Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
575 results
CVE-2014-0195 preview

CVE-2014-0195

GitHubpezwarinaan/cve-2014-0195

Exploit for CVE-2014-0195

exploitationpassword-attackspenetration-testing+2
1 year ago
CVE-2024-56429 preview

CVE-2024-56429

GitHublisa-2905/cve-2024-56429

Exploit for CVE-2024-56429 demonstrating extraction of Apache Derby database boot password from iLabClient source code, enabling local database…

database-securityexploitationpassword-attacks+2
1 year ago
CVE-2023-2437 preview

CVE-2023-2437

GitHubrxrcoder/cve-2023-2437

Exploit tool for CVE-2023-2437 targeting UserPro <= 5.1.1 authentication bypass, allowing attackers to gain admin access and create new…

authentication-authorizationexploitationpassword-attacks+3
2 years ago
CVE-2020-25540 preview

CVE-2020-25540

GitHubsimonlee-hello/cve-2020-25540

ThinkAdmin v5 v6 任意文件读取漏洞利用,可自定义字典爆破

exploitationinformation-gatheringpassword-attacks+3
2 years ago
CVE-2018-13341 preview

CVE-2018-13341

GitHubrajchowdhury240/cve-2018-13341

This Tool Aims to Exploit the CVE-2018-13341

embedded-systems-securityexploitationhardware-iot-security+3
5 years ago
KeePass-dump-py preview

KeePass-dump-py

GitHubhau-zy/keepass-dump-py

Re-write of original KeePass 2.X Master Password Dumper (CVE-2023-32784) POC in python.

exploitationmemory-forensicspassword-attacks+1
3 years ago
CVE-2024-44812-PoC preview

CVE-2024-44812-PoC

GitHubb1u3st0rm/cve-2024-44812-poc

Proof of Concept Exploit for CVE-2024-44812 - SQL Injection Authentication Bypass vulnerability in Online Complaint Site v1.0

authentication-authorizationexploitationpassword-attacks+3
1 year ago
CVE-2023-43154-PoC preview

CVE-2023-43154-PoC

GitHubally-petitt/cve-2023-43154-poc

PoC for the type confusion vulnerability in Mac's CMS that results in authentication bypass and administrator account takeover.

authentication-authorizationexploitationpassword-attacks+3
2 years ago
CVE-2023-34732 preview

CVE-2023-34732

GitHubsaykino/cve-2023-34732

Proof-of-concept exploit for CVE-2023-34732 demonstrating authenticated function abuse in Flytxt NEON-dX to brute-force and reset user passwords,…

exploitationpassword-attackspenetration-testing+2
1 year ago
CVE-2022-31890 preview

CVE-2022-31890

GitHubreewardius/cve-2022-31890

Python-based exploit for CVE-2022-31890 in osTicket support ticketing system, enabling credential dumping via nickname and password enumeration…

exploitationinformation-gatheringpassword-attacks+2
3 years ago
CVE-2020-25749 preview

CVE-2020-25749

GitHubjet-pentest/cve-2020-25749

Proof-of-concept exploit for CVE-2020-25749 targeting Rubetek cameras with hardcoded Telnet credentials, enabling remote root shell access and full…

embedded-systems-securityexploitationhardware-iot-security+3
5 years ago
CVE-2020-2969 preview

CVE-2020-2969

GitHubemad-almousa/cve-2020-2969

Proof-of-concept exploit for CVE-2020-2969 targeting unauthorized access to Oracle Database password hashes. Enables security researchers to test and…

database-securityexploitationpassword-attacks+2
2 years ago
CVE-2025-3102 preview

CVE-2025-3102

GitHubdennisec/cve-2025-3102

Exploit script for CVE-2025-3102 targeting SureTriggers WordPress plugin (≤ v1.0.78). Detects vulnerable versions, exploits via REST API, and creates…

educationexploitationpassword-attacks+3
1 year ago
CVE-2019-5420 preview

CVE-2019-5420

GitHuberemiel/cve-2019-5420

Python exploit script for CVE-2019-5420, targeting Ruby on Rails signed-session AES GCM key brute-forcing to achieve remote code execution in…

encryption-decryption-toolsexploitationpassword-attacks+3
5 years ago
CVE-2019-19609-POC-Python preview

CVE-2019-19609-POC-Python

GitHubn000xy/cve-2019-19609-poc-python

Strapi Framework, 3.0.0-beta.17.4

exploitationpassword-attackspayload-generation+3
4 years ago
cve-2018-9995 preview

cve-2018-9995

GitHubdearpan/cve-2018-9995

Exploit for CVE-2018-9995 targeting DVR devices. Sends a crafted Cookie header to retrieve plaintext admin credentials from the web control panel.

exploitationiot-securitypassword-attacks+2
4 years ago
SSH-key-and-RCE-PoC-for-CVE-2021-41773 preview

SSH-key-and-RCE-PoC-for-CVE-2021-41773

GitHubtiemio/ssh-key-and-rce-poc-for-cve-2021-41773

This repository contains a Proof-of-Concept for the CVE-2021-41773. This CVE contains a LFI and RCE vulnerablity.

exploitationpassword-attackspenetration-testing+2
1 year ago
CVE-2024-22853 preview

CVE-2024-22853

GitHubfallenskill1/cve-2024-22853

D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote attackers to obtain root…

embedded-systems-securityexploitationfirmware-analysis+5
2 years ago
Previous1…282930…32Next