timing…

cryptographyeducationexploitation+3
5 months ago
CVE-2025-40271 preview

CVE-2025-40271

GitHubkaleth4/cve-2025-40271

Technical analysis of CVE-2025-40271, a critical Use-After-Free vulnerability in the Linux kernel's /proc filesystem, including root cause,…

binary-exploitationeducationexploitation+2
4 months ago
OWASP-Model-Card-Security-Standard preview

OWASP-Model-Card-Security-Standard

GitHubowasp/owasp-model-card-security-standard

Open standard for documenting security-relevant metadata of AI models, including training data provenance, PII risk, known vulnerabilities, and…

ai-securitycurated-resourceseducation+5
1 month ago
CVE-2021-44142 preview

CVE-2021-44142

GitHubgudyrmik/cve-2021-44142

Analysis and proof-of-concept for CVE-2021-44142, a Linux kernel vulnerability, providing technical details and exploitation research.

educationexploitationpapers-research+1
14 years ago
CVE-2025-70600---Urve-Smart-Office---Stored-XSS-in-iOS-App preview

CVE-2025-70600---Urve-Smart-Office---Stored-XSS-in-iOS-App

GitHubgpheheise/cve-2025-70600---urve-smart-office---stored-xss-in-ios-app

Proof-of-concept for a stored cross-site scripting (XSS) vulnerability in the URVE Smart Office iOS app, with CVE details, impact analysis, and…

educationios-securitymobile-security+3
8 months ago
CVE-2025-61456 preview

CVE-2025-61456

GitHubtansique-17/cve-2025-61456

Public disclosure and proof-of-concept for a reflected XSS vulnerability (CVE-2025-61456) in an e-commerce project, including technical details, CVSS…

educationexploitationpapers-research+3
11 months ago
CVE-2026-25595 preview

CVE-2026-25595

GitHublagathos/cve-2026-25595

Stored XSS vulnerability in InvoicePlane 1.7.0 via unsanitized invoice number field, with proof-of-concept and remediation details.

educationexploitationpapers-research+3
6 months ago
CVE-2025-50461 preview

CVE-2025-50461

GitHubanchor0221/cve-2025-50461

Technical Details and Exploit for CVE-2025-50461

binary-exploitationeducationexploitation+3
1 year ago
CVE-2017-0037 preview

CVE-2017-0037

GitHubchattopadhyaykittu/cve-2017-0037

Technical analysis of CVE-2017-0037, a Microsoft browser memory corruption vulnerability enabling remote code execution via type confusion in CSS/JS…

binary-exploitationeducationexploitation+3
4 years ago
CVE-2021-21193 preview

CVE-2021-21193

GitHubmehrzad1994/cve-2021-21193

Educational presentation analyzing CVE-2021-21193, a use-after-free vulnerability in Google Chrome's Blink engine, including exploitation details and…

curated-resourceseducationpapers-research+2
4 years ago
CVE-2017-5638 preview

CVE-2017-5638

GitHubtankirat/cve-2017-5638

Educational analysis of Apache Struts 2 RCE vulnerability CVE-2017-5638, including exploit details, Equifax case study, and prevention measures.

curated-resourceseducationexploitation+3
4 years ago
CVE-2017-9805---Documentation---IT19143378 preview

CVE-2017-9805---Documentation---IT19143378

GitHubavishkasenadheera/cve-2017-9805---documentation---it19143378

Documentation and analysis of CVE-2017-9805, providing technical details and context for understanding this vulnerability.

educationexploitationpapers-research+2
6 years ago
CVE-2026-14266 preview

CVE-2026-14266

GitHubret2bilibili/cve-2026-14266

Proof-of-concept repository for CVE-2026-14266 demonstrating a denial-of-service vulnerability with minimal reproduction details.

educationexploitationpapers-research+1
2 months ago
leHACK-Analysis-of-CVE-2018-8453 preview

leHACK-Analysis-of-CVE-2018-8453

GitHubthepwnrip/lehack-analysis-of-cve-2018-8453

Conference talk analyzing CVE-2018-8453, a Windows kernel UAF and double-free vulnerability. Covers binary diffing, exploit reproduction, heap spray,…

binary-exploitationctfeducation+3
147 years ago
CVE-2026-30252 preview

CVE-2026-30252

GitHubvenablee/cve-2026-30252

The ZenShare Suite application is vulnerable by a Reflected Cross-Site Scripting (XSS) vulnerability, affecting web application login and recovery…

educationexploitationpapers-research+2
23 days ago
Vulnerability-Research preview

Vulnerability-Research

GitHubcydtseng/vulnerability-research

Curated repository of vulnerability research write-ups with assigned CVEs, detailing discovered weaknesses, impact, and remediation across various…

code-analysiscurated-resourceseducation+3
35 months ago
CVE-2026-22692 preview

CVE-2026-22692

GitHublukasz-rybak/cve-2026-22692

CVE-2026-22692 - Critical Twig Sandbox Bypass via collect()->mapInto() allowing RCE/LFI/XXE in October CMS

code-analysiseducationexploitation+3
5 months ago
CVE-2026-24419 preview

CVE-2026-24419

GitHublukasz-rybak/cve-2026-24419

CVE-2026-24419 - OpenSTAManager has a SQL Injection in the Prima Nota module

educationpapers-researchpenetration-testing+2
5 months ago
Previous1234Next