Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
98 results
HWSyscalls preview

HWSyscalls

GitHubdec0ne/hwsyscalls

HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.

ids-ips-evasionpayload-developmentpenetration-testing+2
737
3 years ago
SharpFtpC2 preview

SharpFtpC2

GitHubdarkcodersc/sharpftpc2

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

adversarial-attackcommand-and-controleducation+3
912 years ago
CVE-2024-22274-RCE preview

CVE-2024-22274-RCE

GitHubl0n3m4n/cve-2024-22274-rce

PoC - Authenticated Remote Code Execution in VMware vCenter Server (Exploit)

command-and-controlexploitationpenetration-testing+3
482 years ago
MassExploit-CVE-2025-55182 preview

MassExploit-CVE-2025-55182

GitHubcirqueiradev/massexploit-cve-2025-55182

CVE-2025-55182 RCE - Massive Scanner POC

educationexploitationpenetration-testing+3
59 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubhualy13/cve-2025-55182

Automated proof-of-concept exploit for Next.js RCE (CVE-2025-55182) with interactive shell, batch scanning, and advanced payload encoding for…

exploitationpayload-developmentpenetration-testing+3
49 months ago
cve-2025-61882-oracle_ebs_rce_reproduction preview

cve-2025-61882-oracle_ebs_rce_reproduction

GitHubrazureink/cve-2025-61882-oracle_ebs_rce_reproduction

CVE Reproduction: cve-2025-61882-oracle_ebs_rce_reproduction

exploitationpayload-developmentpenetration-testing+3
2 months ago
cve-2025-55182-react2shell_reproduction preview

cve-2025-55182-react2shell_reproduction

GitHubrazureink/cve-2025-55182-react2shell_reproduction

CVE Reproduction: cve-2025-55182-react2shell_reproduction

exploitationpayload-developmentpenetration-testing+3
2 months ago
react2shell-evolved preview

react2shell-evolved

GitHubguiimoraes/react2shell-evolved

A evolved version of assetnote CVE-2025-55182 scanner

exploitationpayload-generationpenetration-testing+5
29 months ago
Blackash-CVE-2025-55182 preview

Blackash-CVE-2025-55182

GitHubshen771/blackash-cve-2025-55182

CVE-2025-55182

command-and-controlctfeducation+7
9 months ago
CVE-2026-20127 preview

CVE-2026-20127

GitHub0xblackash/cve-2026-20127

CVE-2026-20127

authenticationexploitationnetwork-security+3
3 months ago
FiberBreak preview

FiberBreak

GitHubscumfrog/fiberbreak

React2Shell Exploitation Tool (CVE-2025-55182)

cloud-securitycommand-and-controldata-exfiltration+8
9 months ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubryosukedtomita/cve-2025-55182

CVE-2025-55182 — React2Shell

exploitationpayload-developmentpenetration-testing+3
6 months ago
http-react2shell preview

http-react2shell

GitHubmoisestapia/http-react2shell

Detection of the React Server Actions Exploit vector – CVE-2025-55182 / CVE-2025-66478

devsecopseducationexploitation+6
9 months ago
unleashed-firmware preview

unleashed-firmware

GitHubdarkflippers/unleashed-firmware

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

embedded-systems-securityfuzzinghardware-hacking+7
22.4k2 days ago
firmware preview

firmware

GitHubbrucedevices/firmware

Predatory ESP32 Firmware

bluetooth-securityembedded-systems-securityexploitation+9
6.9k19 days ago
GhostESP preview

GhostESP

GitHubghostesp-revival/ghostesp

The open-source wireless research platform for ESP32.

bluetooth-securityembedded-systems-securityhardware-hacking+8
1.0k1 day ago
TCP-32764 preview

TCP-32764

GitHubelvanderb/tcp-32764

some codes and notes about the backdoor listening on TCP-32764 in linksys WAG200G.

curated-resourcesembedded-systems-securityexploitation+4
1.3k7 years ago
keysweeper preview

keysweeper

GitHubsamyk/keysweeper

KeySweeper is a stealthy Arduino-based device, camouflaged as a functioning USB wall charger, that wirelessly and passively sniffs, decrypts, logs…

data-exfiltrationembedded-systems-securityhardware-hacking+4
1.1k9 years ago
Previous123456Next