Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
27 results
CVE-2025-2304-exploit preview

CVE-2025-2304-exploit

GitHubjeanback1/cve-2025-2304-exploit

Python exploit script for CVE-2025-2304, a mass assignment privilege escalation in Camaleon CMS. Automates CSRF token parsing and role parameter…

educationexploitationlabs-practice+5
4 months ago
Penetration_Testing_POC preview

Penetration_Testing_POC

GitHubmr-xn/penetration_testing_poc

渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor…

curated-resourceseducationexploitation+6
7.5k7 days ago
CVE-2025-2304-POC preview

CVE-2025-2304-POC

GitHubd3vn0mi/cve-2025-2304-poc

Proof-of-concept for CVE-2025-2304 — critical (CVSS 9.4) mass-assignment privilege escalation in Camaleon CMS.

educationexploitationpayload-generation+4
103 months ago
CVE-2025-2304 preview

CVE-2025-2304

GitHubalien0ne/cve-2025-2304

Authenticated privilege escalation in Camaleon CMS v2.9.0 via improper parameter handling in the updated_ajax endpoint.

educationexploitationpassword-attacks+4
196 months ago
CVE-2025-2304 preview

CVE-2025-2304

GitHubcsuribird/cve-2025-2304

This Python script exploits a critical mass assignment vulnerability in Camaleon CMS version 2.9.0, allowing any registered user to escalate their…

authentication-authorizationeducationexploitation+5
56 months ago
CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC preview

CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC

GitHubestebanzarate/cve-2025-2304-camaleon-cms-mass-assignment-privilege-escalation-poc

Proof-of-concept exploit for a mass assignment privilege escalation vulnerability in Camaleon CMS < 2.9.1. Authenticated low-privilege users can…

exploitationmisconfigurationpenetration-testing+4
26 months ago
CVE-2025-2304-POC preview

CVE-2025-2304-POC

GitHubaskiesec/cve-2025-2304-poc

Proof-of-concept exploit for CVE-2025-2304, a privilege escalation vulnerability in Camaleon CMS 2.9.0 via mass assignment on the password change…

exploitationpayload-generationpenetration-testing+3
2 months ago
Penetration-Test preview

Penetration-Test

GitHubjeevananand1202/penetration-test

Full penetration test report against `IP` (Ubuntu VM). Attack chain: directory enumeration → backup file discovery → password cracking → CMS file…

educationexploitationpassword-cracking+6
4 months ago
CTF-CVE-2019-9053-GTFOBins preview

CTF-CVE-2019-9053-GTFOBins

GitHubjtoalu/ctf-cve-2019-9053-gtfobins

Step-by-step CTF walkthrough demonstrating CVE-2019-9053 SQL injection exploitation and GTFOBins-based privilege escalation on a CMS Made Simple…

ctfeducationexploitation+6
2 years ago
Simple-CTF-Writeup preview

Simple-CTF-Writeup

GitHubimperialx1104/simple-ctf-writeup

Professional TryHackMe Simple CTF walkthrough covering enumeration, CMS Made Simple SQL Injection (CVE-2019-9053), credential recovery, SSH access,…

ctfeducationexploitation+6
3 months ago
CVE-2025-2304_POC preview

CVE-2025-2304_POC

GitHubazureadtrent/cve-2025-2304_poc

CVE-2025-2304 POC - Camaleon CMS Privilege Escalation

exploitationpenetration-testingprivilege-escalation+3
16 months ago
wordpress-CVE-2024-10924--exploit preview

wordpress-CVE-2024-10924--exploit

GitHubmaleeshaudan/wordpress-cve-2024-10924--exploit

WordPress CVE-2024-10924 Exploit for Really Simple Security plugin

authentication-authorizationexploitationpenetration-testing+3
11 year ago
CVE-2025-2304 preview

CVE-2025-2304

GitHub0xk4rth1/cve-2025-2304

A critical mass assignment vulnerability in Camaleon CMS (< 2.9.1) allows authenticated low-privileged users to elevate their privileges to…

educationexploitationpenetration-testing+3
12 months ago
CVE-2025-25968 preview

CVE-2025-25968

GitHubpadayali-jd/cve-2025-25968

Proof-of-concept exploit for CVE-2025-25968, an improper access control vulnerability in DDSN Interactive cm3 Acora CMS v10.1.1. Enables…

exploitationinformation-gatheringpenetration-testing+3
11 months ago
HackTheBox-Facts preview

HackTheBox-Facts

GitHubsuriyaboon/hackthebox-facts

HTB Facts is a Easy Linux box featuring Camaleon CMS and MinIO. Gain admin access via open registration and a mass assignment vulnerability, then…

cloud-securityctfeducation+7
2 months ago
htb-facts preview

htb-facts

GitHubmattiapertusati/htb-facts

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc

cloud-securityctfeducation+7
4 months ago
CVE-2025-2304 preview

CVE-2025-2304

GitHubpredyy/cve-2025-2304

Python script to exploit Privilege Escalation in Camaleon CMS.

educationexploitationpenetration-testing+3
166 months ago
CVE-2025-2304-POC preview

CVE-2025-2304-POC

GitHubwhiteov3rflow/cve-2025-2304-poc

Proof-of-concept exploit for CVE-2025-2304, a mass assignment vulnerability in Camaleon CMS < 2.9.1 allowing authenticated privilege escalation to…

exploitationpenetration-testingprivilege-escalation+3
116 months ago
Previous12Next