Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
72 results
CVE-2020-0796 preview

CVE-2020-0796

GitHubthelostworldfree/cve-2020-0796

PoC RCE Reverse Shell for CVE-2020-0796 (SMBGhost)

exploitationpayload-developmentpenetration-testing+3
11
6 years ago
Harmonic preview

Harmonic

GitLabrunik/harmonic

Suite for reverse shell handling geared toward working within the native shell

command-and-controlinformation-gatheringpayload-development+7
8 years ago
CVE-2023-21823 preview

CVE-2023-21823

GitHubelizarfish/cve-2023-21823

CVE-2023-21823 PoC

command-and-controleducationexploitation+3
143 years ago
Elastix-2.2.0-CVE-2012-4869 preview

Elastix-2.2.0-CVE-2012-4869

GitHubcyberdesu/elastix-2.2.0-cve-2012-4869
educationexploitationpayload-development+3
1 year ago
CVE-2025-55182-Exploit preview

CVE-2025-55182-Exploit

GitHubdotnetguard/cve-2025-55182-exploit

CVE-2025-55182 — Next.js Flight Deserialization RCE exploit with interactive shell, single-command execution and multi-payload reverse shell chain.…

exploitationpayload-developmentpenetration-testing+3
9 days ago
CVE-2022-0847-Exploit-Implementation preview

CVE-2022-0847-Exploit-Implementation

GitHubjoeymeech/cve-2022-0847-exploit-implementation

Using CVE-2022-0847, "Dirty Pipe Exploit", to pop a reverse bash shell for arbitrary code execution on a foreign machine.

binary-exploitationexploitationpayload-development+3
13 years ago
CVE-2025-24893-Reverse-Shell preview

CVE-2025-24893-Reverse-Shell

GitHubazureadtrent/cve-2025-24893-reverse-shell

Reverse Shell Payload for CVE-2025-24893

exploitationpayload-developmentpenetration-testing+3
1 year ago
LAZYPARIAH preview
Archived

LAZYPARIAH

GitHuboctetsplicer/lazypariah

A tool for generating reverse shell payloads on the fly.

command-and-controlctfexploitation+5
15 months ago
Zerodoor preview

Zerodoor

GitHubsouhardya/zerodoor

A script written lazily for generating cross-platform backdoors on the go :)

payload-developmentpayload-generationpenetration-testing+2
1877 years ago
CVE-2017-17562 preview

CVE-2017-17562

GitHubivanitlearning/cve-2017-17562

Standalone Python 3 exploit for CVE-2017-17562

exploitationpayload-developmentpenetration-testing+3
106 years ago
CVE-2023-27350 preview

CVE-2023-27350

GitHubadhikara13/cve-2023-27350

Exploit for Papercut CVE-2023-27350. [+] Reverse shell [+] Mass checking

command-and-controlexploitationpayload-development+3
83 years ago
XSS2Shell preview

XSS2Shell

GitHubg0d150ne/xss2shell

Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

command-and-controlexploitationinformation-gathering+6
10 days ago
xwiki_solrsearch-rce-exploit preview

xwiki_solrsearch-rce-exploit

GitHubtorjan0/xwiki_solrsearch-rce-exploit

Unauth RCE PoC for XWiki SolrSearch (CVE-2025-24893). Command exec + reverse shell.

command-and-controleducationexploitation+3
28 months ago
CVE-2025-64512 preview

CVE-2025-64512

GitHubstoic-crawler/cve-2025-64512

Exploit for CVE-2025-64512 to get a reverse shell.

educationexploitationpayload-development+3
29 days ago
CVE-2025-55182-POC-NEXTJS preview

CVE-2025-55182-POC-NEXTJS

GitHubaliclub0x00/cve-2025-55182-poc-nextjs

Working proof of concept for NextJS RCE to establish a reverse shell. [React2Shell]

code-analysisdynamic-analysis-sandboxingexploitation+5
288 months ago
Flowise-CVE-2026-58057-exploit preview

Flowise-CVE-2026-58057-exploit

GitHubcerberusmrxi/flowise-cve-2026-58057-exploit

Flowise Windows RCE exploit for CVE-2026-58057. Bypasses environment variable validation via case-sensitive flaw. Uses node_options to inject…

command-and-controlexploitationinformation-gathering+7
128 days ago
CVE-2025-8110 preview

CVE-2025-8110

GitHubghxstsec/cve-2025-8110

Proof-of-concept exploit for CVE-2025-8110, a Gogs RCE vulnerability exploiting path traversal via symbolic links and sshCommand injection to deliver…

exploitationpayload-developmentpenetration-testing+3
54 months ago
Nim-Reverse-Shell preview

Nim-Reverse-Shell

GitHubsn1r/nim-reverse-shell

A simple and stealthy reverse shell written in Nim that bypasses Windows Defender detection. This tool allows you to establish a reverse shell…

educationpayload-developmentpayload-generation+1
1243 years ago
Previous1234Next