Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
41 results
CVE-2020-8165 preview
Archived

CVE-2020-8165

GitHubprogfay/cve-2020-8165

PoC for CVE-2020-8165

exploitationpayload-developmentpenetration-testing+2
5 years ago
Salsa-tools preview

Salsa-tools

GitHubhackplayers/salsa-tools

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

command-and-controlencryption-decryption-toolsexploitation+7
5896 years ago
CVE-2024-38063-poc preview

CVE-2024-38063-poc

GitHubsachinart/cve-2024-38063-poc

Note: I am not responsible for any bad act. This is written by Chirag Artani to demonstrate the vulnerability.

binary-exploitationeducationexploitation+3
862 years ago
frida-c2-mcp preview

frida-c2-mcp

GitHubs4dp4nd4/frida-c2-mcp

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

android-securitycommand-and-controldynamic-analysis-sandboxing+8
656 months ago
Go-Get-RCE-CVE-2018-6574-POC preview

Go-Get-RCE-CVE-2018-6574-POC

GitHubneargle/go-get-rce-cve-2018-6574-poc

CVE-2018-6574 POC : golang 'go get' remote command execution during source code build

binary-exploitationcode-analysisexploitation+2
244 years ago
CVE-2024-4157-SSRF-RCE-Reverse-Shell preview

CVE-2024-4157-SSRF-RCE-Reverse-Shell

GitHubch4os1/cve-2024-4157-ssrf-rce-reverse-shell

Chaining Havoc C2 SSRF with RCE to get reverse shell on Havoc C2 Server.

command-and-controlexploitationpayload-development+3
1 year ago
CVE-2018-6574 preview

CVE-2018-6574

GitHubseoqqq/cve-2018-6574

Remote command execution in Golang go get command allows an attacker to gain code execution on a system by installing a malicious library.

binary-exploitationcode-analysisexploitation+2
3 years ago
CVE-2018-6574 preview

CVE-2018-6574

GitHubadrivillab/cve-2018-6574

Proof-of-concept exploit demonstrating remote command execution in Go's `go get` via crafted cflags in a malicious third-party package.

binary-exploitationexploitationpayload-development+2
6 years ago
CVE-2021-32157 preview

CVE-2021-32157

GitHubmesh3l911/cve-2021-32157

Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's Scheduled Cron Jobs feature

exploitationpayload-developmentpenetration-testing+3
5 years ago
Homework-of-Python preview

Homework-of-Python

GitHub3gstudent/homework-of-python

Python codes of my blog.

exploitationinformation-gatheringpassword-attacks+5
4103 years ago
SharpZipRunner preview

SharpZipRunner

GitHubjfmaes/sharpziprunner

Executes position independent shellcode from an encrypted zip

exploitationpayload-developmentpayload-generation+3
3035 years ago
Shelltropy preview

Shelltropy

GitHubkleiton0x00/shelltropy

A technique of hiding malicious shellcode via Shannon encoding.

exploitationmalware-analysispayload-development+1
2693 years ago
voidmap preview

voidmap

GitHubsamueltulach/voidmap

Using CVE-2021-40449 to manual map kernel mode driver

binary-exploitationexploitationexploit-frameworks+2
1054 years ago
LSTAR-EN preview

LSTAR-EN

GitHubmoscowchill/lstar-en

LSTAR - CobaltStrike Translated to EN

command-and-controlexploitationids-ips-evasion+9
233 years ago
CVE-2026-32710 preview

CVE-2026-32710

GitHubdinosn/cve-2026-32710

Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

binary-exploitationdatabase-securityexploitation+4
154 months ago
CVE-2016-10033 preview

CVE-2016-10033

GitHub0x00-0x00/cve-2016-10033

PHPMailer < 5.2.18 Remote Code Execution Exploit

code-analysisexploitationpayload-development+2
68 years ago
selenium-node-takeover-kit preview

selenium-node-takeover-kit

GitHubjonstratton/selenium-node-takeover-kit

A collection of selenium tests that might aid it takeover of a selenium node

command-and-controldata-exfiltrationexploit-frameworks+6
39 months ago
CVE-2004-2271-MiniShare-1.4.1-BOF preview

CVE-2004-2271-MiniShare-1.4.1-BOF

GitHubpwncone/cve-2004-2271-minishare-1.4.1-bof

A python implementation of CVE-2004-2271 targeting MiniShare 1.4.1.

binary-exploitationexploitationpayload-development+3
6 years ago
Previous123Next