Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
314 results
Project-CVE-2025-54068 preview

Project-CVE-2025-54068

GitHube4zyy/project-cve-2025-54068

Fast Python scanner detects vulnerable Laravel Livewire v3 sites (CVE-2025-54068, CVSS 9.2). Separates risky sites into vuln.txt, safe sites into…

information-gatheringreconnaissancevulnerability-analysis+2
3
3 days ago
htb-labs-nexus preview

htb-labs-nexus

GitHubdiegorivas1/htb-labs-nexus

Hack The Box Nexus machine write-up covering reconnaissance, Gitea credential discovery, Krayin CRM exploitation via CVE-2026-38526, initial access,…

ctfeducationexploitation+7
3 days ago
CVE-2026-41940-AuthBypass-Detector preview

CVE-2026-41940-AuthBypass-Detector

GitHubunteikyou/cve-2026-41940-authbypass-detector

Detection tool for cPanel/WHM CVE-2026-41940 (CRLF injection auth bypass). Verify vulnerability on servers you own or have permission to test. For…

authenticationpenetration-testingreconnaissance+2
24 months ago
POC_CVE-2026-41940 preview

POC_CVE-2026-41940

GitHubimbas007/poc_cve-2026-41940

Proof-of-concept exploit for CVE-2026-41940 targeting cPanel, enabling account enumeration, command execution, and interactive shell access on…

command-and-controlexploitationpenetration-testing+3
3 months ago
cpanelscanner preview

cpanelscanner

GitHub0dev1337/cpanelscanner

Scans internet-exposed cPanel/WHM instances for CVE-2026-41940 authentication bypass, probing HTTPS on port 2087 and matching response markers to…

network-securitypenetration-testingreconnaissance+2
14 months ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubmauricelambert/cve-2021-41773

Multi-language exploit and detection scripts for CVE-2021-41773, enabling remote code execution and local file disclosure on vulnerable Apache…

exploitationinformation-gatheringpenetration-testing+3
14 years ago
Twenty-Three-Scanner preview

Twenty-Three-Scanner

GitHubmadfxr/twenty-three-scanner

CVE-2026-24061 - GNU InetUtils Telnetd Remote Authentication Bypass

exploitationinformation-gatheringnetwork-security+3
47 months ago
tscan preview

tscan

GitHubcumakurt/tscan

Python-based scanner that detects and exploits CVE-2026-24061 telnetd authentication bypass, enabling root shell access on vulnerable GNU Inetutils…

educationexploitationnetwork-security+4
17 months ago
CVE-2023-46805 preview

CVE-2023-46805

GitHubcbeek-r7/cve-2023-46805

Simple scanner for scanning a list of ip-addresses for vulnerable Ivanti Pulse Secure devices

exploitationinformation-gatheringnetwork-security+2
52 years ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubtrya9ain/cve-2026-24061

Batch scanner for CVE-2026-24061 that scans multiple IPs/CIDRs for vulnerable services, with configurable ports, timeouts, and threading for…

exploitationnetwork-securitypenetration-testing+2
97 months ago
CVE-2025-55971-Blind-Unauthenticated-SSRF-in-TCL-Smart-TV-UPnP-DLNA-AVTransport preview

CVE-2025-55971-Blind-Unauthenticated-SSRF-in-TCL-Smart-TV-UPnP-DLNA-AVTransport

GitHubszym0n13k/cve-2025-55971-blind-unauthenticated-ssrf-in-tcl-smart-tv-upnp-dlna-avtransport

TCL 65C655 Smart TV, running firmware version V8-R75PT01-LF1V269.001116 (Android TV, Kernel 5.4.242+), is vulnerable to a blind, unauthenticated…

exploitationiot-securitynetwork-security+3
11 months ago
-nginxui_discover preview

-nginxui_discover

GitHubnull200ok/-nginxui_discover

Nginx UI Discovery Scanner - CVE-2026-27944 Version Detector

information-gatheringnetwork-securityreconnaissance+3
25 months ago
CVE-2021-40438 preview

CVE-2021-40438

GitHubkashkovsky/cve-2021-40438

Proof-of-concept exploit for CVE-2021-40438, an Apache HTTP Server mod_proxy vulnerability allowing request forwarding to arbitrary origins, with a…

exploitationpenetration-testingreconnaissance+2
194 years ago
CopyFail-Scanner-CVE-2026-31431 preview

CopyFail-Scanner-CVE-2026-31431

GitHubraptoratack/copyfail-scanner-cve-2026-31431

Scans systems for CVE-2026-31431 (CopyFile vulnerability), enumerates system details, evaluates exposure, reports vulnerable status, and optionally…

configuration-auditinginformation-gatheringpenetration-testing+3
3 months ago
scan-cve-2026-24061 preview

scan-cve-2026-24061

GitHubkillsystema/scan-cve-2026-24061

Scans for CVE-2026-24061 telnetd auth bypass, generating payloads and verifying root access on vulnerable GNU inetutils telnetd devices.

exploitationiot-securitynetwork-security+3
6 months ago
unrealircd-backdoor-pentest-report preview

unrealircd-backdoor-pentest-report

GitHubelazab2005/unrealircd-backdoor-pentest-report

Controlled PenTest lab report for UnrealIRCd 3.2.8.1 backdoor (CVE-2010-2075) on Metasploitable3 with remediation steps.

educationexploitationlabs-practice+5
9 days ago
RCE-CVE-2026-10520-CVE-2026-10523 preview

RCE-CVE-2026-10520-CVE-2026-10523

GitHubimbas007/rce-cve-2026-10520-cve-2026-10523

Detection artifact generator for Ivanti Sentry authentication bypass and RCE vulnerabilities (CVE-2026-10520, CVE-2026-10523). Scans single or…

exploitationpenetration-testingreconnaissance+3
6 days ago
CVE-2024-28000-Exploit-Lab preview

CVE-2024-28000-Exploit-Lab

GitHubshawnng078-ops/cve-2024-28000-exploit-lab

Hands-on reproduction of CVE-2024-28000 in LiteSpeed Cache using an isolated WordPress lab. Includes reconnaissance, vulnerable hash recovery,…

educationexploitationlabs-practice+5
8 days ago
Previous12…18Next