Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
35 results
CVE-2026-60206-PoC-Exploit preview

CVE-2026-60206-PoC-Exploit

GitHubtc4dy/cve-2026-60206-poc-exploit

👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

authentication-authorizationexploitationexploit-frameworks+8
42 days ago
CVE-2025-61882-POC preview

CVE-2025-61882-POC

GitHubmindflarex/cve-2025-61882-poc

Exploit for CVE-2025-61882, a critical pre-auth RCE in Oracle E-Business Suite. Combines SSRF, CRLF injection, HTTP smuggling, and XSLT injection for…

exploitationpayload-generationpenetration-testing+4
4 months ago
rwsploit preview

rwsploit

GitHubabq0/rwsploit

Automated exploitation scanner for Oracle Reports Server (rwservlet) — CVE-2012-3152 / CVE-2012-3153. Detects, fingerprints, reads files via LFI,…

exploitationinformation-gatheringpayload-generation+6
64 months ago
CVE-2022-21445 preview

CVE-2022-21445

GitHubnecr00/cve-2022-21445

Exploit for CVE-2022-21445 of Oracle Weblogic 12.2.1.X

exploitationpayload-generationpenetration-testing+3
57 months ago
CVE-2018-2628 preview

CVE-2018-2628

GitHubherantong/cve-2018-2628

Python-based exploit for CVE-2018-2628 targeting Oracle WebLogic Server, providing vulnerability detection and remote shell access via JSP payload…

exploitationpayload-generationpenetration-testing+3
19 months ago
watchTowr-vs-Oracle-E-Business-Suite-CVE-2025-61882 preview

watchTowr-vs-Oracle-E-Business-Suite-CVE-2025-61882

GitHubwatchtowrlabs/watchtowr-vs-oracle-e-business-suite-cve-2025-61882

Generates detection artifacts for Oracle E-Business Suite CVE-2025-61882 by serving a reverse shell payload to verify pre-auth RCE.

exploitationpayload-generationpenetration-testing+3
551 year ago
CVE-2020-14882 preview

CVE-2020-14882

GitHublucaspdiniz/cve-2020-14882

Takeover of Oracle WebLogic Server

educationexploitationpayload-generation+3
2 years ago
Exploit-CVE-2019-2725 preview

Exploit-CVE-2019-2725

GitHubcalegarimindsec/exploit-cve-2019-2725

Exploit for CVE-2019-2725 in Oracle WebLogic Server, using crafted SOAP requests to achieve remote code execution via Java deserialization.

command-and-controlexploitationpayload-generation+2
2 years ago
CVE-2022-45047 preview

CVE-2022-45047

GitHubhktalent/cve-2022-45047

Proof-of-concept exploit for CVE-2022-45047 targeting Oracle WebLogic Server via XMLDecoder deserialization, enabling remote file write and detection.

exploitationpayload-generationpenetration-testing+2
23 years ago
CVE-2022-21587-Oracle-EBS- preview

CVE-2022-21587-Oracle-EBS-

GitHubsahabrifki/cve-2022-21587-oracle-ebs-

This script is used for automating exploit for Oracle Ebussiness (EBS) for CVE 2022-21587 ( Unauthenticated File Upload For Remote Code Execution)

exploitationpayload-generationpenetration-testing+3
63 years ago
Weblogic-CVE-2023-21839 preview

Weblogic-CVE-2023-21839

GitHubdxask88ma/weblogic-cve-2023-21839

Java-based exploit for CVE-2023-21839 targeting Oracle WebLogic Server versions 12.2.1.3.0 and 12.2.1.4.0 via LDAP injection for remote code…

exploitationpayload-generationpenetration-testing+3
2403 years ago
CVE-2022-21587-POC preview

CVE-2022-21587-POC

GitHubhieuminhnv/cve-2022-21587-poc

Proof-of-concept exploit for CVE-2022-21587 targeting Oracle E-Business Suite with file overwrite and shell creation capabilities.

exploitationpayload-generationpenetration-testing+2
153 years ago
Oracle-E-BS-CVE-2022-21587-Exploit preview

Oracle-E-BS-CVE-2022-21587-Exploit

GitHubrockmelodies/oracle-e-bs-cve-2022-21587-exploit

Oracle E-BS CVE-2022-21587 Exploit

exploitationpayload-generationpenetration-testing+2
23 years ago
CVE-2017-10271 preview

CVE-2017-10271

GitHubkkirsche/cve-2017-10271

Python and Metasploit exploit for Oracle WebLogic WLS-WSAT deserialization vulnerability (CVE-2017-10271) with detection scanning and remote code…

exploitationexploit-frameworkspayload-generation+3
1284 years ago
CVE-2021-2394 preview

CVE-2021-2394

GitHublz2y/cve-2021-2394

Proof-of-concept exploit for CVE-2021-2394, a remote code execution vulnerability in Oracle WebLogic Server. Uses LDAP or RMI deserialization to…

educationexploitationpayload-generation+3
404 years ago
Oracle-OAM-Padding-Oracle-CVE-2018-2879-Exploit preview

Oracle-OAM-Padding-Oracle-CVE-2018-2879-Exploit

GitHubmostafasoliman/oracle-oam-padding-oracle-cve-2018-2879-exploit

Padding oracle exploit for Oracle Access Manager (CVE-2018-2879) enabling decryption of encrypted cookies and encryption of arbitrary plaintext for…

authenticationcryptographyexploitation+5
115 years ago
CVE-2020-14882_Exploit_Gui preview

CVE-2020-14882_Exploit_Gui

GitHubqianniaoge/cve-2020-14882_exploit_gui

GUI-based exploit tool for CVE-2020-14882 targeting Oracle WebLogic servers. Supports reverse shell payload generation, proxy configuration, and…

exploitationpayload-generationpenetration-testing+3
5 years ago
CVE-2021-2109 preview

CVE-2021-2109

GitHubal1ex/cve-2021-2109

CVE-2021-2109 && Weblogic Server RCE via JNDI

educationexploitationpayload-generation+3
315 years ago
Previous12Next