Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
203 results
CVE-2024-51793 preview

CVE-2024-51793

GitHub0axz-tools/cve-2024-51793

Exploits CVE-2024-51793 unauthenticated arbitrary file upload in WordPress Computer Repair Shop plugin, scans target lists, uploads PHP webshells,…

exploitationpayload-developmentpenetration-testing+3
10 months ago
CVE-2019-5736 preview

CVE-2019-5736

GitHubh3x0v3rl0rd/cve-2019-5736

Go-based exploit for CVE-2019-5736 (Runc container escape) with a customizable reverse shell payload, designed for penetration testing and red team…

container-escapeexploitationpayload-development+3
1 year ago
CVE-2018-12533 preview

CVE-2018-12533

GitHubllamaonsecurity/cve-2018-12533

Payload generator and proof-of-concept exploit for CVE-2018-12533 (Richfaces deserialization/EL injection) with Docker-based vulnerable environment…

exploitationlabs-practicepapers-research+3
95 years ago
PrintNightmare-CVE-2021-34527 preview

PrintNightmare-CVE-2021-34527

GitHubnemo-wq/printnightmare-cve-2021-34527

PrintNightmare - Windows Print Spooler RCE/LPE Vulnerability (CVE-2021-34527, CVE-2021-1675) proof of concept exploits

exploitationpayload-developmentpenetration-testing+4
1744 years ago
CVE-2025-4802-Proof-of-Concept preview

CVE-2025-4802-Proof-of-Concept

GitHubbetim-hodza/cve-2025-4802-proof-of-concept

Proof of Concept for a statically compiled setuid binary vulnerable to dlopen with LD_LIBRARY_PATH

binary-exploitationeducationexploitation+4
26 months ago
wp2shell-scanner preview

wp2shell-scanner

GitHubbahartanir/wp2shell-scanner

CVE-2026-63030 / CVE-2026-60137 - WordPress pre-auth RCE scanner

exploitationlabs-practicepayload-development+5
81 month ago
CVE-2025-11953-PoC preview

CVE-2025-11953-PoC

GitHubboroeurnprach/cve-2025-11953-poc

CVE-2025-11953 - The React Native Metro server's default external binding exposes a vulnerable endpoint, allowing unauthenticated attackers to…

exploitationpayload-developmentpenetration-testing+2
7 months ago
exploit-CVE-2017-7494 preview

exploit-CVE-2017-7494

GitHubopsxcq/exploit-cve-2017-7494

SambaCry exploit and vulnerable container (CVE-2017-7494)

container-securityexploitationpayload-development+3
3803 years ago
study-CVE-2025-55182 preview

study-CVE-2025-55182

GitHubitumo-arigatone/study-cve-2025-55182

Educational repository for learning CVE-2025-55182: a pre-authentication RCE in React Server Components. Includes step-by-step documentation,…

educationexploitationlabs-practice+3
7 months ago
iscsicpl_bypassUAC preview

iscsicpl_bypassUAC

GitHubhackerhouse-opensource/iscsicpl_bypassuac

UAC bypass for x64 Windows 7 - 11

exploitationpayload-developmentpost-exploitation+2
8496 months ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubl-urk/cve-2024-6387

Proof of concept python script for regreSSHion exploit.

binary-exploitationexploitationnetwork-security+6
121 year ago
Text4shell--Automated-exploit---CVE-2022-42889 preview

Text4shell--Automated-exploit---CVE-2022-42889

GitHubadarshpv9746/text4shell--automated-exploit---cve-2022-42889

Automated exploit for CVE-2022-42889 (Text4Shell) with a vulnerable Dockerized app for testing and manual exploitation guidance.

dynamic-analysis-sandboxingexploitationpayload-development+3
3 years ago
CVE-2015-8522.RCE preview
Archived

CVE-2015-8522.RCE

GitHubdamariion/cve-2015-8522.rce

Exploit for CVE-2015-8522 targeting Tivoli FastBack Server with stack-based buffer overflow, ASLR/DEP bypass, and automated reverse-shell…

binary-exploitationexploitationexploit-frameworks+8
4 months ago
CVE-2021-44228 preview

CVE-2021-44228

GitHubracoon-rac/cve-2021-44228

Step-by-step reproduction guide for CVE-2021-44228 (Log4Shell) with JDK 8u20, vulnerable Log4j 2.14.1, marshalsec LDAP server, and custom payload…

educationexploitationlabs-practice+3
3 years ago
cve-2017-5123 preview

cve-2017-5123

GitHubnabilboudra/cve-2017-5123

Educational demonstration of CVE-2017-5123 kernel exploit, ICMP-based rootkit command-and-control, and OS command injection vulnerable web…

binary-exploitationcommand-and-controleducation+5
8 months ago
exploit-CVE-2016-10033 preview

exploit-CVE-2016-10033

GitHubopsxcq/exploit-cve-2016-10033

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

code-analysiseducationexploitation+6
4076 years ago
CVE-2024-4577 preview

CVE-2024-4577

GitHubwatchtowrlabs/cve-2024-4577

PHP CGI Argument Injection (CVE-2024-4577) Remote Code Execution PoC

exploitationpayload-developmentpenetration-testing+3
3212 years ago
EDRSandblast-GodFault preview
Archived

EDRSandblast-GodFault

GitHubgabriellandau/edrsandblast-godfault

EDRSandblast-GodFault

defensive-toolsexploitationmemory-forensics+4
2723 years ago
Previous12…12Next