Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
792 results
Bluekeep-Metasploit-Lab-Project preview

Bluekeep-Metasploit-Lab-Project

GitHubnweks/bluekeep-metasploit-lab-project

Exploiting Bluekeep (CVE-2019-0708) on windows 7 using metasploit (Esucational lab)

educationexploit-frameworkslabs-practice+3
5 months ago
bluekeep-metasploit-lab-project preview

bluekeep-metasploit-lab-project

GitHubemmadej1234/bluekeep-metasploit-lab-project

Exploiting BlueKeep (CVE-2019-0708) on Windows 7 using Metasploit

educationexploitationlabs-practice+5
5 months ago
CVE-2025-3500-Poc preview

CVE-2025-3500-Poc

GitHubchicken3962/cve-2025-3500-poc

Educational lab environment for researching CVE-2025-3500, an integer overflow privilege escalation exploit in Avast Antivirus 25.1.981.6 on Windows,…

binary-exploitationeducationexploitation+5
110 months ago
CVE-2026-26331 preview

CVE-2026-26331

GitHubdxleryt/cve-2026-26331

Proof-of-concept demonstrating arbitrary command injection via yt-dlp's --netrc-cmd option, exploiting shell metacharacters in URLs to execute…

command-and-controlexploitationpayload-development+2
17 months ago
CVE-2021-4034 preview

CVE-2021-4034

GitHubvilasboasph/cve-2021-4034

Exploit for CVE-2021-4034, a local privilege escalation in polkit's pkexec, providing a root shell via a shared library and GCONV path manipulation.

binary-exploitationexploitationpayload-development+2
14 years ago
IngressNightterror preview

IngressNightterror

GitHubi3r1h0n/ingressnightterror

My view on IngressNightmare vulnerability (CVE-2025-1974)

cloud-securitycontainer-securityeducation+5
111 months ago
CVE-2025-24813 preview

CVE-2025-24813

GitHubseahcy/cve-2025-24813

Instructions for rapid deployment of Tomcat v9.0.90 with java 25.0.1 2025-10-21 LTS on Windows Server 2019 Standard for lazy researchers.

educationexploitationpayload-development+3
19 months ago
CVE-2026-23744-PoC preview

CVE-2026-23744-PoC

GitHubh1sok444/cve-2026-23744-poc

Proof-of-concept exploit for CVE-2026-23744, targeting /api/mcp/connect to achieve remote command execution on Linux systems via reverse shell.

command-and-controlexploitationpayload-development+2
6 months ago
CVE-2024-30804 preview

CVE-2024-30804

GitHubgeozstevenzz/cve-2024-30804

Windows LPE PoC exploiting the AsInsHelp64.sys driver via arbitrary physical memory read/write to overwrite kernel tokens and gain SYSTEM privileges.

binary-exploitationexploitationpayload-development+3
9 months ago
nextjs-CVE-2025-55182 preview

nextjs-CVE-2025-55182

GitHubd0cnull/nextjs-cve-2025-55182

Proof-of-concept exploit for critical unauthenticated RCE in Next.js Server Actions via React Flight Protocol deserialization, enabling arbitrary…

ctfeducationexploitation+5
9 months ago
CVE-2024-23897-test-windows preview

CVE-2024-23897-test-windows

GitHubharekrishnarai/cve-2024-23897-test-windows

Proof-of-concept exploit for CVE-2024-23897 targeting Jenkins on Windows systems, demonstrating arbitrary file read vulnerability.

exploitationpayload-developmentpenetration-testing+2
10 months ago
CVE-2019-25485 preview

CVE-2019-25485

GitHubthemalwareguardian/cve-2019-25485

Stack-based buffer overflow in R 3.4.4. Full exploitation on x86, but only RIP control with gadget analysis on x64 due to program constraints. The…

binary-exploitationdebuggerseducation+5
6 months ago
RCE-CVE-2025-3248 preview

RCE-CVE-2025-3248

GitHubtiemio/rce-cve-2025-3248

This Python script exploits CVE-2025-3248 to execute arbitrary commands or spawn a reverse shell on a vulnerable system. Authentication is required…

exploitationpayload-developmentpenetration-testing+3
11 year ago
CVE-2009-1330 preview

CVE-2009-1330

GitHubwar4uthor/cve-2009-1330

CVE-2009-1330 - Easy RM to MP3 Converter Local Buffer Overflow. Tested on Windows XP Professional SP3

binary-exploitationexploitationpayload-development+2
7 years ago
React2Shell preview

React2Shell

GitHubi3r1h0n/react2shell

My research on CVE-2025-55182

educationexploitationpayload-development+3
10 months ago
CVE-2025-32463_PoC preview

CVE-2025-32463_PoC

GitHubblackcat4347/cve-2025-32463_poc

Proof-of-concept exploit for CVE-2025-32463, demonstrating shared library injection via precompiled payload for immediate execution on affected…

binary-exploitationeducationexploitation+3
1 year ago
CVE-2007-1567 preview

CVE-2007-1567

GitHubwar4uthor/cve-2007-1567

CVE-2007-1567 - WarFTP 1.65 'USER' Remote Buffer Overflow Vulnerability. Tested on Windows XP Professional SP3.

binary-exploitationexploitationpayload-development+2
7 years ago
CVE-2009-1324 preview

CVE-2009-1324

GitHubwar4uthor/cve-2009-1324

CVE-2009-1324 - ASX to MP3 Converter Local Buffer Overflow. Tested on Windows XP Professional SP3

binary-exploitationexploitationpayload-development+2
7 years ago
Previous1…353637…44Next