Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
72 results
kaboom preview

kaboom

GitHubleviathan36/kaboom

A tool to automate penetration tests

exploit-frameworksinformation-gatheringpassword-attacks+4
3826 years ago
aad-sso-enum-brute-spray preview

aad-sso-enum-brute-spray

GitHubtreebuilder/aad-sso-enum-brute-spray

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

authentication-authorizationcloud-securityinformation-gathering+3
1935 years ago
solrradar preview

solrradar

GitHubshinthink/solrradar

☄️ Mass reconnaissance & exploitation framework for Apache Solr CVE-2026-44825 — Velocity template injection to RCE

command-and-controlexploitationinformation-gathering+7
53 months ago
CVE-2017-8225-EXPLOIT preview

CVE-2017-8225-EXPLOIT

GitHubk3ystr0k3r/cve-2017-8225-exploit

A PoC exploit for CVE-2017-8225 - GoAhead System.ini Leak

exploitationinformation-gatheringiot-security+3
93 years ago
CVE-2025-12539 preview

CVE-2025-12539

GitHubnxploited/cve-2025-12539

TNC Toolbox: Web Performance <= 1.4.2 - Unauthenticated Sensitive Information Exposure to Privilege Escalation/cPanel Account Takeover

educationexploitationinformation-gathering+6
710 months ago
routeros-CVE-2018-14847-bytheway preview

routeros-CVE-2018-14847-bytheway

GitHubbabyshen/routeros-cve-2018-14847-bytheway

By the Way is an exploit that enables a root shell on Mikrotik devices running RouterOS versions:

embedded-systems-securityexploitationiot-security+3
43 years ago
CVE-2024-28000 preview

CVE-2024-28000

GitHubebrasha/cve-2024-28000

LiteSpeed Cache Privilege Escalation PoC - CVE-2024-28000

educationexploitationinformation-gathering+5
511 months ago
CVE-2026-60137 preview

CVE-2026-60137

GitHubadarshthakur14777-cyber/cve-2026-60137

wpsqli full SQLi extractor + dumper for CVE-2026-60137

database-securityexploitationinformation-gathering+5
2 months ago
CVE-2024-51482 preview

CVE-2024-51482

GitHubc0gnit00/cve-2024-51482

CVE-2025-51482 POC, Dump Credentials From zm.Users

educationexploitationinformation-gathering+4
2 months ago
CVE-2025-63353 preview

CVE-2025-63353

GitHub0xa1m/cve-2025-63353

This is a Proof-Of-Concept of CVE-2025-63353

educationexploitationpassword-attacks+4
39 months ago
CVE-2026-45332-PoC preview

CVE-2026-45332-PoC

GitHublorenzocamilli/cve-2026-45332-poc

Proof-of-concept exploit for CVE-2026-45332, a broken access control in Automad CMS allowing unauthenticated dump of admin bcrypt hashes and TOTP…

authenticationexploitationinformation-gathering+6
4 months ago
Multi-threaded-mass-exploiter-CVE-2018-13379-POC preview

Multi-threaded-mass-exploiter-CVE-2018-13379-POC

GitHubinstructor-admin/multi-threaded-mass-exploiter-cve-2018-13379-poc

CVE-2018-13379 mass exploiter for Fortinet FortiOS SSL VPN. Extracts credentials instantly, saves to CSV + PostgreSQL. Multi-threaded, no bullshit…

exploitationinformation-gatheringpassword-attacks+4
14 months ago
CVE-2024-46987 preview

CVE-2024-46987

GitHubik0nw/cve-2024-46987

Exploit for CVE-2024-46987 path traversal in Camaleon CMS enabling arbitrary file download and automated SSH key extraction via brute-force.

exploitationinformation-gatheringpassword-attacks+3
8 months ago
CVE-2025-45466 preview

CVE-2025-45466

GitHubzgsnj123/cve-2025-45466

It is the details of CVE-2025-45466

authenticationembedded-systems-securityexploitation+6
11 year ago
CVE-2025-2539 preview

CVE-2025-2539

GitHubyucaerin/cve-2025-2539

CVE-2025-2539 - WordPress File Away <= 3.9.9.0.1 - Arbitrary File Read

exploitationinformation-gatheringpassword-attacks+3
1 year ago
CVE-2020-35847_CVE-2020-35848 preview

CVE-2020-35847_CVE-2020-35848

GitHubw33vils/cve-2020-35847_cve-2020-35848

CVE-2020-35847, CVE-2020-35848 : Account Takeover

exploitationinformation-gatheringpassword-attacks+3
3 years ago
CVE-2021-46366 preview

CVE-2021-46366

GitHubmbadanoiu/cve-2021-46366

CVE-2021-46366: Credential Bruteforce Attack via CSRF + Open Redirect in Magnolia CMS

exploitationinformation-gatheringpassword-attacks+3
2 years ago
CVE-2023-32243-Detection-and-Mitigation-in-WordPress preview

CVE-2023-32243-Detection-and-Mitigation-in-WordPress

GitHubdev0558/cve-2023-32243-detection-and-mitigation-in-wordpress

Educational lab demonstrating detection and mitigation of CVE-2023-32243 privilege escalation in WordPress Essential Addons for Elementor, using…

educationexploitationlabs-practice+6
1 year ago
Previous1234Next