Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
918 results
wePWNise preview

wePWNise

GitHubreverseclabs/wepwnise

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

exploit-frameworksids-ips-evasionpayload-development+5
349
8 years ago
CVE-2022-22965 preview

CVE-2022-22965

GitHubp1ckzi/cve-2022-22965

spring4shell | CVE-2022-22965

exploitationpayload-generationpenetration-testing+3
234 years ago
cve-2023-38831 preview

cve-2023-38831

GitHubkuyrathdaro/cve-2023-38831

CVE-2023-38831 (PoC) - WinRAR Exploit

educationexploitationpayload-generation+3
31 year ago
CVE-2023-46604-RCE preview

CVE-2023-46604-RCE

GitHubreggyraider/cve-2023-46604-rce

CVE-2023-46604-RCE exploit with Linux reverse shell payload

exploitationpayload-generationremote-access-tool+3
3 months ago
CVE-2012-2982-Exploit-Script preview

CVE-2012-2982-Exploit-Script

GitHubsincidk/cve-2012-2982-exploit-script

A short and sweet simple exploit script for the CVE-2012-2982 Authenticated RCE vulnerability in the /file/show.cgi/bin endpoint.

educationexploitationpayload-generation+3
1 year ago
cve_2011_3556 preview

cve_2011_3556

GitHubsk4la/cve_2011_3556

Python 3 implementation of an existing CVE-2011-3556 proof of concept (PoC).

exploitationexploit-frameworkspayload-generation+3
17 years ago
JSRat-Py preview

JSRat-Py

GitHubhood3drob1n/jsrat-py

This is my implementation of JSRat.ps1 in Python so you can now run the attack server from any OS instead of being limited to a Windows OS with…

command-and-controlexploitationpayload-generation+3
30110 years ago
CVE-2024-6205 preview

CVE-2024-6205

GitHubj3r1ch0123/cve-2024-6205

This is a python written PoC of a recent vulnerability in a wordpress plugin. More information on that here

exploitationpayload-generationpenetration-testing+2
12 years ago
nodexp preview

nodexp

GitHubesmog/nodexp

NodeXP - A Server Side Javascript Injection tool capable of detecting and exploiting Node.js vulnerabilities

exploitationpayload-generationpenetration-testing+2
1071 year ago
CVE-2026-23744-poc preview

CVE-2026-23744-poc

GitHubkeeieb79/cve-2026-23744-poc

cve-2026-23744 python exploit

educationexploitationpayload-generation+3
3 months ago
rejjeto_hfs-rce-exploit-cve-2014-6287 preview

rejjeto_hfs-rce-exploit-cve-2014-6287

GitHubjoaz94/rejjeto_hfs-rce-exploit-cve-2014-6287

Remote Command Execution exploit for Rejetto HTTP File Server 2.3.x (CVE-2014-6287) rewritten in Python 3 for modern offensive security testing.

command-and-controleducationexploitation+5
9 months ago
React2Shell preview

React2Shell

GitHubshyambhanushali/react2shell

React2Shell is a Python-based proof-of-concept tool designed to exploit CVE-2025-55182 and CVE-2025-66478, both impacting Next.js applications using…

educationexploitationpayload-generation+3
139 months ago
CVE-2024-41570 preview

CVE-2024-41570

GitHubdiemoeve/cve-2024-41570

Automated Reverse Shell Exploit via WebSocket | Havoc-C2-SSRF with RCE

command-and-controlexploitationpayload-generation+5
111 year ago
CVE-2025-0282-Full-version preview

CVE-2025-0282-Full-version

GitHubanonstorks/cve-2025-0282-full-version

# CVE-2025-0282: Remote Code Execution Vulnerability in [StorkS]

binary-exploitationeducationexploitation+5
41 year ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubim2sinister/cve-2021-41773

Python-based PoC exploit for Apache 2.4.49 path traversal and RCE (CVE-2021-41773). Features dynamic command execution, double-percent encoding…

educationexploitationpayload-generation+3
11 month ago
CVE-2024-54887-PoC preview

CVE-2024-54887-PoC

GitHubgumbraise/cve-2024-54887-poc

TypeScript PoC for CVE-2024-54887 (TP-Link TL-WR940N authenticated RCE)

exploitationhardware-iot-securityiot-security+4
3 months ago
exploit_cms_fuel preview

exploit_cms_fuel

GitHubkaxm23/exploit_cms_fuel

Python3 exploit for Fuel CMS 1.4.1 Remote Code Execution (CVE-2018-16763) with Reverse Shell.

educationexploitationpayload-generation+4
17 months ago
text4shell-exploit preview

text4shell-exploit

GitHubsyndicate27/text4shell-exploit

A custom Python-based proof-of-concept (PoC) exploit targeting Text4Shell (CVE-2022-42889), a critical remote code execution vulnerability in Apache…

educationexploitationpayload-generation+3
1 year ago
Previous123…51Next