Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
POC-CVE-2025-24813-Apache-Tomcat-Remote-Code-Execution preview

POC-CVE-2025-24813-Apache-Tomcat-Remote-Code-Execution

GitHubmakavellik/poc-cve-2025-24813-apache-tomcat-remote-code-execution

Este repositorio contiene un exploit automatizado desarrollado con fines educativos y de investigación en ciberseguridad, dirigido a demostrar una…

educationexploitationpayload-development+4
11 months ago
CVE-2025-69985 preview

CVE-2025-69985

GitHubkaleth4/cve-2025-69985

PoC exploit for CVE-2025-69985: authentication bypass leading to RCE in FUXA SCADA ≤1.2.8. Includes a modular Python exploit with interactive shell,…

authentication-authorizationexploitationpayload-development+5
3 months ago
exploit-writing-for-oswe preview

exploit-writing-for-oswe

GitHubrizemon/exploit-writing-for-oswe

Tips on how to write exploit scripts (faster!)

curated-resourceseducationpayload-development+4
6002 years ago
hack preview

hack

GitHubjscamposx/hack

Repositorio de investigación de seguridad que contiene una Prueba de Concepto (PoC) para la vulnerabilidad CVE-2021-4034 (PwnKit) y utilidades de…

educationexploitationpayload-development+3
18 months ago
Red-Teaming-Toolkit preview

Red-Teaming-Toolkit

GitHubinfosecn1nja/red-teaming-toolkit

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

command-and-controlcurated-resourceslateral-movement+6
10.7k3 months ago
OSCE3-Complete-Guide preview

OSCE3-Complete-Guide

GitHubjoasasantos/osce3-complete-guide

OSWE, OSEP, OSED, OSEE

binary-exploitationcurated-resourceseducation+9
3.9k7 months ago
PoC-CVE-2025-62222 preview

PoC-CVE-2025-62222

GitHubsadisticnight/poc-cve-2025-62222

Proof-of-concept demonstrating remote code execution via prompt injection in GitHub Copilot Chat, using a crafted Python file to trigger a…

command-and-controleducationexploit-frameworks+7
16 months ago
POC-CVE-2025-24813 preview

POC-CVE-2025-24813

GitHubarthurabriel/poc-cve-2025-24813

Proof-of-concept demonstrating Apache Tomcat CVE-2025-24813, exploiting insecure DefaultServlet PUT and session deserialization to achieve remote…

educationexploitationpayload-development+3
8 months ago
CVE-2023-38831_ReverseShell_Winrar-RCE preview

CVE-2023-38831_ReverseShell_Winrar-RCE

GitHubmaalfer/cve-2023-38831_reverseshell_winrar-rce

Pasos necesarios para obtener una reverse shell explotando la vulnerabilidad de winrar CVE-2023-38831 en versiones anteriores a 6.23.

educationexploitationlabs-practice+3
222 years ago
CVE-2026-0848-PoC-Improper-Input-Validation preview

CVE-2026-0848-PoC-Improper-Input-Validation

GitHubfevar54/cve-2026-0848-poc-improper-input-validation

PoC de CVE-2026-0848: validacion de entrada indebida en NLTK que permite ejecucion de codigo via StanfordSegmenter.

code-analysisexploitationpayload-development+2
5 months ago
CVE-2025-8110 preview

CVE-2025-8110

GitHubxdezen/cve-2025-8110

Python proof-of-concept for CVE-2025-8110, demonstrating arbitrary file write to RCE in Gogs via symlink and API, with educational lab usage.

educationexploitationlabs-practice+3
1 month ago
CVE-2023-43208-PoC preview

CVE-2023-43208-PoC

GitHubhumberto-pixel/cve-2023-43208-poc

Explota vulnerabilidad

exploitationpayload-developmentpenetration-testing+2
5 months ago
CVE-2026-20253-Splunk-Enterprise-Pre-Auth-RCE- preview

CVE-2026-20253-Splunk-Enterprise-Pre-Auth-RCE-

GitHubfevar54/cve-2026-20253-splunk-enterprise-pre-auth-rce-

Proof-of-concept exploit for CVE-2026-20253, enabling unauthenticated remote code execution on vulnerable Splunk Enterprise instances via file write…

command-and-controlexploitationpayload-development+5
2 months ago