Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
833 results
ipfire-2-25-auth-rce preview

ipfire-2-25-auth-rce

GitHubkaanaryoverflow/ipfire-2-25-auth-rce

ipfire 2.25 authenticated remote code execution

binary-exploitationexploitationpayload-development+3
2
5 years ago
CVE-2021-46075 preview

CVE-2021-46075

GitHubsanupl/cve-2021-46075

CVE-2021-46075 - A Privilege Escalation vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. Staff account users can access…

exploitationmisconfigurationpenetration-testing+3
13 months ago
mks-copy-fail-mitigation preview

mks-copy-fail-mitigation

GitHubselectel/mks-copy-fail-mitigation

DaemonSet с реализацией временной меры для митигации уязвимости Copy Fail (CVE-2026-31431)

cloud-infrastructure-securitycloud-securitycontainer-security+3
3 months ago
HTB-Facts-Writeup preview

HTB-Facts-Writeup

GitHubkarimelsheikh1/htb-facts-writeup

HackTheBox Facts machine writeup — CVE-2025-2304, MinIO S3 enumeration, SSH key cracking, and facter privilege escalation.

cloud-securityctfeducation+7
4 months ago
htb-facts preview

htb-facts

GitHubmattiapertusati/htb-facts

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc

cloud-securityctfeducation+7
4 months ago
CVE-2025-6934 preview

CVE-2025-6934

GitHub0xterror/cve-2025-6934

Automates exploitation of a critical unauthenticated privilege escalation flaw in the WordPress Opal Estate Pro plugin by crafting a registration…

exploitationpayload-generationpenetration-testing+3
5 months ago
CVE-2022-0441 preview

CVE-2022-0441

GitHubtegal1337/cve-2022-0441

The MasterStudy LMS WordPress plugin before 2.7.6 does to validate some parameters given when registering a new account, allowing unauthenticated…

exploitationpenetration-testingprivilege-escalation+2
13 years ago
CVE-2026-8181 preview

CVE-2026-8181

GitHubxshadow-here/cve-2026-8181

CVE-2026-8181 | Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover

authenticationexploitationinformation-gathering+6
13 months ago
IPFire_2.25_RCE_Authenticated preview

IPFire_2.25_RCE_Authenticated

GitHubjoaoaugustom/ipfire_2.25_rce_authenticated

This exploit is based on CVE-2021-33393 and was built upon the original exploit by Mücahit Saratar, extending it to achieve a reverse shell with root…

exploitationpenetration-testingprivilege-escalation+3
13 months ago
CVE-2021-41805 preview

CVE-2021-41805

GitHubblackm4c/cve-2021-41805

HashiCorp Consul exploit with python. (CVE-2021-41805)

cloud-securityexploitationpenetration-testing+3
13 years ago
Mass-CVE-2023-28121-kdoec preview

Mass-CVE-2023-28121-kdoec

GitHubrio128128/mass-cve-2023-28121-kdoec

CVE-2023-28121 - WooCommerce Payments < 5.6.2 - Unauthenticated Privilege Escalation [ Mass Add Admin User ]

exploitationpenetration-testingprivilege-escalation+2
13 years ago
CVE-2017-8625_Bypass_UMCI preview

CVE-2017-8625_Bypass_UMCI

GitHubhomjxi0e/cve-2017-8625_bypass_umci

Proof-of-concept exploit demonstrating UMCI bypass in Internet Explorer using JScript and ActiveX to execute arbitrary binaries, targeting Windows…

code-analysisexploitationpayload-development+3
19 years ago
C2-and-Post-Exploitation-Framework preview

C2-and-Post-Exploitation-Framework

GitHubjacobtaylor3/c2-and-post-exploitation-framework

CVE-2021-21220 Exploitation infrastructure

command-and-controldata-exfiltrationeducation+8
3 months ago
CVE-2024-32444 preview

CVE-2024-32444

GitHubrxerium/cve-2024-32444

An unauthenticated privilege escalation problem tracked as CVE-2024-32444 (CVSS score: 9.8).

exploitationpenetration-testingprivilege-escalation+3
110 months ago
CVE-2026-3584 preview

CVE-2026-3584

GitHubyucaerin/cve-2026-3584

CVE-2026-3584

exploitationinformation-gatheringpayload-development+5
5 months ago
ubuntu-cve-2019-14287-patch-manager preview

ubuntu-cve-2019-14287-patch-manager

GitHubhivinmanjusri/ubuntu-cve-2019-14287-patch-manager

patch-manager

configuration-auditingeducationlabs-practice+4
4 months ago
CVE-2025-2304_POC preview

CVE-2025-2304_POC

GitHubazureadtrent/cve-2025-2304_poc

CVE-2025-2304 POC - Camaleon CMS Privilege Escalation

exploitationpenetration-testingprivilege-escalation+3
16 months ago
CVE-2023-51518 preview

CVE-2023-51518

GitHubmbadanoiu/cve-2023-51518

CVE-2023-51518: Preauthenticated Java Deserialization via JMX in Apache James

exploitationpayload-developmentpenetration-testing+3
12 years ago
Previous1…353637…47Next