Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
45 results
go-exploit preview

go-exploit

GitHubvulncheck-oss/go-exploit

Go-based exploit development framework with built-in phases for target verification, version scanning, exploitation, and C2. Supports multiple…

command-and-controlexploitationexploit-frameworks+3
464
3 days ago
react2shell preview

react2shell

GitHubfreeqaz/react2shell

RCE exploit toolkit for CVE-2025-55182 and CVE-2025-66478 in React Server Components. Includes multiple exploit variants, detection scripts, a…

code-analysisdynamic-analysis-sandboxingeducation+6
689 months ago
git-lfs-RCE-exploit-CVE-2020-27955-Go preview

git-lfs-RCE-exploit-CVE-2020-27955-Go

GitHubexploitbox/git-lfs-rce-exploit-cve-2020-27955-go

Go-based exploit for CVE-2020-27955, achieving remote code execution via Git LFS on Windows across multiple development tools including Git, VS Code,…

exploitationpayload-developmentpenetration-testing+3
155 years ago
CVE-2026-43499-armv7 preview

CVE-2026-43499-armv7

GitHubtc3650/cve-2026-43499-armv7

ARM32 Linux kernel privilege escalation exploit for CVE-2026-43499 (GhostLock futex UAF) targeting Huawei Watch 4 Pro with multiple exploitation…

binary-exploitationembedded-systems-securityexploitation+4
91 month ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubcc3305/cve-2025-55182

Pre-authentication RCE exploit for React Server Components (CVE-2025-55182). Targets unsafe deserialization in react-server-dom packages across…

exploitationpayload-developmentpenetration-testing+2
2 months ago
CVE-2025-55182-poc preview

CVE-2025-55182-poc

GitHubducducuc111/cve-2025-55182-poc

Proof-of-concept exploit for CVE-2025-55182, demonstrating remote code execution via prototype chain vulnerability in React Server Components.…

code-analysisctfeducation+5
9 months ago
best-CVE-2025-8088 preview

best-CVE-2025-8088

GitHubpentestfunctions/best-cve-2025-8088

Winrar CVE exploitation before 7.13 using multiple ADS streams on a single file (Custom PDF implementation)

binary-exploitationexploitationpayload-development+4
101 year ago
drupalgeddon2 preview

drupalgeddon2

GitHubjirojo2/drupalgeddon2

MSF exploit module for Drupalgeddon 2 (CVE-2018-7600 / SA-CORE-2018-002)

exploit-frameworkspayload-developmentpenetration-testing+3
58 years ago
tenda-ac8v4-rop preview

tenda-ac8v4-rop

GitHubretr0reg/tenda-ac8v4-rop

Exploits for Tenda Ac8v4 stack-based overflow to Remote-Code Execution via Mipsel Ropping (CVE-2023-33669 - CVE-2023-33675)

binary-exploitationembedded-systems-securityexploitation+5
62 years ago
CVE-2023-47400 preview

CVE-2023-47400

GitHublucasvanhaaren/cve-2023-47400

Proof of Concept for the CVE-2023-47400

exploitationpayload-developmentpenetration-testing+3
22 years ago
CVE-2025-55182-checker preview

CVE-2025-55182-checker

GitHubharness-security-labs/cve-2025-55182-checker

Multi-technique vulnerability detector for CVE-2025-55182 in React/Next.js applications. Tests gadget chains, RCE payloads, and WAF bypass variants…

exploitationpayload-developmentpenetration-testing+3
18 months ago
claude-poc preview

claude-poc

GitHubrootup/claude-poc

Claude Code Remote Code Execution

command-and-controlexploitationpayload-development+3
157 months ago
CVE-2018-7600 preview
Archived

CVE-2018-7600

GitHubthehappydinoa/cve-2018-7600

Proof-of-Concept for Drupal CVE-2018-7600 / SA-CORE-2018-002

educationexploitationpayload-development+2
73 years ago
MaldevAcademyLdr.2 preview

MaldevAcademyLdr.2

GitHubmaldev-academy/maldevacademyldr.2

RunPE implementation with multiple evasive techniques (2)

cryptographyids-ips-evasionpayload-development+3
28611 months ago
cve-2016-1555 preview

cve-2016-1555

GitHubide0x90/cve-2016-1555

Metasploit module exploiting unauthenticated command injection in multiple Netgear router models to achieve remote code execution with root…

embedded-systems-securityexploitationexploit-frameworks+5
27 years ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubthemalwareguardian/cve-2025-5548

Buffer overflow in FreeFloat FTP Server 1.0 illustrating how a single unsafe handler can generate multiple CVE entries across different commands.

binary-exploitationdebuggerseducation+7
15 months ago
CVE-2010-5230 preview

CVE-2010-5230

GitHubotofoto/cve-2010-5230

Multiple untrusted search path vulnerabilities in MicroStation 7.1 allow local users to gain privileges via a Trojan horse (1) mptools.dll, (2)…

binary-exploitationexploitationpayload-development+2
5 years ago
ProtectMyTooling preview

ProtectMyTooling

GitHubmgeeky/protectmytooling

Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking,…

binary-analysisexploit-frameworksioc-management+5
1.1k10 months ago
Previous123Next