Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
63 results
Cuteit preview

Cuteit

GitHubd4vinci/cuteit

IP obfuscator made to make a malicious ip a bit cuter

command-and-controlids-ips-evasionpayload-generation+4
5461 year ago
Androspy preview

Androspy

GitHubcyb0r9/androspy

Automated Android backdoor generator with crypter, IP poisoning, and Metasploit payload integration for penetration testing and red team operations.

android-securityexploit-frameworkspayload-development+3
2687 years ago
winspy preview

winspy

GitHubcyb0r9/winspy

Generates Windows reverse shell backdoors with automatic IP poisoning, leveraging Metasploit for payload creation and Apache for delivery in…

exploit-frameworkspayload-developmentpayload-generation+2
2137 years ago
payday preview

payday

GitHublorentzenman/payday

Payload generator that uses Metasploit and Veil. Takes IP address as input and calls Veil. Use msfvenom to create payloads and writes resource…

exploit-frameworkspayload-developmentpayload-generation+1
447 years ago
CVE-2024-21006_jar preview

CVE-2024-21006_jar

GitHublightr3d/cve-2024-21006_jar

Java-based exploit for CVE-2024-21006, delivering a payload via LDAP to a target IP and port. Includes compiled JAR and source for customization.

exploitationpayload-generationpenetration-testing+2
162 years ago
CVE-2011-2523 preview

CVE-2011-2523

GitHubcowsecurity/cve-2011-2523

Python exploit for vsFTPd backdoor vulnerability (CVE-2011-2523) using Pwntools for remote code execution against target IP and port.

exploitationpayload-generationpenetration-testing+3
23 years ago
CVE-2025-61304 preview

CVE-2025-61304

GitHubpentastic-be/cve-2025-61304

OS command injection vulnerability in Dynatrace ActiveGate ping extension up to 1.016 via crafted ip address

exploitationpayload-generationpost-exploitation+3
211 months ago
CVE-2021-21425 preview

CVE-2021-21425

GitHubafifudinmtop/cve-2021-21425

Python exploit for CVE-2021-21425 that executes a reverse shell payload against a target IP, with instructions for setting up a netcat listener.

command-and-controlexploitationpayload-generation+2
8 months ago
CVE-2024-21762 preview

CVE-2024-21762

GitHub0x0asif/cve-2024-21762

Python PoC exploit for CVE-2024-21762 that targets a remote appliance and initiates a callback to an attacker-controlled IP and port for authorized…

command-and-controlexploitationpayload-generation+3
6 months ago
CVE-2021-34527 preview

CVE-2021-34527

GitHubd0rb/cve-2021-34527

Python PoC for CVE-2021-34527 (PrintNightmare) that sends a hard-coded SMB exploit payload to a target IP and port for educational demonstration.

educationexploitationpayload-generation+2
3 years ago
WIndows-7-automated-exploitation-using-metasploit-framework- preview

WIndows-7-automated-exploitation-using-metasploit-framework-

GitHubpelagornisandersi/windows-7-automated-exploitation-using-metasploit-framework-

Automated bash script which scans an ip for potential vulnerability to eternalblue using nmap and then exploit using metasploit framework which uses…

exploitationexploit-frameworkspayload-generation+3
1 year ago
EmbedXPL-Forge preview

EmbedXPL-Forge

GitHubmrhenrike/embedxpl-forge

Embedded Device Security Assessment Framework — 700 modules, 350 CVEs, 55 vendors, APT Group Engine. Covers routers, IP cameras, GPON ONTs, ISP CPEs,…

embedded-systems-securityexploitationexploit-frameworks+9
425 days ago
Nuclei-Template-Exploit-F5-BIG-IP-iControl-REST-Auth-Bypass-RCE-Command-Parameter preview

Nuclei-Template-Exploit-F5-BIG-IP-iControl-REST-Auth-Bypass-RCE-Command-Parameter

GitHubmrcl0wnlab/nuclei-template-exploit-f5-big-ip-icontrol-rest-auth-bypass-rce-command-parameter

CVE-2022-1388 is an authentication bypass vulnerability in the REST component of BIG-IP’s iControl API that was assigned a CVSSv3 score of…

command-and-controlexploitationpayload-generation+3
64 years ago
JShell preview

JShell

GitHubs0md3v/jshell

JShell - Get a JavaScript shell with XSS.

exploitationpayload-generationphishing-tools+1
5297 years ago
CVE-2019-11932 preview

CVE-2019-11932

GitHubdorkerdevil/cve-2019-11932

double-free bug in WhatsApp exploit poc

binary-exploitationexploitationmobile-security+3
2675 years ago
poet preview

poet

GitHubofflinemark/poet

[unmaintained] Post-exploitation tool

command-and-controldata-exfiltrationpayload-generation+4
18110 years ago
CVE-2018-8174_EXP preview

CVE-2018-8174_EXP

GitHubyt1g3r/cve-2018-8174_exp

CVE-2018-8174_python

exploitationpayload-generationpenetration-testing+2
1398 years ago
notionterm preview

notionterm

GitHubariary/notionterm

Embed a reverse shell in Notion pages using the Notion API as a proxy, enabling stealthy remote shell sessions with encrypted and authenticated…

command-and-controlexploitationpayload-generation+3
1383 years ago
Previous1234Next