Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
918 results
MacroShop preview

MacroShop

GitHubkhr0x40sh/macroshop

Collection of scripts to aid in delivering payloads via Office Macros. Most are python. See http://khr0x40sh.wordpress.com for details.

payload-developmentpayload-generationpenetration-testing+2
408
10 years ago
CVE-2020-0688-Python3 preview

CVE-2020-0688-Python3

GitHub1337-llama/cve-2020-0688-python3

Exploit updated to use Python 3.

exploitationpayload-generationpenetration-testing+2
22 years ago
CVE-2026-29000 preview

CVE-2026-29000

GitHubc0gnit00/cve-2026-29000

Python POC, Exploit for CVE-2026-29000

authentication-authorizationcryptographyeducation+5
13 months ago
CVE-2023-38831_Exploit preview

CVE-2023-38831_Exploit

GitHubvictoriousknight/cve-2023-38831_exploit

Python script that generates a malicious RAR file exploiting CVE-2023-38831 to execute a reverse shell payload, intended for educational and ethical…

binary-exploitationeducationexploitation+3
1 year ago
CVE-2022-28368-handler preview

CVE-2022-28368-handler

GitHubthat-guy-steve/cve-2022-28368-handler

This repository contains a python script that will handle the majority of the dompdf cached font exploit (CVE-2022-28368), all you need to do is…

exploitationpayload-generationpenetration-testing+3
3 years ago
CVE-2023-5360-exploit-with-native-libraries preview

CVE-2023-5360-exploit-with-native-libraries

GitHublavirudilshan/cve-2023-5360-exploit-with-native-libraries

CVE-2023-5360 PoC: Unauthenticated arbitrary file upload leading to RCE in Royal Elementor Addons (≤ 1.3.78), written in pure Python.

educationexploitationpayload-generation+3
18 months ago
whiskeysamlandfriends preview

whiskeysamlandfriends

GitHubsecureworks/whiskeysamlandfriends

Python-based framework for generating Golden SAML tokens, Kerberos tickets, and Azure Access Tokens to exploit federated identity systems and…

authentication-authorizationcloud-securityexploit-frameworks+3
812 years ago
CVE-2020-15778-Exploit preview

CVE-2020-15778-Exploit

GitHubneko-chanqwq/cve-2020-15778-exploit

Exploit for CVE-2020-15778(OpenSSH vul)

command-and-controlexploitationpayload-generation+3
384 years ago
WLT3Serial preview
Archived

WLT3Serial

GitHubbort-millipede/wlt3serial

Native Java-based deserialization exploit for WebLogic T3 (and T3S) listeners.

exploitationpayload-generationpenetration-testing+2
346 years ago
pycrypt preview

pycrypt

GitHubmachine1337/pycrypt

Python Based Crypter That Can Bypass Any Kinds Of Antivirus Products

exploitationpayload-generationred-teaming
37411 months ago
CVE-2023-41425-RCE-WonderCMS-4.3.2 preview

CVE-2023-41425-RCE-WonderCMS-4.3.2

GitHubtea-on/cve-2023-41425-rce-wondercms-4.3.2

Automates creation and hosting of a JavaScript XSS payload to install a malicious theme module, triggering a reverse shell via Remote Code Execution…

educationexploitationpayload-generation+5
81 year ago
hfs-cve-2014-6287-exploit preview

hfs-cve-2014-6287-exploit

GitHubfrancescobrina/hfs-cve-2014-6287-exploit

Python-based exploit for CVE-2014-6287 in HTTP File Server 2.3.x, delivering a reverse shell via Base64-encoded PowerShell payload for authorized…

command-and-controleducationexploitation+5
1 year ago
Octopus preview

Octopus

GitHubmhaskar/octopus

Open source pre-operation C2 server based on python and powershell

command-and-controlencryption-decryption-toolsinformation-gathering+3
7645 years ago
cve-2006-6184 preview

cve-2006-6184

GitHubshauntdergrigorian/cve-2006-6184

This is a python-based standalone exploit for CVE-2006-6184. This exploit triggers a stack-based buffer overflows in Allied Telesyn TFTP Server…

binary-exploitationexploitationpayload-generation+3
115 years ago
mcpExec preview

mcpExec

GitHubdaemoncibsec/mcpexec

POC for CVE-2026-23744 for a python revshell

command-and-controlexploitationpayload-generation+3
23 days ago
cve_2022_0847_shellcode preview

cve_2022_0847_shellcode

GitHubshotokhan/cve_2022_0847_shellcode

Implementation of CVE-2022-0847 as a shellcode

binary-exploitationexploitationpayload-generation+3
34 years ago
Dr.DLL-CVE-2018-18333 preview

Dr.DLL-CVE-2018-18333

GitHubmrx04programmer/dr.dll-cve-2018-18333

Versión Dr. DLL (CVE-2018-18333)

exploitationpayload-generationpenetration-testing
14 years ago
CVE-2018-15133-PoC preview

CVE-2018-15133-PoC

GitHubloaxert/cve-2018-15133-poc

Python exploit for CVE-2018-15133, achieving remote code execution on vulnerable Laravel applications via insecure deserialization of encrypted…

code-analysisexploitationpayload-generation+3
9 months ago
Previous1…345…51Next