Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
337 results
Zerologon-Attack-CVE-2020-1472-POC preview

Zerologon-Attack-CVE-2020-1472-POC

GitHubwhoami-chmod777/zerologon-attack-cve-2020-1472-poc

Python exploit for CVE-2020-1472 (Zerologon) that changes a domain controller's machine account password, enabling DCSync and full domain compromise.…

exploitationpayload-developmentpenetration-testing+3
2
2 years ago
CVE-2025-61304 preview

CVE-2025-61304

GitHubpentastic-be/cve-2025-61304

OS command injection vulnerability in Dynatrace ActiveGate ping extension up to 1.016 via crafted ip address

exploitationpayload-generationpost-exploitation+3
211 months ago
CVE-2025-39596 preview

CVE-2025-39596

GitHubnxploited/cve-2025-39596

Quentn WP <= 1.2.8 - Unauthenticated Privilege Escalation

authenticationexploitationpayload-generation+4
11 year ago
CVE-2025-13390 preview

CVE-2025-13390

GitHubnxploited/cve-2025-13390

WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover

authenticationexploitationpayload-development+5
18 months ago
CVE-2024-48990-PoC preview

CVE-2024-48990-PoC

GitHubcyb3rfr0g/cve-2024-48990-poc

My take on the needrestart Python CVE-2024-48990

exploitationpayload-developmentpenetration-testing+2
21 year ago
CVE-2022-0847-Exploit-Implementation preview

CVE-2022-0847-Exploit-Implementation

GitHubjoeymeech/cve-2022-0847-exploit-implementation

Using CVE-2022-0847, "Dirty Pipe Exploit", to pop a reverse bash shell for arbitrary code execution on a foreign machine.

binary-exploitationexploitationpayload-development+3
13 years ago
Corsair---DLL-Planting-CVE-2023-38822 preview

Corsair---DLL-Planting-CVE-2023-38822

GitHubtrailer2/corsair---dll-planting-cve-2023-38822

DLL Planting in the Corsair iCUE v.5.3.102 CVE-2023-38822

binary-exploitationexploitationpayload-development+3
13 years ago
CVE-2023-29324_Patch_Deploy preview

CVE-2023-29324_Patch_Deploy

GitHuboledouxet/cve-2023-29324_patch_deploy
exploitationpayload-developmentpenetration-testing+2
23 years ago
CVE-2026-5027-Langflow preview

CVE-2026-5027-Langflow

GitHublayer-6/cve-2026-5027-langflow

Multi-CVE exploit tool for pre-auth remote code execution on Ivanti Sentry and FortiSandbox. Features interactive shell, webshell deployment,…

command-and-controlexploitationpayload-development+8
3 months ago
react2shell-cve-2025-55182 preview

react2shell-cve-2025-55182

GitHubopsecramdan/react2shell-cve-2025-55182

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

command-and-controlexploitationpayload-generation+7
5 months ago
ipfire-2-25-auth-rce preview

ipfire-2-25-auth-rce

GitHubkaanaryoverflow/ipfire-2-25-auth-rce

ipfire 2.25 authenticated remote code execution

binary-exploitationexploitationpayload-development+3
25 years ago
copy-fail-CVE-2026-31431 preview

copy-fail-CVE-2026-31431

GitHubmorton-li/copy-fail-cve-2026-31431

Proof-of-concept exploit for CVE-2026-31431, a Linux kernel privilege escalation, with x86_64, AArch64, and C payloads to obtain root on affected…

binary-exploitationexploitationpayload-development+2
4 months ago
honda preview

honda

GitLabnu11secur1ty/0

Exploit for a Windows Defender race condition that escalates to SYSTEM via use-after-free, crashes MsMpEng.exe, spawns a hidden shell, and persists…

binary-exploitationexploitationpayload-development+3
3 months ago
CVE-2025-66849 preview

CVE-2025-66849

GitHubwojtekchwala/cve-2025-66849

Ghost CMS Privilege Escalation PoC

exploitationpayload-developmentpenetration-testing+3
5 months ago
CTT-Vsyslog-Vortex-CVE-2023-6246 preview

CTT-Vsyslog-Vortex-CVE-2023-6246

GitHubsimoesctt/ctt-vsyslog-vortex-cve-2023-6246

CVE-2023-6246 glibc __vsyslog_internal() heap buffer overflow exploitation using Convergent Time Theory (α = 0.0302011). 33-layer temporal heap spray…

binary-exploitationexploitationpayload-development+3
5 months ago
CVE-2024-26229-BOF preview

CVE-2024-26229-BOF

GitHub0xgunrunner/cve-2024-26229-bof

CVE-2024-26229 Beacon Object File version

binary-exploitationexploitationpayload-development+4
5 months ago
CVE-2025-2304-POC preview

CVE-2025-2304-POC

GitHubaskiesec/cve-2025-2304-poc

Proof-of-concept exploit for CVE-2025-2304, a privilege escalation vulnerability in Camaleon CMS 2.9.0 via mass assignment on the password change…

exploitationpayload-generationpenetration-testing+3
3 months ago
PinTheft-go preview

PinTheft-go

GitHubkagantua/pintheft-go

A Go implementation of PinTheft (CVE-2026-43494)

binary-exploitationexploitationpayload-development+2
4 months ago
Previous1…131415…19Next