Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
CVE-2025-3243 preview

CVE-2025-3243

GitHubtenebrae93/cve-2025-3243

A proof-of-concept exploit for CVE-2025-32433, a critical vulnerability in Erlang's SSH library that allows pre-authenticated code execution via…

exploitationpayload-generationpenetration-testing+3
7
1 year ago
CVE-2025-32433-Erlang-OTP-SSH-Unauthenticated-RCE preview

CVE-2025-32433-Erlang-OTP-SSH-Unauthenticated-RCE

GitHubdollarboysushil/cve-2025-32433-erlang-otp-ssh-unauthenticated-rce

PoC showing unauthenticated remote code execution in Erlang/OTP SSH server. By exploiting a flaw in SSH protocol message handling, an attacker can…

educationexploitationpayload-generation+3
31 year ago
CVE-2025-32433 preview

CVE-2025-32433

GitHubmrdreamreal/cve-2025-32433

CVE-2025-32433 Summary and Attack Overview

command-and-controlexploitationpayload-generation+3
1 year ago
CVE-2022-22965 preview

CVE-2022-22965

GitHubp1ckzi/cve-2022-22965

spring4shell | CVE-2022-22965

exploitationpayload-generationpenetration-testing+3
234 years ago
meterssh preview

meterssh

GitHubtrustedsec/meterssh

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

command-and-controlexploitationpayload-development+4
5309 years ago
CVE-2014-6271 preview

CVE-2014-6271

GitHubmritunjay-k/cve-2014-6271

Python exploit for CVE-2014-6271 (ShellShock) enabling remote code execution via crafted environment variables in GNU Bash, targeting web servers and…

command-and-controlexploitationpayload-generation+3
3 years ago
CVE-2023-38408 preview

CVE-2023-38408

GitHubtx-one/cve-2023-38408

CVE-2023-38408 SSH Vulnerability Scanner & PoC

educationexploitationpayload-generation+4
71 year ago
CVE-2020-14871-Exploit preview

CVE-2020-14871-Exploit

GitHubrobidev/cve-2020-14871-exploit

This is a basic ROP based exploit for CVE 2020-14871. CVE 2020-14871 is a vulnerability in Sun Solaris systems libpam library, and exploitable over…

binary-exploitationexploitationpayload-generation+3
24 years ago
CVE-2022-4510-WalkingPath preview

CVE-2022-4510-WalkingPath

GitHubadhikara13/cve-2022-4510-walkingpath

A Python script for generating exploits targeting CVE-2022-4510 RCE Binwalk. It supports SSH, command execution, and reverse shell options. Exploits…

binary-exploitationexploitationpayload-generation+3
143 years ago
LFI-Destruction preview

LFI-Destruction

GitHubrevshellxd/lfi-destruction

This program Prompts you for the Local File Inclusion information and will automatically search the /etc/passwd and using the users names found will…

ctfeducationexploitation+8
47 months ago
CVE-2018-10933-libSSH-Authentication-Bypass preview

CVE-2018-10933-libSSH-Authentication-Bypass

GitHublikekabin/cve-2018-10933-libssh-authentication-bypass

Exploit tool for CVE-2018-10933 libSSH authentication bypass, enabling remote shell access without credentials using Python scripts and optional fake…

authenticationexploitationnetwork-security+3
17 years ago
CVE-2021-35211 preview

CVE-2021-35211

GitHubbishopfox/cve-2021-35211

Python exploit for Serv-U SSH vulnerability (CVE-2021-35211) with multiple payload modes: stage, exec, and download-execute, enabling shellcode…

binary-exploitationexploitationexploit-frameworks+6
394 years ago
CVE-2026-4631-cockpit-RCE preview

CVE-2026-4631-cockpit-RCE

GitHubexdev994/cve-2026-4631-cockpit-rce

Unauthenticated Remote Code Execution via SSH Command-Line Argument Injection Cockpit versions 327 – 359 | CVSS 9.8 Critical | CWE-78

command-and-controlexploitationinformation-gathering+6
2 months ago
C2concealer preview

C2concealer

GitHubredsiege/c2concealer

Generates randomized, lint-validated C2 malleable profiles for Cobalt Strike, automating HTTP/S, DNS, SMB, and SSH beacon configuration with…

command-and-controlpayload-generationpenetration-testing-frameworks+1
1.1k5 months ago
SSH-Remote-Code-Execution preview

SSH-Remote-Code-Execution

GitHubsleepthegod/ssh-remote-code-execution

SSH Zero-Day Made By ClumsyLulz

binary-exploitationexploitationpayload-generation
1288 months ago
cve-2025-32433 preview

cve-2025-32433

GitHub0xpthree/cve-2025-32433

Python exploit for CVE-2025-32433 targeting Erlang OTP SSH server. Sends crafted SSH packets to open a reverse shell and gain root access.

command-and-controlexploitationpayload-generation+3
61 year ago
CVE-2026-6815 preview

CVE-2026-6815

GitHubdanilo-dellorco/cve-2026-6815

Authenticated path traversal and arbitrary file write PoC exploit for Casdoor <3.54.1, enabling RCE via SSH key injection, web shell upload, or…

educationexploitationpayload-generation+3
23 months ago
CVE-2021-21972 preview

CVE-2021-21972

GitHubl-pin/cve-2021-21972

Exploit for CVE-2021-21972 targeting VMware vCenter with options for webshell or SSH key upload, proxy support, and batch scanning.

exploitationpayload-generationpenetration-testing+2
15 years ago
Previous12Next