Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
173 results
CVE-2022-41114 preview

CVE-2022-41114

GitHubgmh5225/cve-2022-41114

Windows Bind Filter Driver Elevation of Privilege Vulnerability. CVE project by @Sn0wAlice

exploitationinformation-gatheringprivilege-escalation+1
1
3 years ago
CVE-2025-44823 preview

CVE-2025-44823

GitHubskraft9/cve-2025-44823

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

api-securityauthenticationexploitation+3
10 months ago
CVE-2026-39987 preview

CVE-2026-39987

GitHubnxploited/cve-2026-39987

marimo is a reactive Python notebook. Prior to 0.23.0, Marimo has a Pre-Auth RCE vulnerability

exploitationinformation-gatheringpenetration-testing+4
4 months ago
AutoPwn-Titanic.htb preview

AutoPwn-Titanic.htb

GitHubmaikneysm/autopwn-titanic.htb

This is an automated exploitation script for the Hack The Box machine *Titanic*. It extracts Gitea user hashes via LFI, assists in cracking them, and…

ctfexploitationinformation-gathering+5
1 year ago
Harmonic preview

Harmonic

GitLabrunik/harmonic

Suite for reverse shell handling geared toward working within the native shell

command-and-controlinformation-gatheringpayload-development+7
8 years ago
Windows-Exploit-Suggester-Python3 preview

Windows-Exploit-Suggester-Python3

GitHubh3x0v3rl0rd/windows-exploit-suggester-python3

Python-based cross-referencing tool: uses Windows systeminfo and MS security bulletins to detect unpatched vulnerabilities and suggest privilege…

exploitationinformation-gatheringprivilege-escalation+1
1 year ago
CVE-2025-25968 preview

CVE-2025-25968

GitHubpadayali-jd/cve-2025-25968

Proof-of-concept exploit for CVE-2025-25968, an improper access control vulnerability in DDSN Interactive cm3 Acora CMS v10.1.1. Enables…

exploitationinformation-gatheringpenetration-testing+3
0 years ago
CVE-2017-7921-EXP preview

CVE-2017-7921-EXP

GitHubinj3ction/cve-2017-7921-exp

Exploit for CVE-2017-7921 targeting Hikvision devices with improper authentication. Retrieves user lists, camera snapshots, and configuration files…

exploitationinformation-gatheringiot-security+3
3 years ago
CVE-2022-39196- preview

CVE-2022-39196-

GitHubdayiliwaseem/cve-2022-39196-

Black board CMS Escalation of Privileges

data-exfiltrationexploitationinformation-gathering+3
4 years ago
CVE-2024-37010 preview

CVE-2024-37010

GitHubsarpantkeltiek/cve-2024-37010

Exploit for the CVE-2024-37010: access other user's external storage & lateral movement

data-exfiltrationexploitationinformation-gathering+5
1 year ago
CVE-2019-14287 preview

CVE-2019-14287

GitHubh3x0v3rl0rd/cve-2019-14287

Shell script to detect CVE-2019-14287 sudo privilege escalation vulnerability. Scans systems for the flaw and reports affected configurations.

exploitationinformation-gatheringpenetration-testing+3
1 year ago
linux-exploit-suggester-2 preview

linux-exploit-suggester-2

GitHubh3x0v3rl0rd/linux-exploit-suggester-2

Post-exploitation utility that scans kernel/OS version and configuration to suggest applicable local privilege escalation exploits.

exploitationinformation-gatheringpenetration-testing+3
3 years ago
CVE-2024-52382 preview

CVE-2024-52382

GitHubrandomrobbiebf/cve-2024-52382

Matix Popup Builder <= 1.0.0 - Unauthenticated Arbitrary Options Update

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2021-44217 preview

CVE-2021-44217

GitHubhyperkopite/cve-2021-44217

Proof-of-concept for a stored XSS vulnerability (CVE-2021-44217) in Ericsson CodeChecker's comments component, enabling cookie theft and sensitive…

data-exfiltrationinformation-gatheringprivilege-escalation+3
4 years ago
CVE-2020-24028 preview

CVE-2020-24028

GitHubunderprotection/cve-2020-24028

Proof-of-concept for CVE-2020-24028: authenticated privilege escalation via insecure permissions in ForLogic Qualiex v1 and v3, enabling user…

exploitationinformation-gatheringpenetration-testing+3
6 years ago
Lin_enum preview

Lin_enum

GitHubh3x0v3rl0rd/lin_enum

Shell script for automated enumeration of Linux systems to identify privilege escalation vectors and configuration weaknesses.

information-gatheringpenetration-testingpost-exploitation+2
1 year ago
CVE-2024-57523. preview

CVE-2024-57523.

GitHubhackwidmaddy/cve-2024-57523.

CVE-2024-57523 - CSRF Vulnerability in Users.php - SourceCodester Packers and Movers Management System 1.0

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2025-4162029 preview

CVE-2025-4162029

GitHubnotitssixtyn3in/cve-2025-4162029

Security advisory detailing a critical authentication vulnerability (CVE-2025-4162029) in Copilot, enabling unauthorized account access via user ID…

authenticationexploitationinformation-gathering+3
1 year ago
Previous1…8910Next