Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
75 results
relay_bible preview

relay_bible

GitHubrootsecdev/relay_bible

Technical Reference to multiple relay techniques

authenticationcurated-resourceseducation+8
193
3 months ago
SEPM-EoP preview

SEPM-EoP

GitHubdimopouloselias/sepm-eop

CVE-2018-18368 SEP Manager EoP Exploit

binary-exploitationexploitationpenetration-testing+2
176 years ago
CVE-2025-2304-POC preview

CVE-2025-2304-POC

GitHubd3vn0mi/cve-2025-2304-poc

Proof-of-concept for CVE-2025-2304 — critical (CVSS 9.4) mass-assignment privilege escalation in Camaleon CMS.

educationexploitationpayload-generation+4
103 months ago
CVE-2026-3629 preview

CVE-2026-3629

GitHubpysectools/cve-2026-3629

WordPress Privilege Escalation Checker

exploitationpenetration-testingprivilege-escalation+3
93 months ago
CVE-2026-53625-GLPI-PoC preview

CVE-2026-53625-GLPI-PoC

GitHub7h30th3r0n3/cve-2026-53625-glpi-poc

GLPI Privilege Escalation via authtype Manipulation PoC - CVE-2026-53625. Ethical PoC for the GLPI vulnerability allowing a Technician to take full…

api-security-testingauthentication-authorizationexploitation+4
19 days ago
CVE-2026-15964-PoC preview

CVE-2026-15964-PoC

GitHubinstructor-admin/cve-2026-15964-poc

PoC & checker for CVE-2026-15964 - unauthenticated password change in the WordPress plugin Single Sign On For TNG <= 2.0.0 (CVSS 9.8)

authentication-authorizationexploitationinformation-gathering+5
119 days ago
CVE-2025-42957-SAP-S-4HANA-Under-Siege preview

CVE-2025-42957-SAP-S-4HANA-Under-Siege

GitHubmrk336/cve-2025-42957-sap-s-4hana-under-siege

CVE‑2025‑42957 exposes an RFC‑enabled SAP S/4HANA module that lets low‑privileged users inject ABAP code to create admin accounts and gain full…

educationexploitationpenetration-testing+4
311 months ago
CVE-2025-6254 preview

CVE-2025-6254

GitHubyucaerin/cve-2025-6254

CVE-2025-6254 — Doctreat Core <= 1.6.8 — Unauthenticated Privilege Escalation

ctfeducationexploitation+8
2 months ago
CVE-2026-8181 preview

CVE-2026-8181

GitHubez4rd1x1/cve-2026-8181

Proof-of-concept exploit for CVE-2026-8181, an authentication bypass in the Burst Statistics WordPress plugin. Demonstrates remote, unauthenticated…

authentication-authorizationctfeducation+5
2 months ago
CVE-2026-6741 preview

CVE-2026-6741

GitHubxxconi/cve-2026-6741

CVE-2026-6741 is a CVSS 8.8 (High) Authenticated (Agent+) Privilege Escalation vulnerability in the LatePoint – Calendar Booking Plugin

ctfeducationexploitation+4
2 months ago
CVE-2020-9758 preview

CVE-2020-9758

GitHubari034/cve-2020-9758

Form submission for vulnerability in livezilla

exploitationinformation-gatheringpenetration-testing+3
36 years ago
CVE-2026-23550 preview

CVE-2026-23550

GitHub1beelze/cve-2026-23550
educationexploitationpenetration-testing+3
1 month ago
CVE-2026-0920- preview

CVE-2026-0920-

GitHubnxploited/cve-2026-0920-

LA-Studio Element Kit for Elementor <= 1.5.6.3 - Unauthenticated Privilege Escalation via Backdoor to Administrative User Creation via lakit_bkrole…

educationexploitationprivilege-escalation+3
24 months ago
NextJS-RCE-Root-Takeover preview

NextJS-RCE-Root-Takeover

GitHubimad457/nextjs-rce-root-takeover

Pentest Report: Next.js 16.0.6 RCE (CVE-2025-66478)

educationexploitationlabs-practice+4
26 months ago
CVE-2024-10793 preview

CVE-2024-10793

GitHubmahajian/cve-2024-10793
exploitationpayload-developmentprivilege-escalation+3
21 year ago
CVE-2025-24000-exploit preview

CVE-2025-24000-exploit

GitHubbsdrip/cve-2025-24000-exploit

Short Python script for exploiting CVE-2025–24000 based on this blog post: https://medium.com/@security_56355/from-subscriber-to-admin-reproducing-cve…

educationexploitationpenetration-testing+3
4 months ago
CVE-2025-15602-PoC preview

CVE-2025-15602-PoC

GitHubnxvh1337/cve-2025-15602-poc

Snipe-IT < 8.3.7 Mass Assignment Vulnerability Leading to Privilege Escalation

authenticationexploitationinformation-gathering+4
4 months ago
CVE-2023-33730 preview

CVE-2023-33730

GitHubsahiloj/cve-2023-33730

eScan Management Console version 14.0.1400.2281 contains privilege escalation via `GetUserCurrentPwd` function lets attackers retrieve any user's…

authentication-authorizationeducationexploitation+8
16 months ago
Previous12345Next