Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
918 results
CVE-2025-3248-POC preview

CVE-2025-3248-POC

GitHubpuddincat/cve-2025-3248-poc

POC of CVE-2025-3248, RCE of LangFlow

exploitationpayload-generationpenetration-testing+2
3
1 year ago
CVE-2023-38831-WinRAR-Exploit preview

CVE-2023-38831-WinRAR-Exploit

GitHubameerpornillos/cve-2023-38831-winrar-exploit

Proof of concept (PoC) exploit for WinRAR vulnerability (CVE-2023-38831) vulnerability

exploitationpayload-generationpenetration-testing+3
32 years ago
CVE-2022-42889 preview

CVE-2022-42889

GitHubs3l33/cve-2022-42889

python script for CVE-2022-42889

exploitationpayload-generationpenetration-testing+2
33 years ago
Text4ShellPayloads preview

Text4ShellPayloads

GitHubstavrosgns/text4shellpayloads

This project includes a python script which generates malicious commands leveraging CVE-2022-42889 vulnerability

exploitationpayload-generationpenetration-testing+2
33 years ago
CVE-2023-38646 preview

CVE-2023-38646

GitHubred4mber/cve-2023-38646

Python script to exploit CVE-2023-38646 Metabase Pre-Auth RCE via SQL injection

exploitationpayload-generationpenetration-testing+2
22 years ago
CVE-2018-16763-exploit preview

CVE-2018-16763-exploit

GitHubhikarihacks/cve-2018-16763-exploit

This is an updated version of the CVE-2018-16763 for fuelCMS 1.4.1

exploitationpayload-generationpenetration-testing+2
26 years ago
ezwinrar preview

ezwinrar

GitHubektoplasma/ezwinrar

Python tool exploiting CVE-2018-20250 found by CheckPoint folks

binary-exploitationexploitationpayload-generation+2
27 years ago
CVE-2025-20260-POC preview

CVE-2025-20260-POC

GitHubalex-acero-security/cve-2025-20260-poc

Proof-of-concept exploit for CVE-2025-20260, a buffer overflow in ClamAV's PDF scanning. Includes a Python script to generate a malicious PDF and…

binary-exploitationexploitationfuzzing+3
3 months ago
CVE-2025-14177 preview

CVE-2025-14177

GitHub34zy/cve-2025-14177

PHP getimagesize() CVE-2025-14177 - Heap Memory Leak Exploit Generator Fully functional exploit chain in Python

binary-exploitationexploitationpayload-generation+3
3 months ago
CVE-2025-61765_PoC preview

CVE-2025-61765_PoC

GitHublocus-x64/cve-2025-61765_poc

Proof of Concept of an unsafe pickle deserialization vulnerability in Socket.IO

container-escapeeducationexploitation+3
19 months ago
js2py-Sandbox-Escape-CVE-2024-28397-RCE preview

js2py-Sandbox-Escape-CVE-2024-28397-RCE

GitHub0xdtc/js2py-sandbox-escape-cve-2024-28397-rce

Exploit scripts for CVE-2024-28397, a js2py sandbox escape that executes arbitrary Python code to spawn a reverse shell on a target endpoint.

educationexploitationpayload-generation+3
11 months ago
CVE-2025-471812-POC preview

CVE-2025-471812-POC

GitHubd3vn0mi/cve-2025-471812-poc

Python PoC for CVE-2025-47812, unauthenticated RCE in Wing FTP Server <= 7.4.3 via NULL-byte Lua injection into session files

exploitationpayload-generationpenetration-testing+3
6 months ago
CVE-2022-4616-POC preview

CVE-2022-4616-POC

GitHubahanel13/cve-2022-4616-poc

This Python script aids in exploiting CVE-2022-46169 by automating payload delivery and response handling. It starts an HTTP server, listens for…

educationexploitationpayload-generation+2
3 years ago
CVE-2021-4034 preview

CVE-2021-4034

GitHubg01d3nw01f/cve-2021-4034

Automates the compilation and serving of the PwnKit exploit for CVE-2021-4034, enabling local privilege escalation on vulnerable Linux systems.

exploitationexploit-frameworkspayload-generation+2
4 years ago
CVE-2019-11447_reverse_shell_upload preview

CVE-2019-11447_reverse_shell_upload

GitHubsubsting/cve-2019-11447_reverse_shell_upload

Python exploit for CVE-2019-11447 that uploads a PHP reverse shell to CuteNews 2.1.2, enabling remote command execution on vulnerable web…

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2023-45878 preview

CVE-2023-45878

GitHubdgoorden/cve-2023-45878

Python exploit for CVE-2023-45878 targeting Gibbon LMS 25.0.1. Uses arbitrary file write to upload a PHP web shell and execute a PowerShell reverse…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2023-36664 preview

CVE-2023-36664

GitHubjeanchpt/cve-2023-36664

Python PoC for CVE-2023-36664 Ghostscript RCE. Injects payloads or reverse shells into .eps files to trigger code execution via LibreOffice Draw.

educationexploitationpayload-generation+2
2 years ago
CVE-2014-6271 preview

CVE-2014-6271

GitHubmritunjay-k/cve-2014-6271

Python exploit for CVE-2014-6271 (ShellShock) enabling remote code execution via crafted environment variables in GNU Bash, targeting web servers and…

command-and-controlexploitationpayload-generation+3
3 years ago
Previous1…567…51Next