Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
918 results
CVE-2022-24637 preview

CVE-2022-24637

GitHub0xryuk/cve-2022-24637

Open Web Analytics 1.7.3 - Remote Code Execution Exploit v2

exploitationpayload-generationremote-access-tool+2
1
3 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubadrianmafandy/cve-2021-41773

Proof-of-concept exploit for CVE-2021-41773, a path traversal and remote code execution vulnerability in Apache HTTP Server 2.4.49. Automates…

exploitationpayload-generationpenetration-testing+3
110 months ago
CVE-2025-54309__Enhanced_exploit preview

CVE-2025-54309__Enhanced_exploit

GitHubwhisperer1290/cve-2025-54309__enhanced_exploit

Multi-threaded exploit for CrushFTP authentication bypass (CVE-2025-54309) with race condition implementation, XML payload generation, and admin user…

authentication-authorizationeducationexploitation+4
11 year ago
CVE-2025-25257 preview

CVE-2025-25257

GitHubsegfault-it/cve-2025-25257

A working (at least for me :] ) exploit for CVE-2025-25257

educationexploitationpayload-generation+3
111 months ago
Poc-CVE-2024-21542 preview

Poc-CVE-2024-21542

GitHubl3ster1337/poc-cve-2024-21542

Proof-of-concept exploit for CVE-2024-21542 demonstrating arbitrary file write via Zip Slip in Luigi pipeline manager. Generates malicious archives…

exploitationpayload-generationpenetration-testing+2
11 year ago
CVE-2019-19369 preview

CVE-2019-19369

GitHubthecybergeek/cve-2019-19369

Authenticated remote code execution exploit for FusionPBX versions <= 4.5.10, leveraging the PHP-Editor function to inject a payload and gain a shell…

exploitationpayload-generationpenetration-testing+3
15 years ago
CVE-2021-21315 preview

CVE-2021-21315

GitHubg01d3nw01f/cve-2021-21315

rust noob tried write easy exploit code with rust lang

command-and-controleducationexploitation+3
14 years ago
CVE-2015-8351 preview

CVE-2015-8351

GitHubg01d3nw01f/cve-2015-8351

this script is exploit for wordpress old plugin gwolle

exploitationpayload-generationpenetration-testing+3
15 years ago
-CVE-2026-26215-manga-image-translator-RCE preview

-CVE-2026-26215-manga-image-translator-RCE

GitHubmbanyamer/-cve-2026-26215-manga-image-translator-rce

Proof-of-concept exploit for CVE-2026-26215, an unauthenticated remote code execution vulnerability in manga-image-translator via unsafe pickle…

exploitationpayload-generationpenetration-testing+3
6 months ago
CVE-2021-41579-LCDS-LAquis-SCADA-4.3.1.1085-Arbitrary-File-Write preview

CVE-2021-41579-LCDS-LAquis-SCADA-4.3.1.1085-Arbitrary-File-Write

GitHubmbanyamer/cve-2021-41579-lcds-laquis-scada-4.3.1.1085-arbitrary-file-write

Proof-of-concept exploit for CVE-2021-41579 enabling arbitrary file write/read and RCE via malicious .els project file in LAquis SCADA ≤4.3.1.1085.

binary-exploitationexploitationpayload-generation+3
6 months ago
CVE-2018-7600-Remote-Code-Execution preview

CVE-2018-7600-Remote-Code-Execution

GitHubrajaabdullahnasir/cve-2018-7600-remote-code-execution

This repository contains a completely original and self-developed Proof-of-Concept (PoC) for CVE-2018-7600, also known as Drupalgeddon 2 — a critical…

educationexploitationpayload-generation+3
1 year ago
CVE-2022-26134 preview

CVE-2022-26134

GitLab0xsamy/cve-2022-26134

Proof-of-concept exploit for CVE-2022-26134, an unauthenticated OGNL injection vulnerability in Atlassian Confluence Server and Data Center, enabling…

exploitationpayload-generationpenetration-testing+2
4 years ago
CVE-2026-25940 preview

CVE-2026-25940

GitHubopen-flaw/cve-2026-25940

Proof-of-concept for CVE-2026-25940 demonstrating embedded JavaScript execution via crafted AcroForm radio button appearances in PDF viewers, with…

exploitationpayload-generationvulnerability-analysis+2
6 months ago
CVE-2022-26810 preview

CVE-2022-26810

GitHubmr-alperen/cve-2022-26810

Remote code execution exploit for CVE-2022-26809 targeting Windows RPC heap buffer overflow with msfvenom shellcode integration and meterpreter…

binary-exploitationcommand-and-controlexploitation+6
8 months ago
React2Shell-CVE-2025-55182 preview

React2Shell-CVE-2025-55182

GitHubrahul-securify/react2shell-cve-2025-55182

Proof-of-concept exploit for CVE-2025-55182 demonstrating remote code execution in Next.js via prototype pollution. Includes a pre-configured…

ctfeducationexploitation+3
9 months ago
php-8.1.0-dev-exploit preview

php-8.1.0-dev-exploit

GitHubuseru1k/php-8.1.0-dev-exploit

Exploit for the PHP 8.1.0-dev backdoor vulnerability (CVE-2021-21707)

ctfexploitationpayload-generation+3
10 months ago
CVE-2023-4220-PoC preview

CVE-2023-4220-PoC

GitHubsn0wbaall/cve-2023-4220-poc

Automated proof-of-concept exploit for CVE-2023-4220 in Chamilo LMS, enabling arbitrary file upload and remote code execution via unauthenticated…

exploitationpayload-generationpenetration-testing+3
6 months ago
CVE-2025-8088-Exploit preview

CVE-2025-8088-Exploit

GitHubtechcorp/cve-2025-8088-exploit

A proof-of-concept exploit for WinRAR vulnerability (CVE-2025-8088) affecting versions 7.12 and lower. This tool creates a malicious RAR archive that…

binary-exploitationexploitationpayload-generation+3
10 months ago
Previous1…444546…51Next