Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
73 results
MegaQuagga_Pentesting_Report preview

MegaQuagga_Pentesting_Report

GitHubaktia1/megaquagga_pentesting_report

Web application penetration testing project targeting a WordPress environment. Includes exploitation of CVE-2019-9978, reverse shell execution,…

educationexploitationpenetration-testing+5
4 months ago
Active-Directory-BadSuccessor preview

Active-Directory-BadSuccessor

GitHubmusa-xvi/active-directory-badsuccessor

A TryHackme room covering the CVE-2025-53779 exploitation using windows

authenticationctfeducation+6
3 months ago
Shocker-TJNULL-OSCP- preview

Shocker-TJNULL-OSCP-

GitHubr3fr4kt/shocker-tjnull-oscp-

Structured HTB walkthrough demonstrating Shellshock (CVE-2014-6271) exploitation via CGI directory fuzzing and privilege escalation through…

educationexploitationlabs-practice+6
3 months ago
CVE-2022-26923 preview

CVE-2022-26923

GitHubeliasdekiniweek/cve-2022-26923

Exploitation de CVE-2022-26923

authenticationeducationexploitation+6
16 months ago
Vulnerable-Lab-Exploitation preview

Vulnerable-Lab-Exploitation

GitHubhackhermind-pixel/vulnerable-lab-exploitation

A hands-on project demonstrating the setup of virtual security lab, network reconnaissance, and exploitation of CVE-2012-1823.

educationexploitationinformation-gathering+8
17 months ago
Penetration-Testing-on-Metasploitable2 preview

Penetration-Testing-on-Metasploitable2

GitHubseifeldienahmad/penetration-testing-on-metasploitable2

Hands-on pentest project using Kali Linux vs Metasploitable2. Includes full workflow: Nmap scanning, enumeration, Metasploit exploitation (Samba…

educationexploitationlabs-practice+6
10 years ago
Domain-Controller-DC-Exploitation-with-Metasploit-Impacket preview

Domain-Controller-DC-Exploitation-with-Metasploit-Impacket

GitHubnyambiblaise/domain-controller-dc-exploitation-with-metasploit-impacket

End-to-end Domain Controller exploitation using Metasploit and Impacket: discovered DC10, exploited Zerologon (CVE-2020-1472), extracted NTLM hashes,…

educationexploit-frameworkslabs-practice+6
10 months ago
metasploitable-penetration-testing-lab preview

metasploitable-penetration-testing-lab

GitHubyagnikkrish/metasploitable-penetration-testing-lab

Controlled penetration testing lab demonstrating CVE-2011-2523 exploitation and mitigation techniques.

defensive-toolseducationexploitation+8
6 months ago
Project-Exploitation-of-Webmin-Authentication-Vulnerability preview

Project-Exploitation-of-Webmin-Authentication-Vulnerability

GitHubartemcyberlab/project-exploitation-of-webmin-authentication-vulnerability

Research Objective: To conduct a comprehensive analysis and successful exploitation of a Remote Code Execution (RCE) vulnerability in Webmin version…

educationexploitationlabs-practice+4
1 year ago
offensive-security-lab-1 preview

offensive-security-lab-1

GitHubmafiosohack/offensive-security-lab-1

A hands-on vulnerability assessment and exploitation of a Windows 7 VM using the EternalBlue (CVE-2017-0143) exploit. Includes scanning, exploitation…

educationexploitationexploit-frameworks+4
1 year ago
DanderSpritz_lab preview

DanderSpritz_lab

GitHubfrancisck/danderspritz_lab

A fully functional DanderSpritz lab in 2 commands

educationexploit-frameworkslabs-practice+5
4507 years ago
conquest preview

conquest

GitHubjakobfriedl/conquest

Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.

command-and-controleducationexploit-frameworks+7
4211 month ago
SharpBlackout preview

SharpBlackout

GitHubdmcxblue/sharpblackout

Terminate AV/EDR leveraging BYOVD attack

adversarial-attackexploitationpost-exploitation+1
1061 year ago
dirtyclone-exploit preview

dirtyclone-exploit

GitHubvulnquest58/dirtyclone-exploit

CVE-2026-46331 — Linux Kernel Local Privilege Escalation TC pedit + IPsec TEE Page Cache Corruption · Affected kernels: ≤ 6.12.9

binary-exploitationeducationexploitation+6
62 months ago
CVE-2025-7771-Vulnerability-Exploration preview

CVE-2025-7771-Vulnerability-Exploration

GitHubd4rkks/cve-2025-7771-vulnerability-exploration

Escalating privilege in the system from unsigned driver using throttlestop vulnerability

binary-exploitationeducationexploitation+4
134 months ago
WinRAR-Exploit-Tool---Rust-Edition preview

WinRAR-Exploit-Tool---Rust-Edition

GitHubkitsuneshade/winrar-exploit-tool---rust-edition

A high-performance, memory-safe implementation of the WinRAR CVE-2025-8088 exploit tool, rewritten in Rust for better reliability and performance.

binary-exploitationeducationexploitation+6
81 year ago
PE_CVE-CVE-2021-3156 preview

PE_CVE-CVE-2021-3156

GitHubpurpleozone/pe_cve-cve-2021-3156

Exploit for Ubuntu 20.04 using CVE-2021-3156 enhanced with post-exploitation scripts

binary-exploitationeducationexploitation+6
73 years ago
CVE-2026-39987_PoC preview

CVE-2026-39987_PoC

GitHubwind010/cve-2026-39987_poc

A proof-of-concept for CVE-2026-39987

exploitationpenetration-testingpost-exploitation+2
11 month ago
Previous12345Next