Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
65 results
CVE-2021-44228_Log4Shell preview

CVE-2021-44228_Log4Shell

GitHubvutiendat323/cve-2021-44228_log4shell

Docker-based RCE exploit demo for Log4Shell (CVE-2021-44228) with vulnerable Spring Boot app, malicious LDAP server, and payload delivery via JNDI…

educationexploitationlabs-practice+3
3 months ago
log4j-vulnerable-app-cve-2021-44228-terraform preview

log4j-vulnerable-app-cve-2021-44228-terraform

GitHubmkhazamipour/log4j-vulnerable-app-cve-2021-44228-terraform

A Terraform to deploy vulnerable app and a JDNIExploit to work with CVE-2021-44228

cloud-infrastructure-securityexploitationpayload-generation+3
24 years ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubahmedshamsddin/cve-2025-55182

Python exploit for CVE-2025-55182 in React Server Components, injecting a shell into Next.js 16.0.6 applications. Includes a vulnerable app for…

educationexploitationlabs-practice+3
9 months ago
Log4J_Exploitation-Vulnerabiliy__CVE-2021-44228 preview

Log4J_Exploitation-Vulnerabiliy__CVE-2021-44228

GitHublutzigoz/log4j_exploitation-vulnerabiliy__cve-2021-44228

Step-by-step tutorial for exploiting Log4j CVE-2021-44228 with Docker-based vulnerable app, JNDIExploit listener, and LDAP payload injection for…

educationexploitationlabs-practice+3
4 years ago
log4j-poc preview

log4j-poc

GitHubcyberxml/log4j-poc

A Docker based LDAP RCE exploit demo for CVE-2021-44228 Log4Shell

educationexploitationlabs-practice+4
723 years ago
spring-rce-poc preview

spring-rce-poc

GitHubmarcingadz/spring-rce-poc

Testing CVE-2022-22968

exploitationpayload-generationshellcode+2
24 years ago
CVE-2021-44228-poc preview

CVE-2021-44228-poc

GitHubkadantte/cve-2021-44228-poc

log4shell sample application (CVE-2021-44228)

educationexploitationlabs-practice+3
4 years ago
CVE-2017-9544 preview

CVE-2017-9544

GitHubadenkiewicz/cve-2017-9544

SEH BO based exploit for Easy Chat Server on Win 7 32b

binary-exploitationexploitationpayload-generation+3
7 years ago
CVE-2009-1330 preview

CVE-2009-1330

GitHubadenkiewicz/cve-2009-1330

Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.

binary-exploitationexploitationpayload-generation+3
7 years ago
CVE-2006-3592 preview

CVE-2006-3592

GitHubadenkiewicz/cve-2006-3592

Exploit for Easy File Sharing FTP Server 3.5 on Win7 32

binary-exploitationexploitationpayload-generation+3
7 years ago
st2-048 preview

st2-048

GitHubjas502n/st2-048

st2-048

exploitationpayload-generationpenetration-testing+3
409 years ago
Log4j_dos_CVE-2021-45105 preview

Log4j_dos_CVE-2021-45105

GitHubcckuailong/log4j_dos_cve-2021-45105

PoC exploit for CVE-2021-45105 (Log4j2 DOS) with Spring Boot web app, demonstrating infinite loop via crafted HTTP header/body payloads.

exploitationpayload-generationpenetration-testing+2
134 years ago
sc2pe preview

sc2pe

GitHubdump-guy/sc2pe

Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE

payload-developmentpayload-generationshellcode
673 years ago
CVE-2026-20841 preview

CVE-2026-20841

GitHubatiilla/cve-2026-20841

Proof-of-concept exploit for CVE-2026-20841, a Windows Notepad RCE via markdown links. Generates crafted .md files to trigger remote payloads, app…

exploitationpayload-generationpenetration-testing+3
56 months ago
CVE-2022-44830 preview

CVE-2022-44830

GitHubrashidkhanpathan/cve-2022-44830

Proof-of-concept exploit for CVE-2022-44830, a CSV injection vulnerability in Sourcecodester Event Registration App v1.0. Demonstrates remote code…

exploitationpayload-generationpenetration-testing+2
13 years ago
CVE-2024-52302 preview

CVE-2024-52302

GitHubd3sca/cve-2024-52302

PoC exploit for CVE-2024-52302: unrestricted file upload in common-user-management Spring Boot app leading to remote code execution via…

code-analysisexploitationpayload-generation+3
11 year ago
docker-log4shell preview

docker-log4shell

GitHuburholaukkarinen/docker-log4shell

Dockerized Go app for testing the CVE-2021-44228 vulnerability

educationexploitationlabs-practice+3
4 years ago
GeckoDroid preview

GeckoDroid

GitHubblacksnufkin/geckodroid

Android client for Adaptix C2 framework enabling remote agent management, interactive command shells, listener control, payload generation, and…

android-securitycommand-and-controlmobile-security+4
395 months ago
Previous1234Next