Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
833 results
CVE-2019-12890_RedxploitHQ preview

CVE-2019-12890_RedxploitHQ

GitHubethicalhcop/cve-2019-12890_redxploithq

Use RedxploitHQ to create a new Admin user into redwoodhq and get all the functions on the framework

exploitationpenetration-testingprivilege-escalation+2
6 years ago
CVE-2022-39196- preview

CVE-2022-39196-

GitHubdayiliwaseem/cve-2022-39196-

Black board CMS Escalation of Privileges

data-exfiltrationexploitationinformation-gathering+3
3 years ago
CVE-2018-5354 preview

CVE-2018-5354

GitHubmissing0x00/cve-2018-5354

CVE-2018-5354

exploitationpenetration-testingprivilege-escalation+3
5 years ago
CVE_Project preview

CVE_Project

GitHubmhe18/cve_project

CVE-2016-1240 exploit and patch

binary-exploitationexploitationprivilege-escalation+2
7 years ago
CVE-2024-57429 preview

CVE-2024-57429

GitHubahrixia/cve-2024-57429

CVE-2024-57429: PHPJabbers Cinema Booking System v2.0 is vulnerable to CSRF, allowing attackers to escalate privileges by forging requests on behalf…

exploitationpenetration-testingprivilege-escalation+3
1 year ago
CVE-2024-57778 preview

CVE-2024-57778

GitHubkuk3n4n/cve-2024-57778

An issue in Orbe ONetView Roteador Onet-1200 Orbe 1680210096 allows a remote attacker to escalate privileges via the servers response from status…

exploitationiot-securitypenetration-testing+3
1 year ago
CVE-2021-42562 preview

CVE-2021-42562

GitHubmbadanoiu/cve-2021-42562

CVE-2021-42562: Improper Access Control in MITRE Caldera

exploitationmisconfigurationpenetration-testing+3
2 years ago
CVE-2025-25616 preview

CVE-2025-25616

GitHubarmaansidana2003/cve-2025-25616

Proof-of-concept demonstrating incorrect access control in Unifiedtransform v2.0, allowing students to modify exam rules via the /exams/edit-rule…

exploitationmisconfigurationpenetration-testing+3
1 year ago
Event-ID-189-Rule-Name-SOC227-CVE-2023-29357 preview

Event-ID-189-Rule-Name-SOC227-CVE-2023-29357

GitHubahmedmansour93/event-id-189-rule-name-soc227-cve-2023-29357

Event ID 189 Rule Name SOC227 Microsoft SharePoint Server Elevation of Privilege Possible CVE-2023-29357 .. Exploitation

exploitationpenetration-testingprivilege-escalation+2
1 year ago
CVE-2025-24990_POC preview

CVE-2025-24990_POC

GitHubmoiz-2x/cve-2025-24990_poc

Proof of Concept CVE-2025-24990 (Agere Systems's driver)

binary-exploitationexploitationexploit-frameworks+2
5910 months ago
CVE-2026-4112 preview

CVE-2026-4112

GitHubhann1bl3l3ct3r/cve-2026-4112

Improper neutralization of special elements used in an SQL command (“SQL Injection”) in SonicWall SMA1000 series appliances allows a remote…

exploitationpenetration-testingprivilege-escalation+2
14 months ago
CVE-2026-1492-POC preview

CVE-2026-1492-POC

GitHubmedlemark-dz/cve-2026-1492-poc

User Registration & Membership <= 5.1.2 - Unauthenticated Privilege Escalation via Membership Registration

exploitationpenetration-testingprivilege-escalation+2
5 months ago
CVE-2026-31431-Patch preview

CVE-2026-31431-Patch

GitHubxsanflip/cve-2026-31431-patch

Bash script to mitigate and patch CVE-2026-31431 (Copy Fail), a Linux kernel LPE, by blacklisting AF_ALG modules, flushing page cache, and updating…

configuration-auditingprivilege-escalationvulnerability-analysis
33 months ago
EpSiLoNPoInT- preview

EpSiLoNPoInT-

GitHubepsilonpoint88-glitch/epsilonpoint-

Modular exploit framework targeting CVE-2026-23550 in WordPress, featuring mass exploitation, obfuscation, post-exploitation, and Docker-based C2…

command-and-controlexploitationpayload-development+7
16 months ago
Vulmap preview
Archived

Vulmap

GitHubvulmon/vulmap

Vulmap Online Local Vulnerability Scanners Project

exploitationinformation-gatheringpenetration-testing+4
9783 years ago
CVE-2022-38577-Processmaker preview
Archived

CVE-2022-38577-Processmaker

GitHubsornram9254/cve-2022-38577-processmaker

ProcessMaker before v3.5.4 was discovered to contain insecure permissions in the user profile page. This vulnerability allows attackers to escalate…

exploitationexploit-frameworkspenetration-testing+3
31 year ago
DarkWidow preview

DarkWidow

GitHubreveng007/darkwidow

Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird + Spawns a…

binary-analysiseducationexploitation+6
8077 months ago
CVE-2026-41091-PoC-Exploit preview

CVE-2026-41091-PoC-Exploit

GitHubtc4dy/cve-2026-41091-poc-exploit

CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM 🔥 via Cloud Files API + NTFS junction…

binary-exploitationeducationexploitation+4
31 month ago
Previous1…394041…47Next