Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
834 results
CVE-2024-50404 preview

CVE-2024-50404

GitHubc411e/cve-2024-50404

CVE-2024-50404

exploitationpenetration-testingprivilege-escalation+2
11 year ago
CVE-2022-29063 preview

CVE-2022-29063

GitHubmbadanoiu/cve-2022-29063

CVE-2022-29063: Java Deserialization via RMI Connection in Apache OfBiz

exploitationprivilege-escalationvulnerability-analysis+1
12 years ago
CVE-2024-28000 preview

CVE-2024-28000

GitHubssssuperx/cve-2024-28000

CVE-2024-28000 LiteSpeed Cache Privilege Escalation Scan&Exp

exploitationpassword-attacksprivilege-escalation+3
11 year ago
CVE-2021-31762 preview

CVE-2021-31762

GitHubmesh3l911/cve-2021-31762

Exploiting a Cross-site request forgery (CSRF) attack to creat a new privileged user through the Webmin's add users feature

command-and-controlexploitationpenetration-testing+3
15 years ago
CVE-2019-1653 preview

CVE-2019-1653

GitHubibrahimzx/cve-2019-1653

A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an…

command-and-controlexploitationinformation-gathering+3
13 years ago
CVE-2024-53345 preview

CVE-2024-53345

GitHubshadowbyte1/cve-2024-53345

Critical 0 Day in Car Rental Management System Versions 1.0 - 1.3

exploitationpayload-generationprivilege-escalation+3
11 year ago
CVE-2024-10673 preview

CVE-2024-10673

GitHubnxploited/cve-2024-10673

Top Store <= 1.5.4 - Authenticated (Subscriber+) Arbitrary Plugin Installation/Activation

exploitationpenetration-testingprivilege-escalation+2
11 year ago
CVE-2024-21545-PoC preview

CVE-2024-21545-PoC

GitHubspiralbl0ck/cve-2024-21545-poc

Proxmox VE Arbitrary File Read -> Full System Compromise . Not Testeted yet... will test them this week

exploitationinformation-gatheringprivilege-escalation+2
19 months ago
Mohnad-AL-saif-CVE-2020-11107-XAMPP-Local-Privilege-Escalation preview

Mohnad-AL-saif-CVE-2020-11107-XAMPP-Local-Privilege-Escalation

GitHubmohnad-al-saif/mohnad-al-saif-cve-2020-11107-xampp-local-privilege-escalation

CVE-2020-11107-Local-Privilege-Escalation-XAMPP-7.2.29-7.3.x-7.3.16-7.4.x-7.4.4

exploitationpayload-generationpenetration-testing+3
7 months ago
CVE-2025-29471 preview

CVE-2025-29471

GitHubskraft9/cve-2025-29471

Stored XSS in Nagios Log Server 2024R1.3.1

exploitationpenetration-testingprivilege-escalation+3
7 months ago
CVE-2025-60375 preview

CVE-2025-60375

GitHubahamedyaseen03/cve-2025-60375

CVE-2025-60375 — Authentication bypass / incorrect access control in PerfexCRM < 3.3.1 (admin login)

authenticationmisconfigurationpenetration-testing+3
10 months ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubboianeduard/cve-2025-1974

ingress-nginx admission controller RCE escalation PoC

cloud-securitycontainer-securityeducation+8
7 months ago
CVE-2025-14736 preview

CVE-2025-14736

GitHubhyunchiya/cve-2025-14736

Unauthenticated Privilege Escalation to Administrator via Role Form Field

exploitationpassword-attackspenetration-testing+4
7 months ago
CVE-2022-3294 preview

CVE-2022-3294

GitHubarbaaz29/cve-2022-3294

Privilege Escalation using nodes/proxy (create action allowed) and nodes/status (update/patch actions allowed)

cloud-securitycontainer-securityexploitation+3
7 months ago
gosign-desktop-exploit-poc preview

gosign-desktop-exploit-poc

GitHubsiddolo/gosign-desktop-exploit-poc

CVE-2025-34324, CVE-2025-34327: GoSign Desktop TLS Bypass & Insecure Update Exploit Proof of Concept

binary-exploitationexploitationpenetration-testing+3
9 months ago
CVE-2023-41508 preview

CVE-2023-41508

GitHubredblueteam/cve-2023-41508

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

authenticationexploitationmisconfiguration+3
12 years ago
CVE-2021-36934 preview

CVE-2021-36934

GitHubbytesizedalex/cve-2021-36934

PowerShell scripts to detect and remediate CVE-2021-36934 privilege escalation vulnerability via SAM permission validation and VSS shadow copy…

configuration-auditingexploitationincident-response+3
15 years ago
CVE-2024-48245 preview

CVE-2024-48245

GitHubshadowbyte1/cve-2024-48245

SQL Injection Vulnerability in Vehicle Management System 1.0 - 1.3

database-securityexploitationpenetration-testing+3
11 year ago
Previous1…363738…47Next