Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
29 results
CVE-2026-29053 preview

CVE-2026-29053

GitHubk3ystr0k3r/cve-2026-29053

Python PoC and version scanner for CVE-2026-29053, an authenticated RCE in Ghost CMS below 6.19.1 via malicious Handlebars theme templates.

exploitationpayload-developmentpenetration-testing+5
1
1 day ago
CVE-2026-33017-langflow-rce preview

CVE-2026-33017-langflow-rce

GitHubarensballiu/cve-2026-33017-langflow-rce

Proof-of-concept for CVE-2026-33017, demonstrating unauthenticated remote code execution in vulnerable Langflow versions through malicious…

exploitationpayload-developmentpenetration-testing+3
8 days ago
Flowise-RCE-CVE-2025-59528 preview

Flowise-RCE-CVE-2025-59528

GitHubarensballiu/flowise-rce-cve-2025-59528

Python PoC exploit for CVE-2025-59528, achieving authenticated RCE on Flowise AI <= 3.0.4 via the customMCP endpoint and Node.js…

exploitationpayload-developmentpenetration-testing+3
18 days ago
CVE-2024-25641 preview

CVE-2024-25641

GitHubd3ext/cve-2024-25641

Proof-of-concept exploit for CVE-2024-25641, an authenticated RCE in Cacti 1.2.26 via the Package Import feature, enabling arbitrary PHP code…

exploitationpayload-developmentpenetration-testing+2
11 year ago
SmmBackdoor preview

SmmBackdoor

GitHubcr4sh/smmbackdoor

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

exploitationfirmware-analysishardware-hacking+4
6342 years ago
Homework-of-Python preview

Homework-of-Python

GitHub3gstudent/homework-of-python

Python codes of my blog.

exploitationinformation-gatheringpassword-attacks+5
4103 years ago
ipfire-2-25-auth-rce preview

ipfire-2-25-auth-rce

GitHubkaanaryoverflow/ipfire-2-25-auth-rce

ipfire 2.25 authenticated remote code execution

binary-exploitationexploitationpayload-development+3
25 years ago
the-backdoor-factory preview

the-backdoor-factory

GitHubsecretsquirrel/the-backdoor-factory

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

binary-exploitationexploitationmalware-analysis+6
3.4k2 years ago
CVE-2018-1000117-Exploit preview

CVE-2018-1000117-Exploit

GitHubu0pattern/cve-2018-1000117-exploit

Buffer Overflow Vulnerability that can result ACE

binary-exploitationexploitationpayload-development+2
38 years ago
CVE-2024-54160-Opensearch-HTML-And-Injection-Stored-XSS preview

CVE-2024-54160-Opensearch-HTML-And-Injection-Stored-XSS

GitHubjflye/cve-2024-54160-opensearch-html-and-injection-stored-xss

Proof-of-concept exploit for CVE-2024-54160 demonstrating stored XSS and HTML injection in OpenSearch Reports plugin via malicious iframe payload in…

exploitationpayload-developmentpenetration-testing+3
1 year ago
CVE-2021-44228 preview

CVE-2021-44228

GitHublucaspdiniz/cve-2021-44228

Log4j Vulnerability RCE - CVE-2021-44228

educationexploitationpayload-development+4
2 years ago
CVE-2022-41840-PoC preview

CVE-2022-41840-PoC

GitHubprinceaikinsbaidoo/cve-2022-41840-poc

This is the PoC exploit for CVE-2022-41840, running Zenario

educationexploitationpayload-development+3
7 months ago
CVE-2019-11043 preview

CVE-2019-11043

GitHubthemiddleblue/cve-2019-11043

(PoC) Python version of CVE-2019-11043 exploit by neex

exploitationpayload-developmentpenetration-testing+3
1476 years ago
ExploitTensorflowCVE-2021-37678 preview

ExploitTensorflowCVE-2021-37678

GitHubfran-cics/exploittensorflowcve-2021-37678

TP Seguridad Informática UTN FRBA 2021

ai-securitycontainer-securityeducation+3
24 years ago
CVE-2004-1561 preview

CVE-2004-1561

GitHubdarrynb89/cve-2004-1561

Python port of a Metasploit exploit targeting CVE-2004-1561 for remote code execution. Designed for penetration testing and vulnerability validation…

exploitationexploit-frameworkspayload-development+3
16 years ago
CVE-2019-13272 preview

CVE-2019-13272

GitHubjosemlwdf/cve-2019-13272

This is a Python 3 version of this exploit. Hope it works!!!

binary-exploitationexploitationpayload-development+3
31 year ago
CVE-2025-24016-Wazuh-Remote-Code-Execution-RCE-PoC preview

CVE-2025-24016-Wazuh-Remote-Code-Execution-RCE-PoC

GitHubcybersecplayground/cve-2025-24016-wazuh-remote-code-execution-rce-poc

A critical RCE vulnerability has been identified in the Wazuh server due to unsafe deserialization in the wazuh-manager package. This bug affects…

command-and-controlexploitationpayload-development+4
21 year ago
CVE-2022-23935 preview

CVE-2022-23935

GitHubcowsecurity/cve-2022-23935

Python exploit PoC for CVE-2022-23935 targeting exiftool 12.37, enabling remote code execution via crafted image files.

exploitationpayload-developmentpenetration-testing+2
83 years ago
Previous12Next