Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
9 results
SillyRAT preview

SillyRAT

GitHubhash3lizer/sillyrat

A Python based RAT 🐀 (Remote Access Trojan) for getting reverse shell 🖥️

command-and-controlpayload-generationpost-exploitation+1
9433 years ago
cve-2023-23397 preview

cve-2023-23397

GitHubbronzebee/cve-2023-23397

Python script for sending e-mails with CVE-2023-23397 payload using SMTP

email-securityexploitationpassword-attacks+3
143 years ago
CVE-2021-1675 preview

CVE-2021-1675

GitHubcalebstewart/cve-2021-1675

Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)

exploitationpayload-generationpenetration-testing+1
1.1k5 years ago
PSAsyncShell preview

PSAsyncShell

GitHubjoelgmsec/psasyncshell

Asynchronous TCP reverse shell in pure PowerShell that bypasses firewalls via non-blocking I/O, with command history, file upload/download, and…

command-and-controlids-ips-evasionpayload-generation+1
15710 months ago
CVE-2025-22131-PoC preview

CVE-2025-22131-PoC

GitHubzzn1nj4/cve-2025-22131-poc

PoC for CVE-2025-22131

exploitationpayload-generationphishing-tools+2
11 year ago
python-log4rce preview

python-log4rce

GitHubalexandre-lavoie/python-log4rce

An All-In-One Pure Python PoC for CVE-2021-44228

command-and-controlexploitationpayload-generation+3
1784 years ago
CVE-2021-32819 preview

CVE-2021-32819

GitHubabady0x1/cve-2021-32819

SquirrellyJS mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration…

exploitationpayload-generationremote-access-tool+2
105 years ago
log4py preview

log4py

GitHubdotpy-hax/log4py

pythonic pure python RCE exploit for CVE-2021-44228 log4shell

educationexploitationpayload-generation+3
24 years ago
CVE-2023-5360-exploit-with-native-libraries preview

CVE-2023-5360-exploit-with-native-libraries

GitHublavirudilshan/cve-2023-5360-exploit-with-native-libraries

CVE-2023-5360 PoC: Unauthenticated arbitrary file upload leading to RCE in Royal Elementor Addons (≤ 1.3.78), written in pure Python.

educationexploitationpayload-generation+3
19 months ago