Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
82 results
CVE-2021-40223 preview

CVE-2021-40223

GitHubasang17/cve-2021-40223

XSS Vulnerability in Rittal

educationpenetration-testingvulnerability-analysis+2
5 years ago
CVE-2019-5420 preview

CVE-2019-5420

GitHubpentestical/cve-2019-5420

Exploit in Rails Development Mode. With some knowledge of a target application it is possible for an attacker to guess the automatically generated…

exploitationpenetration-testingred-teaming+2
4 years ago
rails-exploit-cve-2013-0156 preview

rails-exploit-cve-2013-0156

GitHubbsodmike/rails-exploit-cve-2013-0156

Bootstrapped Rails 3.2.10 to test the remote code exploit CVE-2013-0156

educationexploitationpenetration-testing+2
513 years ago
printerbugnew preview

printerbugnew

GitHubdecoder-it/printerbugnew

The DCERPC only printerbug.py version

authenticationcommand-and-controlexploitation+5
23311 months ago
CVE-2024-46987 preview

CVE-2024-46987

GitHubadvaitpathak21/cve-2024-46987

Exploit created using Python

educationexploitationinformation-gathering+3
18 months ago
Alternative-Approach-Reverse-Shell-Callback-Test-InvokeAI-RCE preview

Alternative-Approach-Reverse-Shell-Callback-Test-InvokeAI-RCE

GitHublu3ky13/alternative-approach-reverse-shell-callback-test-invokeai-rce

This repository contains alternative payload approaches for the InvokeAI RCE vulnerability (CVE-2024-12029) when SSH key injection fails. The…

command-and-controleducationexploitation+5
5 months ago
o365-attack-toolkit preview

o365-attack-toolkit

GitHubmdsecactivebreach/o365-attack-toolkit

A toolkit to attack Office365

cloud-securitydata-exfiltrationemail-security+5
1.1k5 years ago
IMAPLoginTester preview

IMAPLoginTester

GitHubrm1984/imaplogintester

A simple Python script that reads a text file with lots of e-mails and passwords, and tries to check if those credentials are valid by trying to…

email-securityinformation-gatheringpassword-attacks+1
732 years ago
Exploit-for-CVE-2024-46987 preview

Exploit-for-CVE-2024-46987

GitHubsparrowhawk1113/exploit-for-cve-2024-46987

Exploit for CVE-2024-46987

educationexploitationpenetration-testing+2
8 months ago
CVE-2026-66066 preview

CVE-2026-66066

GitHubhackspeak/cve-2026-66066

CVE-2026-66066 (KindaRails2Shell) PoC - Rails Active Storage/libvips arbitrary file read to RCE; for authorized security testing

exploitationinformation-gatheringpenetration-testing+5
42 months ago
CVE-2019-5420 preview

CVE-2019-5420

GitHuberemiel/cve-2019-5420

Python exploit script for CVE-2019-5420, targeting Ruby on Rails signed-session AES GCM key brute-forcing to achieve remote code execution in…

encryption-decryption-toolsexploitationpassword-attacks+3
5 years ago
CVE-2019-5418 preview

CVE-2019-5418

GitHubmpgn/cve-2019-5418

CVE-2019-5418 - File Content Disclosure on Ruby on Rails

educationexploitationinformation-gathering+3
2015 years ago
CVE-2019-5418-Rails3 preview

CVE-2019-5418-Rails3

GitHubztgrace/cve-2019-5418-rails3

Rails 3 PoC of CVE-2019-5418

code-analysisexploitationpenetration-testing+2
3 years ago
mime-is-broken preview

mime-is-broken

GitHubnoxxi/mime-is-broken

Test cases for broken MIME and tools to generate and process these

email-securityfuzzingids-ips-evasion+2
64 years ago
CVE-2023-23138 preview

CVE-2023-23138

GitHubomaratallahh/cve-2023-23138

short view of ruby on rails properties misconfiguration

information-gatheringmisconfigurationpenetration-testing+2
23 years ago
CVE-2019-5418 preview

CVE-2019-5418

GitHubmelardev/cve-2019-5418

Docker-based sandbox to reproduce and test CVE-2019-5418 Ruby on Rails path traversal vulnerability via crafted Accept headers.

educationexploitationpenetration-testing+2
7 years ago
phishing-frenzy preview

phishing-frenzy

GitHubpentestgeek/phishing-frenzy

Ruby on Rails Phishing Framework

penetration-testingphishingred-teaming+2
9002 years ago
CVE-2019-5418 preview

CVE-2019-5418

GitHubdaehyeok0618/cve-2019-5418

Docker-based lab environment for CVE-2019-5418 Ruby on Rails path traversal exploit, with PoC curl commands to read arbitrary server files via…

educationexploitationlabs-practice+3
1 year ago
Previous12345Next