Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
91 results
CVE-2019-9053-Exploit-in-Python-3 preview

CVE-2019-9053-Exploit-in-Python-3

GitHubjason-siu/cve-2019-9053-exploit-in-python-3

Python 3 exploit for CVE-2019-9053 (SQL injection) with hash-cracking, updated from outdated Python 2 code for TryHackMe CTF use.

ctfeducationexploitation+3
2 years ago
Blackash-CVE-2025-4322 preview

Blackash-CVE-2025-4322

GitHubgmh5225/blackash-cve-2025-4322

CVE-2025-4322 – Unauthenticated Privilege Escalation via Password Update "Account Takeover" 🔥

ctfeducationexploitation+5
1 year ago
CVE-2018-9995-ModifiedByGwolfs preview

CVE-2018-9995-ModifiedByGwolfs

GitHubtateydq/cve-2018-9995-modifiedbygwolfs

Exploit for CVE-2018-9995 to retrieve DVR credentials via directory traversal, with two methods for educational use.

educationexploitationiot-security+3
7 years ago
Moniker-Link-CVE-2024-21413 preview

Moniker-Link-CVE-2024-21413

GitHubmqkgithub/moniker-link-cve-2024-21413

Step-by-step walkthrough of exploiting CVE-2024-21413 in Microsoft Outlook to bypass Protected View and leak NTLM credentials via Moniker Links,…

ctfeducationemail-security+5
1 year ago
ZerologonWithImpacket-CVE2020-1472 preview

ZerologonWithImpacket-CVE2020-1472

GitHubtuancui22/zerologonwithimpacket-cve2020-1472

A practical proof-of-concept for CVE-2020-1472 (Zerologon) using the Impacket library to exploit Netlogon vulnerability and perform unauthorized…

educationexploitationlateral-movement+5
1 year ago
OpenSSH-4.7p1-CVE-2008-5161-Exploit preview

OpenSSH-4.7p1-CVE-2008-5161-Exploit

GitHubtalha3117/openssh-4.7p1-cve-2008-5161-exploit

CVE-2008-5161 OpenSSH 4.7p1 Audit Helper Automates version checking and credential auditing of legacy OpenSSH 4.7p1 (Debian-8ubuntu1) targets by…

educationexploitationpassword-attacks+2
11 months ago
CVE_2020_35848 preview

CVE_2020_35848

GitHubsabbu143s/cve_2020_35848

CVE-2020-35848 impacts Cockpit-CMS v1.7 due to unsafe handling of user inputs in authentication mechanisms, leading to remote code execution. This…

ctfeducationexploitation+6
1 year ago
CVE-2025-3102 preview

CVE-2025-3102

GitHubdennisec/cve-2025-3102

Exploit script for CVE-2025-3102 targeting SureTriggers WordPress plugin (≤ v1.0.78). Detects vulnerable versions, exploits via REST API, and creates…

educationexploitationpassword-attacks+3
1 year ago
CVE-2023-7028 preview

CVE-2023-7028

GitHubmochammadrafi/cve-2023-7028

Python Code for Exploit Automation CVE-2023-7028

educationexploitationpassword-attacks+3
2 years ago
CVE-2019-18818_CVE-2019-19609 preview

CVE-2019-18818_CVE-2019-19609

GitHubabelsrzz/cve-2019-18818_cve-2019-19609

This repository contains a Python script to exploit two vulnerabilities: CVE-2019-18818 and CVE-2019-19609.

educationexploitationpassword-attacks+3
1 year ago
CVE-2025-25749-Weak-Password-Policy-in-HotelDruid-3.0.7 preview

CVE-2025-25749-Weak-Password-Policy-in-HotelDruid-3.0.7

GitHubhuyvo2910/cve-2025-25749-weak-password-policy-in-hoteldruid-3.0.7

Proof-of-concept for CVE-2025-25749 demonstrating weak password policy in HotelDruid 3.0.7, with automated test scripts and mitigation…

authenticationeducationpassword-attacks+3
1 year ago
CVE-2023-32243-Detection-and-Mitigation-in-WordPress preview

CVE-2023-32243-Detection-and-Mitigation-in-WordPress

GitHubdev0558/cve-2023-32243-detection-and-mitigation-in-wordpress

Educational lab demonstrating detection and mitigation of CVE-2023-32243 privilege escalation in WordPress Essential Addons for Elementor, using…

educationexploitationlabs-practice+6
1 year ago
CVE-2023-32784-Exploitation preview

CVE-2023-32784-Exploitation

GitHubcmadhushanka/cve-2023-32784-exploitation

year 2 semester 1 Systems and Network Programming Assignment

educationexploitationpassword-attacks+2
2 years ago
CVE-2017-2751 preview
Archived

CVE-2017-2751

GitHubbadersz/cve-2017-2751

Mini-paper on CVE-2017-2751, HP EFI password extraction.

educationexploitationfirmware-analysis+3
13 years ago
hichipreset preview
Archived

hichipreset

GitHubprisect/hichipreset

Hicip IP admin password reset script using CVE-2020-9529. This is made for educational purposes only of course.

educationexploitationiot-security+2
1 year ago
monkey preview

monkey

GitHubguardicore/monkey

Infection Monkey - An open-source adversary emulation platform

adversarial-attackcommand-and-controlexploit-frameworks+9
7.1k1 year ago
HIKRAVEN preview

HIKRAVEN

GitHubsylhetyhackvenger/hikraven

HIKRAVEN - Advanced Hikvision Security Assessment Platform for professional penetration testing. Detects 12+ CVEs including CVE-2021-36260…

exploitationinformation-gatheringiot-security+6
412 days ago
CVE-2024-28999 preview

CVE-2024-28999

GitHubhussainfathy/cve-2024-28999

Exploit for CVE-2024-28999 SolarWinds Platform Race Condition Vulnerability - login page

exploitationpassword-attackspenetration-testing+2
42 years ago
Previous123456Next