Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
29 results
CVE-2021-3281 preview

CVE-2021-3281

GitHublwzsoviet/cve-2021-3281

Proof-of-concept for CVE-2021-3281: directory traversal vulnerability in Django's TarArchive utility via crafted tar files, with Python tarfile…

educationexploitationpapers-research+2
2
5 years ago
CVE-2018-1000802-PoC preview

CVE-2018-1000802-PoC

GitHubtna0y/cve-2018-1000802-poc

Python CVE-2018-1000802 Proof-of-Concept

binary-exploitationeducationexploitation+2
38 years ago
CVE-2025-4138 preview

CVE-2025-4138

GitHublocalh0ste/cve-2025-4138

Tarfile module directory traversal vulnerability ( with overflow crossed Directory ) --> Lead to Privilege escalation

binary-exploitationeducationexploitation+3
7 months ago
CVE-2023-24329-codeql-test preview

CVE-2023-24329-codeql-test

GitHubpandante-central/cve-2023-24329-codeql-test

CodeQL query test for CVE-2023-24329, demonstrating static analysis detection of a specific vulnerability in Python's urllib.parse module.

code-analysiseducationpapers-research+2
3 years ago
CVE-2026-20805-PoC preview

CVE-2026-20805-PoC

GitHubzerodayevil/cve-2026-20805-poc

Proof-of-concept exploit code for CVE-2026-20805, demonstrating the vulnerability for security research and validation.

exploitationpapers-researchpenetration-testing+1
4516 days ago
CVE-2025-4517-PoC preview

CVE-2025-4517-PoC

GitHubanimeprincess420/cve-2025-4517-poc

CVE‑2025‑4517 Proof‑of‑Concept Script

binary-exploitationeducationexploitation+2
27 months ago
cve-2026-31431 preview

cve-2026-31431

GitHubvasyapokemon/cve-2026-31431

Research and detection toolkit for Linux kernel LPE CVE-2026-31431, including exploit analysis, YARA rules, auditd/Falco detection, patching guide,…

curated-resourcesdigital-forensicseducation+8
4 months ago
CVE-2026-42978-PoC-Research preview

CVE-2026-42978-PoC-Research

GitHubsyntaxmethod/cve-2026-42978-poc-research

CVE-2026-42978 Windows Push Notifications (WpnService) Use-After-Free & Race Condition PoC research, diagnostic scanner, and security audit module…

defensive-toolseducationexploitation+5
9416 days ago
CVE-2026-54121-Certighost preview

CVE-2026-54121-Certighost

GitHubzerodayevil/cve-2026-54121-certighost

Proof-of-concept module for CVE-2026-54121 (Certighost), exploiting AD CS enrollment validation via rogue LDAP/SMB listeners to impersonate a Domain…

authenticationexploitationimpersonation-tools+6
8316 days ago
Advanced-Loader-Reverse-Engineering preview

Advanced-Loader-Reverse-Engineering

GitHubkaandemir993/advanced-loader-reverse-engineering

"In-depth reverse engineering analysis of an advanced multi-phase loader targeting Shellhost.exe, amsi.dll, mstscax.dll, and clbcatq.dll using module…

binary-analysiscode-analysiseducation+8
142 months ago
CVE-2024-57521-RuoYi-SQLi preview

CVE-2024-57521-RuoYi-SQLi

GitHubxs2024770/cve-2024-57521-ruoyi-sqli

Static code audit of CVE-2024-57521, an authenticated SQL injection in RuoYi-Vue's generator module, with source-to-sink analysis and a %0b filter…

educationexploitationpapers-research+4
7 days ago
GreyEnergy-Mini-Module-Malware-Analysis preview

GreyEnergy-Mini-Module-Malware-Analysis

GitHubmurataydemir/greyenergy-mini-module-malware-analysis

GreyEnergy Mini Module Malware Analysis (Turkish)

educationmalware-analysispapers-research+1
26 years ago
CVE-2026-30480 preview

CVE-2026-30480

GitHubparlakbarann/cve-2026-30480

Proof-of-concept for CVE-2026-30480, a Local File Inclusion vulnerability in LibreNMS NFSen module, demonstrating path traversal to include arbitrary…

educationexploitationpapers-research+2
5 months ago
CVE-2026-24419 preview

CVE-2026-24419

GitHublukasz-rybak/cve-2026-24419

CVE-2026-24419 - OpenSTAManager has a SQL Injection in the Prima Nota module

educationpapers-researchpenetration-testing+2
5 months ago
CVE-2025-60656 preview

CVE-2025-60656

GitHubdotadrien/cve-2025-60656

Stored XSS vulnerability proof-of-concept for Script Pag's 'Recent Ads' module, exploiting unsanitized double quotes in image URL fields to execute…

educationpapers-researchvulnerability-analysis+2
8 months ago
SMB-LINUX-CVE-2025-37899 preview

SMB-LINUX-CVE-2025-37899

GitHubvett3x/smb-linux-cve-2025-37899

Technical analysis of CVE-2025-37899: a use-after-free vulnerability in Linux kernel's ksmbd SMB module enabling remote code execution. Includes…

binary-exploitationeducationexploitation+2
1 year ago
nginx-rift-private-lab preview

nginx-rift-private-lab

GitHubhamid-k/nginx-rift-private-lab

Private Nginx Rift ASLR lab, exploit chain, and demo recordings

binary-exploitationctfeducation+8
774 months ago
CVE-2026-42536-PoC preview

CVE-2026-42536-PoC

GitHuberberkan/cve-2026-42536-poc

Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content

exploitationpapers-researchvulnerability-analysis+2
714 days ago
Previous12Next