Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
57 results
CVE-2023-37250-POC preview

CVE-2023-37250-POC

GitHubewilded/cve-2023-37250-poc

Proof-of-concept exploit for CVE-2023-37250, a local privilege escalation vulnerability in Windows, with a detailed write-up explaining the roaming…

exploitationpenetration-testingprivilege-escalation+2
2
1 year ago
oxasploits preview

oxasploits

GitHuboxasploits/oxasploits

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

binary-exploitationbluetooth-securityexploitation+6
3 months ago
QuickBox-Pro-2.1.8-Authenticated-RCE preview

QuickBox-Pro-2.1.8-Authenticated-RCE

GitHubs1gh/quickbox-pro-2.1.8-authenticated-rce

Authenticated command injection exploit for QuickBox Pro v2.1.8, providing remote code execution as www-data and privilege escalation to root via…

exploitationpenetration-testingpost-exploitation+3
6 years ago
CVE-2021-21300 preview

CVE-2021-21300

GitHubfengzhouc/cve-2021-21300

Proof-of-concept exploit for CVE-2021-21300, demonstrating remote code execution via malicious git repository cloning with symlink and filter abuse…

command-and-controlexploitationlateral-movement+6
5 years ago
CVE-2024-21345 preview

CVE-2024-21345

GitHubfoxyproxys/cve-2024-21345

Exploit for CVE-2024-21345 providing kernel-level privilege escalation to gain root access on affected systems.

binary-exploitationexploitationprivilege-escalation+1
2 years ago
METABASE-RCE-CVE-2023-38646- preview

METABASE-RCE-CVE-2023-38646-

GitHubacesoyeo/metabase-rce-cve-2023-38646-

Exploit for CVE-2023-38646 in Metabase, achieving remote code execution and privilege escalation to root via unshare and setuid techniques.

exploitationpenetration-testingprivilege-escalation+2
2 years ago
Salsa-tools preview

Salsa-tools

GitHubhackplayers/salsa-tools

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

command-and-controlencryption-decryption-toolsexploitation+7
5896 years ago
CVE-2024-30051 preview

CVE-2024-30051

GitHubfortra/cve-2024-30051

Detailed technical analysis and proof-of-concept exploit for CVE-2024-30051, a heap-based buffer overflow in the Windows DWM Core Library enabling…

binary-exploitationeducationexploitation+3
1242 years ago
POC-of-CVE-2022-36271 preview

POC-of-CVE-2022-36271

GitHubsaumyajeetdas/poc-of-cve-2022-36271

This is working POC of CVE-2022-36271

binary-exploitationexploitationmalware-analysis+3
94 years ago
CVE-2025-69604 preview

CVE-2025-69604

GitHubgraypixel2121/cve-2025-69604

Proof-of-concept exploit for CVE-2025-69604, demonstrating privilege escalation via malicious package installation in SuperDuper backup tasks on…

educationexploitationprivilege-escalation+2
7 months ago
polkit-CVE-2021-3560_writeup preview

polkit-CVE-2021-3560_writeup

GitHubrealatharva15/polkit-cve-2021-3560_writeup

beginner friendly write-up for the TryHackMe easy level module- polkit:CVE-2021-3560

binary-exploitationctfeducation+4
8 months ago
MacDirtyCowDemo preview

MacDirtyCowDemo

GitHubzhuowei/macdirtycowdemo

Get root on macOS 13.0.1 with CVE-2022-46689 (macOS equivalent of the Dirty Cow bug), using the testcase extracted from Apple's XNU source.

binary-exploitationexploitationpenetration-testing+3
4103 years ago
DiagTrackEoP preview

DiagTrackEoP

GitHubwh04m1001/diagtrackeop

Windows privilege-escalation exploit abusing SeImpersonate via DiagTrack RPC, using Secondary Logon to get an INTERACTIVE token and gain SYSTEM.

adversarial-attackexploitationpenetration-testing+3
884 years ago
dirtyPipe-automaticRoot preview

dirtyPipe-automaticRoot

GitHubnanaao/dirtypipe-automaticroot

CVE-2022-0847 Python exploit to get root or write a no write permission, immutable or read-only mounted file.

binary-exploitationexploitationpayload-generation+2
44 years ago
tugtainer-1.30.2-CVE-2026-55494-and-CVE-2026-62308-to-RCE preview

tugtainer-1.30.2-CVE-2026-55494-and-CVE-2026-62308-to-RCE

GitHub4qu4r1um/tugtainer-1.30.2-cve-2026-55494-and-cve-2026-62308-to-rce

A combination of CVE-2026-55494 and CVE-2026-62308 to get root privilege RCE in tugtainer

container-escapecontainer-securityeducation+5
2 months ago
CVE-2025-6018-and-CVE-2025-6019-Privilege-Escalation preview

CVE-2025-6018-and-CVE-2025-6019-Privilege-Escalation

GitHubazureadtrent/cve-2025-6018-and-cve-2025-6019-privilege-escalation

This is just a quick note on how to exploit these vulnerabilities to get root.

exploitationpenetration-testingpost-exploitation+2
17 months ago
docker_escape_pwn preview

docker_escape_pwn

GitHubhikame/docker_escape_pwn

Escape from Docker using CVE-2017-1000112 and CVE-2017-18344, including gaining root privilage, get all capbilities, namespace recovery, filesystem…

container-escapeexploitationpenetration-testing+3
6 years ago
CVE-2019-12890_RedxploitHQ preview

CVE-2019-12890_RedxploitHQ

GitHubethicalhcop/cve-2019-12890_redxploithq

Use RedxploitHQ to create a new Admin user into redwoodhq and get all the functions on the framework

exploitationpenetration-testingprivilege-escalation+2
6 years ago
Previous1234Next