Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
792 results
CVE-2017-16524 preview

CVE-2017-16524

GitHubrealistic-security/cve-2017-16524

Unrestricted file upload vulnerability - Web Viewer 1.0.0.193 on Samsung SRN-1670D

exploit-frameworkspayload-developmentpenetration-testing+3
4
8 years ago
CVE-2025-7771 preview

CVE-2025-7771

GitHubyulisec/cve-2025-7771

Full exploit chain for CVE-2025-7771 in ThrottleStop.sys, abusing unvalidated physical memory R/W IOCTLs to escalate from administrator to SYSTEM on…

binary-exploitationdefensive-toolsexploitation+5
110 days ago
BIT-EternalBlue-for-macOS_Linux preview

BIT-EternalBlue-for-macOS_Linux

GitHubi-rinka/bit-eternalblue-for-macos_linux

Exploit CVE-2017-7494 for Net Security course final Assignment. This would reveal the vulnerability of services that run in administrative priority…

binary-exploitationeducationexploitation+5
45 years ago
buherablog-cve-2013-1488 preview

buherablog-cve-2013-1488

GitHubv-p-b/buherablog-cve-2013-1488

PoC Java exploit based on http://www.contextis.com/research/blog/java-pwn2own/

binary-exploitationexploitationpayload-development+2
411 years ago
CVE-2024-10793 preview

CVE-2024-10793

GitHubmahajian/cve-2024-10793

Proof-of-concept exploit for CVE-2024-10793 targeting WordPress wp-security-audit-log plugin. Demonstrates account takeover, privileged user…

exploitationpayload-developmentprivilege-escalation+3
21 year ago
CVE-2021-40845 preview

CVE-2021-40845

GitHubricardojoserf/cve-2021-40845

AlphaWeb XE, the embedded web server running on AlphaCom XE, has a vulnerability which allows to upload PHP files leading to RCE once the…

exploitationpayload-developmentpenetration-testing+2
25 years ago
CVE-2019-9791 preview

CVE-2019-9791

GitHubsp0pielar/cve-2019-9791

Exploit chain for CVE-2019-9791 & CVE-2019-11708 against firefox 65.0 on windows 64bit

exploitationpayload-developmentpenetration-testing+1
25 years ago
spider preview

spider

GitHub173210/spider

Exploit for CVE-2013-2842, a kernel privilege escalation vulnerability, providing local privilege escalation on affected Linux systems.

exploitationpayload-developmentpenetration-testing+2
311 years ago
CVE-2025-57819-FreePBX-RCE2Root preview

CVE-2025-57819-FreePBX-RCE2Root

GitHubozcanpng/cve-2025-57819-freepbx-rce2root

Full-chain CVE-2025-57819 PoC for FreePBX 15, 16, and 17: unauthenticated SQLi to RCE and root takeover.

exploitationpayload-developmentpenetration-testing+4
23 months ago
CVE-2026-31431-Metasploit-exploit preview

CVE-2026-31431-Metasploit-exploit

GitHubadityasingh108/cve-2026-31431-metasploit-exploit

Automated Metasploit post-exploitation module for CVE-2026-31431 ("Copy Fail"). Weaponizes a deterministic logic flaw in the Linux kernel AF_ALG…

binary-exploitationeducationexploitation+7
24 months ago
CVE-2026-31431-copy-fail preview

CVE-2026-31431-copy-fail

GitHubtrevocastles/cve-2026-31431-copy-fail

Exploit PoC for CVE-2026-31431 that uses AF_ALG and splice() to overwrite Linux page cache and patch /usr/bin/su in memory, escalating unprivileged…

binary-exploitationexploitationpayload-development+1
12 months ago
CVE-2026-12295-UXXS-in-my-wasm preview

CVE-2026-12295-UXXS-in-my-wasm

GitHubsneakynachos/cve-2026-12295-uxxs-in-my-wasm

Firefox content->parent srcdoc forge (N-day, bug 2040160): forged PDocumentChannel with SrcdocData on a non-about:srcdoc URI -> attacker HTML served…

exploitationpapers-researchpayload-development+2
11 month ago
CVE-2026-64824-PoC preview

CVE-2026-64824-PoC

GitHubboreas37/cve-2026-64824-poc

CVE-2026-64824 — Home Assistant backup-restore symlink path traversal → root RCE. First working PoC, verified on real HA 2026.5.4 (sitecustomize.py…

exploitationiot-securitypayload-development+2
11 month ago
CVE-2017-5638-Apache-Struts2 preview

CVE-2017-5638-Apache-Struts2

GitHubaljazceru/cve-2017-5638-apache-struts2

Tweaking original PoC (https://github.com/rapid7/metasploit-framework/issues/8064) to work on self-signed certificates

exploitationpayload-developmentpenetration-testing+2
29 years ago
vsFTP-2.3.4-Remote-Root-Shell-Exploit preview

vsFTP-2.3.4-Remote-Root-Shell-Exploit

GitHubgill-singh-a/vsftp-2.3.4-remote-root-shell-exploit

A Simple Python Program that uses gets a Remote Root Shell on the Target Device by exploiting a Vulnerability (CVE-2011-2523) present in vsFTP 2.3.4

command-and-controlexploitationpayload-development+3
22 years ago
CVE-2024-48990-PoC preview

CVE-2024-48990-PoC

GitHubcyb3rfr0g/cve-2024-48990-poc

My take on the needrestart Python CVE-2024-48990

exploitationpayload-developmentpenetration-testing+2
21 year ago
CVE-2019-11043 preview

CVE-2019-11043

GitHubfairyming/cve-2019-11043

Proof-of-concept exploit for CVE-2019-11043, a PHP-FPM underflow vulnerability, built on the pocsuite framework for automated web application…

exploitationpayload-developmentpenetration-testing+2
16 years ago
CVE-2026-31431_exp.c preview

CVE-2026-31431_exp.c

GitHubhelios973/cve-2026-31431_exp.c

C exploit for CVE-2026-31431 providing privilege escalation through a custom binary payload. Designed for testing and validation of the vulnerability.

binary-exploitationexploitationpayload-development+2
4 months ago
Previous1…343536…44Next