Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
47 results
CVE-2019-18634 preview

CVE-2019-18634

GitHubl0w3/cve-2019-18634

This repo contains both the exploit and the explaination of how this vulnerability is exploited

binary-exploitationeducationexploitation+3
1 year ago
exploit-writing-for-oswe preview

exploit-writing-for-oswe

GitHubrizemon/exploit-writing-for-oswe

Tips on how to write exploit scripts (faster!)

curated-resourceseducationpayload-development+4
6012 years ago
CVE-2020-15368 preview

CVE-2020-15368

GitHubstong/cve-2020-15368

CVE-2020-15368, aka "How to exploit a vulnerable driver"

binary-exploitationeducationexploitation+4
5154 years ago
CVE-2020-2551 preview

CVE-2020-2551

GitHubhktalent/cve-2020-2551

how detect CVE-2020-2551 poc exploit python Weblogic RCE with IIOP

exploitationpayload-developmentpenetration-testing+3
2103 years ago
CmdLineSpoofer preview

CmdLineSpoofer

GitHubplackyhacker/cmdlinespoofer

How to spoof the command line when spawning a new process from C#.

command-and-controleducationexploitation+5
1124 years ago
CVE-2018-14667 preview

CVE-2018-14667

GitHubsyriusbughunt/cve-2018-14667

All about CVE-2018-14667; From what it is to how to successfully exploit it.

educationexploitationlabs-practice+3
507 years ago
CVE-2022-42889-POC preview

CVE-2022-42889-POC

GitHubkorteke/cve-2022-42889-poc

A simple application that shows how to exploit the CVE-2022-42889 vulnerability

educationexploitationpayload-development+3
103 years ago
CVE-2024-48990-Exploit preview

CVE-2024-48990-Exploit

GitHubally-petitt/cve-2024-48990-exploit

My exploit for CVE-2024-48990. Full details of how I made this are on my blog.

exploitationpayload-developmentpenetration-testing+3
51 year ago
WPTimeCapsulePOC preview

WPTimeCapsulePOC

GitHubsecforce/wptimecapsulepoc

An authentication bypass was recently discovered (https://www.webarxsecurity.com/vulnerability-infinitewp-client-wp-time-capsule/) on WP Time Capsule…

authenticationexploitationpayload-development+3
56 years ago
CVE-2022-42889-POC preview

CVE-2022-42889-POC

GitHubakshayithape-devops/cve-2022-42889-poc

A simple dockerize application that shows how to exploit the CVE-2022-42889 vulnerability.

educationexploitationlabs-practice+3
53 years ago
Weblogic_Wsat_RCE preview

Weblogic_Wsat_RCE

GitHubkbsec/weblogic_wsat_rce

POC for CVE-2017-10271. Since java.lang.ProcessBuilder was the original vector for RCE, there are multiple signature based rules that block this…

educationexploitationpayload-development+3
47 years ago
CVE-2026-21016-Malicious-PyPI-Package-Install-Hook-setup.py-Execution- preview

CVE-2026-21016-Malicious-PyPI-Package-Install-Hook-setup.py-Execution-

GitHubgeorge0papasotiriou/cve-2026-21016-malicious-pypi-package-install-hook-setup.py-execution-

Demonstrates how a malicious Python package executes arbitrary commands during pip install via setup.py, highlighting PyPI supply chain and…

adversarial-attackeducationexploitation+2
1 month ago
cybersecurity-struts2 preview

cybersecurity-struts2

GitHubsighup1/cybersecurity-struts2

Struts2 Application Vulnerable to CVE-2017-5638. Explains how the exploit of the vulnerability works in relation to OGNL and the JakartaMultiPart…

educationexploitationpayload-development+3
17 years ago
CVE-2010-1240 preview

CVE-2010-1240

GitHubasepsaepdin/cve-2010-1240

Educational proof-of-concept demonstrating how to embed a Meterpreter backdoor into a PDF file exploiting CVE-2010-1240, with step-by-step Metasploit…

exploit-frameworkspayload-developmentpenetration-testing+3
13 years ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubthemalwareguardian/cve-2025-5548

Buffer overflow in FreeFloat FTP Server 1.0 illustrating how a single unsafe handler can generate multiple CVE entries across different commands.

binary-exploitationdebuggerseducation+7
15 months ago
CVE-2017-14980 preview

CVE-2017-14980

GitHubthemalwareguardian/cve-2017-14980

Stack-based buffer overflow in Sync Breeze Enterprise 10.0.28 reachable through the /login handler, demonstrating how unchecked input length can…

binary-exploitationdebuggerseducation+7
15 months ago
CVE-2003-0264 preview

CVE-2003-0264

GitHubthemalwareguardian/cve-2003-0264

Classic stack-based buffer overflow in SLMail 5.1 showing how early mail servers could be compromised through oversized SMTP and POP3 commands.

binary-exploitationdebuggerseducation+7
15 months ago
CVE-2018-18912 preview

CVE-2018-18912

GitHubthemalwareguardian/cve-2018-18912

SEH-based buffer overflow in Easy File Sharing Web Server 7.2 demonstrating how an authenticated HTTP POST parameter can corrupt the exception…

binary-exploitationdebuggerseducation+6
15 months ago
Previous123Next