Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
75 results
cve_2026_31431_audit preview

cve_2026_31431_audit

GitHubmariohy/cve_2026_31431_audit

A security auditing toolkit for CVE-2026-31431 vulnerability research

exploitationpenetration-testingpost-exploitation+3
3 months ago
Copy-Fail-Exploit-CVE-2026-31431 preview

Copy-Fail-Exploit-CVE-2026-31431

GitHubpainoob/copy-fail-exploit-cve-2026-31431

Most Linux LPEs need a race window or a kernel-specific offset. Copy Fail is a straight-line logic flaw, it needs neither. The same 732-byte Python…

binary-exploitationexploitationexploit-frameworks+3
1044 months ago
linux-copy-fail-CVE-2026-31431 preview

linux-copy-fail-CVE-2026-31431

GitHubadilkurtulmus/linux-copy-fail-cve-2026-31431

Proof-of-concept exploit for CVE-2026-31431 (Copy-Fail), a Linux kernel AF_ALG and splice() flaw enabling page cache poisoning and local privilege…

binary-exploitationeducationexploitation+4
3 months ago
CVE-2026-31431-Patch preview

CVE-2026-31431-Patch

GitHubxsanflip/cve-2026-31431-patch

Bash script to mitigate and patch CVE-2026-31431 (Copy Fail), a Linux kernel LPE, by blacklisting AF_ALG modules, flushing page cache, and updating…

configuration-auditingprivilege-escalationvulnerability-analysis
34 months ago
CVE-2025-62506 preview

CVE-2025-62506

GitHubyoshino-s/cve-2025-62506

Verification script for CVE-2025-62506, a privilege escalation vulnerability in MinIO service accounts, testing if restricted accounts can bypass…

cloud-securityexploitationpenetration-testing+2
10 months ago
POC-Bash-CVE-2021-3560 preview

POC-Bash-CVE-2021-3560

GitHubwithinonestem/poc-bash-cve-2021-3560

Script Bash -- CVE-2021-3560

exploitationpenetration-testingpost-exploitation+2
1 year ago
CVE-2026-41940 preview

CVE-2026-41940

GitHubkill1234545/cve-2026-41940

cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

authentication-authorizationexploitationpenetration-testing+5
103 months ago
BadSamba preview

BadSamba

GitHubstrozfriedberg/badsamba

This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.

exploitationlateral-movementnetwork-security+3
226 years ago
CVE-2024-49328-exploit preview

CVE-2024-49328-exploit

GitHubnxploited/cve-2024-49328-exploit

Python script to exploit a privilege escalation vulnerability in the WP REST API FNS WordPress plugin, allowing unauthenticated creation of…

exploitationpenetration-testingprivilege-escalation+3
1 year ago
msiscan preview

msiscan

GitHubsec-consult/msiscan

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

configuration-auditingpenetration-testingprivilege-escalation+2
1291 year ago
itsm-exploit preview

itsm-exploit

GitHubsynacktiv/itsm-exploit

Ivanti Neurons for ITSM (On Premise) exploits

authentication-authorizationexploitationpenetration-testing+3
810 months ago
CVE-2026-1492 preview

CVE-2026-1492

GitHubnxploited/cve-2026-1492

User Registration & Membership <= 5.1.2 - Unauthenticated Privilege Escalation via Membership Registration

educationexploitationpenetration-testing+4
4 months ago
CVE-2026-27542-CVE-2026-27540- preview

CVE-2026-27542-CVE-2026-27540-

GitHubnxploited/cve-2026-27542-cve-2026-27540-

Unauthenticated Privilege | Unauthenticated Arbitrary File Upload

exploitationpenetration-testingprivilege-escalation+3
4 months ago
CVE-2026-4484 preview

CVE-2026-4484

GitHubnxploited/cve-2026-4484

Masteriyo LMS <= 2.1.6 - Missing Authorization to Authenticated (Student+) Privilege Escalation to Administrator

authentication-authorizationexploitationpenetration-testing+4
4 months ago
Hijack-service-binaries preview

Hijack-service-binaries

GitHubsec-zone/hijack-service-binaries

PowerShell script that audits Windows service binaries for writable permissions, identifying privilege escalation vectors by checking ACLs on…

penetration-testingpost-exploitationprivilege-escalation+2
5 months ago
USP preview

USP

GitHubgrahamhelton/usp

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

payload-developmentpersistence-mechanismspost-exploitation+2
1532 years ago
PNCVE-Win10-20H2-Exploit preview

PNCVE-Win10-20H2-Exploit

GitHubpeckre/pncve-win10-20h2-exploit

A one-click script to gain a System privileges command line in Windows 10 20H2 that exploits CVE-2021-1675

exploitationpayload-generationpenetration-testing+2
12 years ago
WP-CVE-2025-6934 preview

WP-CVE-2025-6934

GitHubjenderal92/wp-cve-2025-6934

WP-CVE-2025-6934 | Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation

educationexploitationpenetration-testing+3
2 months ago
Previous12345Next