Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
834 results
cve-2023-1874 preview

cve-2023-1874

GitHubthomas-osgood/cve-2023-1874

Python exploit script for CVE-2023-1874, a privilege escalation vulnerability in the WP Data Access WordPress plugin. Enables authenticated…

educationexploitationpenetration-testing+3
2
1 year ago
CVE-2020-14321-modified-exploit preview

CVE-2020-14321-modified-exploit

GitHubf0ns1/cve-2020-14321-modified-exploit

Python exploit script for CVE-2020-14321, enabling privilege escalation from teacher to manager in Moodle via cookie-based session hijacking and role…

exploitationpenetration-testingprivilege-escalation+2
24 years ago
CVE-2024-34313 preview

CVE-2024-34313

GitHubvincentscode/cve-2024-34313

☣️ This repository contains the description and a proof of concept for CVE-2024-34313

educationexploitationpenetration-testing+3
22 years ago
react2shell-cve-2025-55182 preview

react2shell-cve-2025-55182

GitHubopsecramdan/react2shell-cve-2025-55182

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

command-and-controlexploitationpayload-generation+7
4 months ago
CVE-2025-65094 preview

CVE-2025-65094

GitHublukasz-rybak/cve-2025-65094

Proof-of-concept for CVE-2025-65094: privilege escalation via IDOR in WBCE CMS. Demonstrates group ID manipulation to gain admin access, with…

educationpapers-researchpenetration-testing+3
4 months ago
CVE-2025-24000-exploit preview

CVE-2025-24000-exploit

GitHubbsdrip/cve-2025-24000-exploit

Short Python script for exploiting CVE-2025–24000 based on this blog post: https://medium.com/@security_56355/from-subscriber-to-admin-reproducing-cve…

educationexploitationpenetration-testing+3
4 months ago
Nagios-CVE-2019-15949-RCE preview

Nagios-CVE-2019-15949-RCE

GitHubplur1bu5/nagios-cve-2019-15949-rce

a PoC for the Nagios CVE-2019-15949 rce in python

exploitationpayload-developmentpenetration-testing+3
5 months ago
CVE-2026-47102-PoC preview

CVE-2026-47102-PoC

GitHublearner202649/cve-2026-47102-poc

The code for personally reproducing the corresponding vulnerability

code-analysiseducationexploitation+5
3 months ago
CVE-2025-15260 preview

CVE-2025-15260

GitHubd3kc4rt1/cve-2025-15260

Missing Authorization / Broken Access Control in Plugin - MyRewards – Loyalty Points and Rewards for WooCommerce

educationpapers-researchpenetration-testing+3
4 months ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubshndnth/cve-2022-30190

Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.

command-and-controleducationexploitation+8
4 months ago
CVE-2025-39459-Nuclei-Template preview

CVE-2025-39459-Nuclei-Template

GitHubrootharpy/cve-2025-39459-nuclei-template

The Real Estate 7 WordPress theme is vulnerable to Privilege Escalation in all versions up to, and including, 3.5.2. This makes it possible for…

exploitationpenetration-testingprivilege-escalation+3
5 months ago
Exploit-CVE-2014-4210- preview

Exploit-CVE-2014-4210-

GitHubzorvithonleo/exploit-cve-2014-4210-

Exploit for CVE-2014-4210 targeting WebLogic deserialization, with post-exploitation features including ransomware deployment, C2 integration, and…

command-and-controldata-exfiltrationexploitation+7
21 year ago
copyfail-fix preview

copyfail-fix

GitHubhyz-is/copyfail-fix

Quick mitigation and patch script for CVE-2026-31431 (Copy Fail) on Ubuntu/Debian VPS

configuration-auditingdevsecopsexploitation+4
3 months ago
CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC preview

CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC

GitHubestebanzarate/cve-2025-2304-camaleon-cms-mass-assignment-privilege-escalation-poc

Proof-of-concept exploit for a mass assignment privilege escalation vulnerability in Camaleon CMS < 2.9.1. Authenticated low-privilege users can…

exploitationmisconfigurationpenetration-testing+4
26 months ago
oxasploits preview

oxasploits

GitHuboxasploits/oxasploits

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

binary-exploitationbluetooth-securityexploitation+6
2 months ago
CVE-2025-2304-exploit preview

CVE-2025-2304-exploit

GitHubjeanback1/cve-2025-2304-exploit

Python exploit script for CVE-2025-2304, a mass assignment privilege escalation in Camaleon CMS. Automates CSRF token parsing and role parameter…

educationexploitationlabs-practice+5
4 months ago
CVE-2025-2563 preview

CVE-2025-2563

GitHubdokter69/cve-2025-2563

Multi-threaded exploit for CVE-2025-2563 targeting unauthenticated privilege escalation in the WordPress User Registration & Membership plugin.…

authenticationexploitationpenetration-testing+4
14 months ago
CVE-2026-9018 preview

CVE-2026-9018

GitHubxxconi/cve-2026-9018

Unauthenticated Privilege Escalation CVE-2026-9018: Easy Elements for Elementor

educationexploitationpenetration-testing+4
13 months ago
Previous1…161718…47Next