Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
792 results
CVE-2019-0752 preview

CVE-2019-0752

GitHubedxsh/cve-2019-0752

Proof-of-concept exploit for CVE-2019-0752 targeting Internet Explorer 11 on Windows 10 x64. Uses JavaScript DOM manipulation and special address…

exploitationpayload-developmentpenetration-testing+2
2
5 years ago
CVE-2022-22965_Spring4Shell preview

CVE-2022-22965_Spring4Shell

GitHubludovicpatho/cve-2022-22965_spring4shell

A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit…

code-analysisexploitationpayload-development+3
24 years ago
CTT-Enhanced-CVE-2026-46339-Exploit-Engine preview

CTT-Enhanced-CVE-2026-46339-Exploit-Engine

GitHubsimoesctt/ctt-enhanced-cve-2026-46339-exploit-engine

Python framework exploiting CVE-2026-46339 for unauthenticated RCE on 9Router via MCP bridge, using temporal sharding and dispersion to evade…

exploitationpayload-developmentred-teaming+3
1 month ago
CVE-2022-1329-WordPress-Elementor-RCE preview

CVE-2022-1329-WordPress-Elementor-RCE

GitHubgrazee/cve-2022-1329-wordpress-elementor-rce

Proof-of-concept exploit for CVE-2022-1329, a remote code execution vulnerability in WordPress Elementor 3.6.0-3.6.2. Includes Docker-based…

exploitationpayload-developmentpenetration-testing+3
44 years ago
CVE-2020-11651-Poc preview

CVE-2020-11651-Poc

GitHubs1lentf00thold/cve-2020-11651-poc

Proof-of-concept exploit for CVE-2020-11651, a critical remote code execution vulnerability in SaltStack, enabling unauthenticated command execution…

exploitationpayload-developmentpenetration-testing+2
3 months ago
CVE-2022-24112 preview

CVE-2022-24112

GitHubfatkz/cve-2022-24112

Proof-of-Concept exploit for Apache APISIX 2.12.x RCE (CVE-2022-24112) via Lua filter_func injection. Executes arbitrary system commands on…

educationexploitationpayload-development+3
1 year ago
laravel_cookie_killer preview

laravel_cookie_killer

GitHubsynacktiv/laravel_cookie_killer

Decrypt and re-encrypt Laravel session cookies to exploit insecure PHP deserialization for remote code execution.

encryption-decryption-toolsexploitationpayload-development+4
283 years ago
Ducky-Exploit preview

Ducky-Exploit

GitHubitsmehacker/ducky-exploit

Arduino Rubber Ducky Framework

exploitationhardware-hackingpayload-development+2
1087 years ago
CVE-2022-45771-Pwndoc-LFI-to-RCE preview

CVE-2022-45771-Pwndoc-LFI-to-RCE

GitHubp0dalirius/cve-2022-45771-pwndoc-lfi-to-rce

Pwndoc local file inclusion to remote code execution of Node.js code on the server

exploitationpayload-developmentpenetration-testing+3
471 year ago
CVE-2021-1732 preview

CVE-2021-1732

GitHubflyinbedxyz/cve-2021-1732

Local privilege escalation exploit for CVE-2021-1732 targeting Windows 10 and Server versions, with PoC code and affected system enumeration.

binary-exploitationexploitationpayload-development+2
5 years ago
CVE-2025-67435 preview

CVE-2025-67435

GitHubrajchowdhury240/cve-2025-67435

A critical Remote Code Execution (RCE) vulnerability has been identified in PluXML CMS version 5.8.22. This vulnerability allows authenticated…

code-analysisexploitationpayload-development+3
19 months ago
CVE-2022-22909 preview

CVE-2022-22909

GitHub0z09e/cve-2022-22909

Hotel Druid 3.0.3 Code Injection to Remote Code Execution

code-analysisexploitationpayload-development+3
53 years ago
PrintNightmare-CVE-2021-34527 preview

PrintNightmare-CVE-2021-34527

GitHubnemo-wq/printnightmare-cve-2021-34527

PrintNightmare - Windows Print Spooler RCE/LPE Vulnerability (CVE-2021-34527, CVE-2021-1675) proof of concept exploits

exploitationpayload-developmentpenetration-testing+4
1765 years ago
CVE-2022-41852 preview

CVE-2022-41852

GitHubwarxim/cve-2022-41852

CVE-2022-41852 Proof of Concept (unofficial)

code-analysisexploitationpayload-development+3
743 years ago
CVE-2021-26084 preview

CVE-2021-26084

GitHuborangmuda/cve-2021-26084

CVE-2021-26084 - Confluence Server Webwork OGNL injection

educationexploitationpayload-development+3
44 years ago
CVE-2025-55182-realistic-poc preview

CVE-2025-55182-realistic-poc

GitHubjoshterrill/cve-2025-55182-realistic-poc

a realistic POC demonstrating the missing `hasOwnProperty` check in [email protected]

code-analysiseducationexploitation+3
10 months ago
CVE-2026-25924 preview

CVE-2026-25924

GitHubdrkim-dev/cve-2026-25924

Proof-of-concept exploit for CVE-2026-25924, demonstrating administrative remote code execution in Kanboard through a missing access control check on…

code-analysisexploitationpayload-development+3
27 months ago
CVE-2023-37941 preview

CVE-2023-37941

GitHubbarroqueiro/cve-2023-37941

Exploit on the default cache of superset by using pickle

code-analysisexploitationpayload-development+3
13 years ago
Previous1…456…44Next