Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
1640 results
The-Axer preview

The-Axer

GitHubceh-tn/the-axer

Automated payload generator wrapping msfvenom to streamline creation of platform-specific, encoded, and binded payloads for penetration testing…

exploit-frameworkspayload-developmentpayload-generation+1
988 years ago
NTP_Trojan preview

NTP_Trojan

GitHubahhh/ntp_trojan

Reverse NTP remote access trojan in python, for penetration testers

command-and-controlpayload-developmentpenetration-testing+3
6210 years ago
ASPX_WebShell_COFFLoader preview

ASPX_WebShell_COFFLoader

GitHubepotseluevskaya/aspx_webshell_coffloader

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

command-and-controlpayload-developmentpenetration-testing+3
1366 months ago
CVE-2022-24834 preview

CVE-2022-24834

GitHubconvisolabs/cve-2022-24834

Generic heap overflow exploit for CVE-2022-24834 in Redis Lua cjson library, with auto gadget finder, symbol resolution, and reverse shell handler…

binary-exploitationexploitationpayload-development+3
223 years ago
libenom preview

libenom

GitHubbounteous17/libenom

CLI wrapper for MSFvenom that streamlines payload creation with profile management, automated listener generation, and organized output for…

exploit-frameworkspayload-developmentpayload-generation+1
2110 years ago
CVE-2023-4450-Attack preview

CVE-2023-4450-Attack

GitHubilikeoyt/cve-2023-4450-attack

Automated Java-based exploit tool for CVE-2023-4450 targeting JimuReport, featuring command execution and memory shell injection (Behinder) for…

command-and-controlexploitationpayload-development+3
212 years ago
CVE-2022-21445-for-12.2.1.3.0-Weblogic preview

CVE-2022-21445-for-12.2.1.3.0-Weblogic

GitHubhienkiet/cve-2022-21445-for-12.2.1.3.0-weblogic

Pre-authentication remote code execution exploit for Oracle WebLogic ADF Faces (CVE-2022-21445, CVSS 9.8). Includes detailed environment setup,…

code-analysisexploitationpayload-development+4
52 years ago
CVE-2022-24637 preview

CVE-2022-24637

GitHubicebreack/cve-2022-24637

Fixed exploit for CVE-2022-24637 enabling reliable exploitation of the identified vulnerability for penetration testing and security assessment…

exploitationpayload-developmentpenetration-testing+2
43 years ago
CVE-2020-16898-EXP-POC preview

CVE-2020-16898-EXP-POC

GitHubkomomon/cve-2020-16898-exp-poc

Proof-of-concept exploit for CVE-2020-16898, a Windows TCP/IP remote code execution vulnerability. Includes Python-based exploit scripts targeting…

exploitationnetwork-securitypayload-development+3
55 years ago
Exploits preview

Exploits

GitHubhussienmisbah/exploits

Repository containing exploit scripts for various CVEs, targeting web applications, binaries, and network services, suitable for penetration testing…

exploitationpayload-developmentpenetration-testing+2
511 months ago
CVE-2024-32002_HOOK preview

CVE-2024-32002_HOOK

GitHubjweny/cve-2024-32002_hook

Exploit for CVE-2024-32002, providing a proof-of-concept hook for vulnerability verification and penetration testing.

exploitationpayload-developmentpenetration-testing+2
32 years ago
CVE-2022-36804 preview

CVE-2022-36804

GitHubkhal4n1/cve-2022-36804

Python exploit script for CVE-2022-36804 targeting Bitbucket. Automates exploitation of a command injection vulnerability for penetration testing and…

exploitationpayload-developmentpenetration-testing+2
33 years ago
CVE-2022-38181-aristotle preview

CVE-2022-38181-aristotle

GitHubsoralis0912/cve-2022-38181-aristotle

C-based exploit targeting vulnerability CVE-2022-38181. Provides exploitation code for penetration testing, vulnerability verification, and security…

binary-exploitationexploitationpayload-development+3
1 month ago
CVE-2025-55182-Exploit preview

CVE-2025-55182-Exploit

GitHubdotnetguard/cve-2025-55182-exploit

CVE-2025-55182 — Next.js Flight Deserialization RCE exploit with interactive shell, single-command execution and multi-payload reverse shell chain.…

exploitationpayload-developmentpenetration-testing+3
1 month ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubhualy13/cve-2025-55182

Automated proof-of-concept exploit for Next.js RCE (CVE-2025-55182) with interactive shell, batch scanning, and advanced payload encoding for…

exploitationpayload-developmentpenetration-testing+3
49 months ago
spryCVE-2026-10520 preview

spryCVE-2026-10520

GitHubemilliewatson96/sprycve-2026-10520

Python-based exploit module targeting CVE-2026-10520 with automated payload delivery and vulnerability verification for penetration testing…

exploitationpayload-developmentpenetration-testing+3
2 months ago
EpSiLoNPoInTlnk preview

EpSiLoNPoInTlnk

GitHubepsilonpointori/epsilonpointlnk

Generates obfuscated .lnk files exploiting CVE-2026-21510 with LNK stomping, encrypted payloads, and anti-forensics for authorized penetration…

anti-botexploitationmalware-analysis+4
24 months ago
CVE-2016-010033-010045 preview

CVE-2016-010033-010045

GitHubzi0black/cve-2016-010033-010045

Python3 port of a PHP mail() remote code execution exploit targeting CVE-2016-010033/45 for penetration testing and vulnerability verification.

exploitationpayload-developmentpenetration-testing+2
38 years ago
Previous123…92Next