Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
918 results
Rejetto-HTTP-File-Server-HFS-2.3.x---Remote-Command-Execution preview

Rejetto-HTTP-File-Server-HFS-2.3.x---Remote-Command-Execution

GitHubrandallbanner/rejetto-http-file-server-hfs-2.3.x---remote-command-execution

CVE-2014-6287

command-and-controlexploitationpayload-generation+3
2
3 years ago
CVE-2026-6815 preview

CVE-2026-6815

GitHubdanilo-dellorco/cve-2026-6815

Authenticated path traversal and arbitrary file write PoC exploit for Casdoor <3.54.1, enabling RCE via SSH key injection, web shell upload, or…

educationexploitationpayload-generation+3
22 months ago
PageBuilderCK-CVE-2026-56290-Exploit preview

PageBuilderCK-CVE-2026-56290-Exploit

GitHubsagsooz/pagebuilderck-cve-2026-56290-exploit

Page Builder CK for Joomla - Unauthenticated SSRF / Remote File Write leading to PHP execution Exploiter

exploitationpayload-generationpenetration-testing+3
22 months ago
CVE-2014-6271 preview

CVE-2014-6271

GitHub0x00-0x00/cve-2014-6271

Shellshock exploitation script that is able to upload and RCE using any vector due to its versatility.

command-and-controlexploitationpayload-generation+3
38 years ago
xwiki-cve-2025-24893-poc preview

xwiki-cve-2025-24893-poc

GitHub570rmbr3ak3r/xwiki-cve-2025-24893-poc

PoC for CVE-2025-24893

educationexploitationpayload-generation+3
31 year ago
CVE-2025-2005 preview

CVE-2025-2005

GitHubmrmtwoj/cve-2025-2005

WordPress FEUP Arbitrary File Upload Exploit (CVE-2025-2005)

exploitationpayload-generationpenetration-testing+3
31 year ago
CVE-2018-2628 preview

CVE-2018-2628

GitHubvictor0013/cve-2018-2628

CVE-2018-2628

command-and-controlexploitationpayload-generation+3
18 years ago
CVE-2026-5562-Exploit preview

CVE-2026-5562-Exploit

GitHubhuttwothreefour/cve-2026-5562-exploit

Proof-of-concept exploit for CVE-2026-5562 targeting Kafka UI with automated reverse shell delivery via HTTP PUT request to the smartfilters API…

educationexploitationpayload-generation+3
2 months ago
CVE-2026-38526-KrayinCRM-RCE preview

CVE-2026-38526-KrayinCRM-RCE

GitHubindustri4l-h3ll-xpl0it3rs/cve-2026-38526-krayincrm-rce

CVE-2026-38526 Exploit | by infrar3d

exploitationpayload-generationpenetration-testing+3
1 month ago
PoC-CVE-2019-1003030 preview

PoC-CVE-2019-1003030

GitHubcyberbelly/poc-cve-2019-1003030

PoC for jenkins 2.63 CVE-2019-1003030

command-and-controlexploitationpayload-generation+3
1 month ago
CVE-2025-31324 preview

CVE-2025-31324

GitHubaristois913/cve-2025-31324

Proof-of-Concept 0day for SAP NetWeaver created by ShinyHunters

exploitationpayload-generationpenetration-testing+3
37 months ago
CVE-2026-48907 preview

CVE-2026-48907

GitHubgrayxploit/cve-2026-48907

Proof-of-concept exploit and technical analysis for CVE-2026-48907, a CVSS 10.0 pre-authentication remote code execution vulnerability in the Joomla…

educationexploitationpapers-research+4
2 months ago
CVE-2024-36401 preview

CVE-2024-36401

GitHubkeelanbrady1011/cve-2024-36401

CVE-2024-36401 exploit with webshell-like functionality for limited environments, supporting self-signed TLS sessions and remote command execution…

exploitationpayload-generationremote-access-tool+2
2 months ago
CVE-2020-15916 preview

CVE-2020-15916

GitHubgeniuszly/cve-2020-15916

Proof-of-concept exploit for CVE-2020-15916, enabling unauthorized LAN configuration changes via weak authentication bypass and payload injection.

educationexploitationnetwork-security+2
31 year ago
CVE-2023-47129 preview

CVE-2023-47129

GitHubcyber-wo0dy/cve-2023-47129

Statamic CMS versions <4.33.0 vulnerable to "Remote Code Execution"

exploitationpayload-generationvulnerability-analysis+1
32 years ago
CVE-2021-1675 preview

CVE-2021-1675

GitHubpuckiestyle/cve-2021-1675

Impacket-based exploit for CVE-2021-1675 (PrintNightmare) enabling remote or local DLL execution on Windows Domain Controllers with SMB payload…

exploitationlateral-movementpayload-generation+3
14 years ago
CVE-2016-3861 preview

CVE-2016-3861

GitHubkswzzl/cve-2016-3861

my extended take on Mark Brand's CVE 2016-3861 libutils bug

binary-exploitationeducationexploitation+2
13 years ago
cve-2019-5420-POC preview

cve-2019-5420-POC

GitHubwildwestcybersecurity/cve-2019-5420-poc

cve-2019-5420 POC simple ruby script

educationexploitationpayload-generation+3
11 month ago
Previous1…404142…51Next