Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
29 results
CVE-2024-25641 preview

CVE-2024-25641

GitHubd3ext/cve-2024-25641

Proof-of-concept exploit for CVE-2024-25641, an authenticated RCE in Cacti 1.2.26 via the Package Import feature, enabling arbitrary PHP code…

exploitationpayload-developmentpenetration-testing+2
1
1 year ago
SmmBackdoor preview

SmmBackdoor

GitHubcr4sh/smmbackdoor

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

exploitationfirmware-analysishardware-hacking+4
6342 years ago
FuguHub-8.4-Authenticated-RCE-CVE-2024-27697 preview

FuguHub-8.4-Authenticated-RCE-CVE-2024-27697

GitHubsanjindedic/fuguhub-8.4-authenticated-rce-cve-2024-27697

Arbitrary Code Execution on FuguHub 8.4

command-and-controlexploitationpayload-development+5
102 years ago
CVE-2026-33017-langflow-rce preview

CVE-2026-33017-langflow-rce

GitHubarensballiu/cve-2026-33017-langflow-rce

Proof-of-concept for CVE-2026-33017, demonstrating unauthenticated remote code execution in vulnerable Langflow versions through malicious…

exploitationpayload-developmentpenetration-testing+3
8 days ago
CVE-2024-48990-Automatic-Exploit preview

CVE-2024-48990-Automatic-Exploit

GitHubserner77/cve-2024-48990-automatic-exploit

Automated local privilege escalation exploit for CVE-2024-48990 (needrestart v3.7), leveraging PYTHONPATH hijacking to gain root access.

educationexploitationpayload-development+3
911 months ago
ExploitTensorflowCVE-2021-37678 preview

ExploitTensorflowCVE-2021-37678

GitHubfran-cics/exploittensorflowcve-2021-37678

TP Seguridad Informática UTN FRBA 2021

ai-securitycontainer-securityeducation+3
24 years ago
ipfire-2-25-auth-rce preview

ipfire-2-25-auth-rce

GitHubkaanaryoverflow/ipfire-2-25-auth-rce

ipfire 2.25 authenticated remote code execution

binary-exploitationexploitationpayload-development+3
25 years ago
CVE-2022-41840-PoC preview

CVE-2022-41840-PoC

GitHubprinceaikinsbaidoo/cve-2022-41840-poc

This is the PoC exploit for CVE-2022-41840, running Zenario

educationexploitationpayload-development+3
7 months ago
CVE-2021-44228 preview

CVE-2021-44228

GitHublucaspdiniz/cve-2021-44228

Log4j Vulnerability RCE - CVE-2021-44228

educationexploitationpayload-development+4
2 years ago
CVE-2024-54160-Opensearch-HTML-And-Injection-Stored-XSS preview

CVE-2024-54160-Opensearch-HTML-And-Injection-Stored-XSS

GitHubjflye/cve-2024-54160-opensearch-html-and-injection-stored-xss

Proof-of-concept exploit for CVE-2024-54160 demonstrating stored XSS and HTML injection in OpenSearch Reports plugin via malicious iframe payload in…

exploitationpayload-developmentpenetration-testing+3
1 year ago
CVE-2019-16784-POC preview

CVE-2019-16784-POC

GitHubckrielle/cve-2019-16784-poc

A Proof of Concept exploit for the PyInstaller CVE-2019-16783

binary-exploitationeducationexploitation+4
2 years ago
Previous12Next