Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
575 results
CVE-2025-65427 preview

CVE-2025-65427

GitHubkirubel-cve/cve-2025-65427

Proof-of-concept exploit for CVE-2025-65427: missing rate limiting on Dbit N300 T1 Pro router login API enabling brute-force attacks and…

authenticationiot-securitypassword-attacks+3
8 months ago
CVE-2025-14736 preview

CVE-2025-14736

GitHubhyunchiya/cve-2025-14736

Unauthenticated Privilege Escalation to Administrator via Role Form Field

exploitationpassword-attackspenetration-testing+4
7 months ago
CVE-2025-45466 preview

CVE-2025-45466

GitHubzgsnj123/cve-2025-45466

It is the details of CVE-2025-45466

authenticationembedded-systems-securityexploitation+6
11 year ago
CVE-2017-7921 preview

CVE-2017-7921

GitHubmverschu/cve-2017-7921

HikVision Auth Bypass CVE, tool is able to extract credentials, and take snapshots based on magic cookie or supplied credentials.

authenticationexploitationinformation-gathering+5
6 months ago
kcmd preview

kcmd

Bitbucketaseemjakhar/kcmd

Kankun Smart Socket Hijacker and Sniffer. The kankun smart socket and its mobile app use a hardcoded AES 256 bit key to encrypt and decrypt…

cryptographyexploitationhardware-iot-security+4
11 years ago
Hikvision-CVE-2017-7921-decryptor preview

Hikvision-CVE-2017-7921-decryptor

GitHublastvocher/hikvision-cve-2017-7921-decryptor

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, recovering user credentials from weakly encrypted…

encryption-decryption-toolsexploitationiot-security+3
10 months ago
CVE-2025-56764 preview

CVE-2025-56764

GitHubremenis/cve-2025-56764

Username Enumeration in Trivision NC-227WF

authenticationinformation-gatheringpassword-attacks+3
11 months ago
ZeroLogon-CVE-2020-1472-lab preview

ZeroLogon-CVE-2020-1472-lab

GitHub100hnomeunome/zerologon-cve-2020-1472-lab

Explicação e demonstração da vulnerabilidade ZeroLogon (CVE-2020-1472)

ctfeducationexploitation+7
10 months ago
2FA-Bypass-using-a-Brute-Force-Attack-CVE-2025-60424 preview

2FA-Bypass-using-a-Brute-Force-Attack-CVE-2025-60424

GitHubaakashtyal/2fa-bypass-using-a-brute-force-attack-cve-2025-60424

Demonstrates a brute-force attack bypassing two-factor authentication in Nagios Fusion due to missing rate limiting and lockout, with CVE-2025-60424…

authenticationexploitationpassword-attacks+3
10 months ago
CVE-2025-63820 preview

CVE-2025-63820

GitHubxernary/cve-2025-63820

Proof-of-concept of vulnerability found in Totolink A720R router

embedded-systems-securityexploitationhardware-iot-security+3
9 months ago
CVE-2025-26199 preview

CVE-2025-26199

GitHubtansique-17/cve-2025-26199

Public Disclosure

educationmisconfigurationpassword-attacks+3
10 months ago
CVE-2021-45041 preview

CVE-2021-45041

GitHubmanuelz120/cve-2021-45041

PoC for CVE-2021-45041

exploitationpassword-attackspenetration-testing+2
4 years ago
CVE-2025-60787 preview

CVE-2025-60787

GitHubagent-skywalker/cve-2025-60787

Proof-of-concept exploit for CVE-2025-60787, an OS command injection in motionEye v0.43.1b4, enabling remote code execution via crafted…

command-and-controlexploitationpassword-attacks+5
5 months ago
CVE-2024-42049-PoC preview

CVE-2024-42049-PoC

GitHubzeved/cve-2024-42049-poc

PoC for CVE-2024-42049

exploitationpassword-attackspenetration-testing+3
1 year ago
CVE-2019-9053-Exploit-in-Python-3 preview

CVE-2019-9053-Exploit-in-Python-3

GitHubjason-siu/cve-2019-9053-exploit-in-python-3

Python 3 exploit for CVE-2019-9053 (SQL injection) with hash-cracking, updated from outdated Python 2 code for TryHackMe CTF use.

ctfeducationexploitation+3
2 years ago
CVE-2025-24071 preview

CVE-2025-24071

GitHubroyall-researchers/cve-2025-24071

Proof-of-concept for CVE-2025-24071, demonstrating NTLM hash leak via crafted .library-ms file in RAR/ZIP archives, triggering SMB authentication on…

exploitationinformation-gatheringpassword-attacks+3
1 year ago
CVE-2018-9995_dvr_credentials preview

CVE-2018-9995_dvr_credentials

GitHubabizchi/cve-2018-9995_dvr_credentials

Python exploit for CVE-2018-9995 that retrieves exposed DVR credentials by bypassing authentication on vulnerable web interfaces.

exploitationinformation-gatheringiot-security+3
7 years ago
Blackash-CVE-2025-4322 preview

Blackash-CVE-2025-4322

GitHubgmh5225/blackash-cve-2025-4322

CVE-2025-4322 – Unauthenticated Privilege Escalation via Password Update "Account Takeover" 🔥

ctfeducationexploitation+5
1 year ago
Previous1…252627…32Next