Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2511 results
CVE-2022-46364-Poc preview

CVE-2022-46364-Poc

GitHubkasem545/cve-2022-46364-poc

Python exploit for CVE-2022-46364 (Apache CXF SSRF via MTOM XOP:Include). Sends crafted SOAP requests to exfiltrate internal metadata, credentials,…

exploitationinformation-gatheringpenetration-testing+3
7
6 months ago
cve-2021-41773 preview

cve-2021-41773

GitHubtwseptian/cve-2021-41773

CVE-2021-41773: Path Traversal Zero-Day in Apache HTTP Server Exploited

exploitationinformation-gatheringpenetration-testing+3
44 years ago
CVE-2026-22679 preview

CVE-2026-22679

GitHubkeraattin/cve-2026-22679

Unauthenticated RCE exploit and detection scanner for Weaver E-cology, targeting the dubboApi debug endpoint. Includes PoC, Nmap NSE script, and…

exploitationpenetration-testingreconnaissance+3
55 months ago
cve-2023-27163 preview

cve-2023-27163

GitHubseanrdev/cve-2023-27163

To assist in enumerating the webserver behind the webserver SSRF CVE-2023-27163

exploitationinformation-gatheringreconnaissance+2
43 years ago
cve-2026-41940-tool preview

cve-2026-41940-tool

GitHubnull200ok/cve-2026-41940-tool

A comprehensive Python utility to **detect**, **scan in bulk**, and **exploit** the critical authentication bypass vulnerability (CVE-2026-41940) in…

exploitationinformation-gatheringpayload-development+5
35 months ago
CVE-2020-11547--PRTG-Network-Monitor-Information-Disclosure preview

CVE-2020-11547--PRTG-Network-Monitor-Information-Disclosure

GitHubch-rigu/cve-2020-11547--prtg-network-monitor-information-disclosure

Exploit for CVE-2020-11547: unauthenticated information disclosure in PRTG Network Monitor via crafted HTTP requests to /public/login.htm or…

exploitationinformation-gatheringreconnaissance+2
55 years ago
Get-log4j-Windows-local preview

Get-log4j-Windows-local

GitHubkeysau/get-log4j-windows-local

Identifying all log4j components across on local windows servers. CVE-2021-44228

exploitationinformation-gatheringport-scanning+3
54 years ago
CVE-2025-26318 preview

CVE-2025-26318

GitHubfrozenka/cve-2025-26318

POC CVE-2025-26318

exploitationinformation-gatheringphishing-tools+3
51 year ago
CVE-2024-28255 preview

CVE-2024-28255

GitHubyongye-security/cve-2024-28255

OpenMetadata_RCE (CVE-2024-28255) Batch scan/exploit

exploitationinformation-gatheringpenetration-testing+3
52 years ago
CVE-2023-32315-POC preview

CVE-2023-32315-POC

GitHubizzz0/cve-2023-32315-poc

CVE-2023-32315-Openfire-Bypass

exploitationpenetration-testingreconnaissance+2
53 years ago
Project-CVE-2025-54068 preview

Project-CVE-2025-54068

GitHube4zyy/project-cve-2025-54068

Fast Python scanner detects vulnerable Laravel Livewire v3 sites (CVE-2025-54068, CVSS 9.2). Separates risky sites into vuln.txt, safe sites into…

information-gatheringreconnaissancevulnerability-analysis+2
31 month ago
CVE-2023-32315 preview

CVE-2023-32315

GitHubgibran-abdillah/cve-2023-32315

Automated exploit tool for CVE-2023-32315 authentication bypass vulnerability. Scans single or bulk targets with multiprocessing and automatic login…

exploitationpenetration-testingreconnaissance+2
33 years ago
CVE-2023-35078 preview

CVE-2023-35078

GitHublager1/cve-2023-35078

Shell script to check Ivanti EPMM (MobileIron Core) instances for CVE-2023-35078 remote unauthenticated API access vulnerability, with Shodan dorks…

exploitationinformation-gatheringreconnaissance+2
53 years ago
Confluence-CVE-2022-26134 preview

Confluence-CVE-2022-26134

GitHuby000o/confluence-cve-2022-26134

Proof-of-concept exploit for CVE-2022-26134 in Confluence Server, using OGNL injection to execute commands via crafted HTTP requests.

command-and-controlexploitationreconnaissance+2
44 years ago
jugular preview

jugular

GitHublkarlslund/jugular

Ultrafast CUPS-browsed scanner (CVE-2024-47176)

exploitationinformation-gatheringnetwork-mapping+3
72 years ago
wp2shell preview

wp2shell

GitHubjohenlastgen-jlg/wp2shell

wp2shell - WordPress RCE & PoC (CVE-2026-63030 + CVE-2026-60137)

exploitationinformation-gatheringpenetration-testing+3
22 months ago
cve-2019-2725 preview

cve-2019-2725

GitHubzhusx110/cve-2019-2725

Automated scanner and exploit for CVE-2019-2725 (Oracle WebLogic RCE). Reads target IPs from ip.txt, checks for vulnerability, and saves exploitable…

exploitationpenetration-testingreconnaissance+2
77 years ago
CVE-RCE preview

CVE-RCE

GitHubawei507/cve-rce

CVE-2021-46422漏洞

exploitationpenetration-testingreconnaissance+2
33 years ago
Previous1…99100Next