Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
104 results
CVE-2021-24155.rb preview

CVE-2021-24155.rb

GitHub0dayninja/cve-2021-24155.rb

WordPress Backup Guard Authenticated Remote Code Execution Exploit

exploit-frameworkspayload-developmentpenetration-testing+3
10
5 years ago
Portspoof preview

Portspoof

GitHubdrk1wi/portspoof

Emulates open ports and service signatures across all 65535 TCP ports to slow reconnaissance, confuse scanners, and waste attacker resources with…

defensive-toolsids-ips-evasionnetwork-security+3
2.4k6 days ago
CVE-2024-32002 preview

CVE-2024-32002

GitHubashutosh0408/cve-2024-32002

This repository contains a PoC for exploiting CVE-2024-32002, a vulnerability in Git that allows RCE during a git clone operation. By crafting…

educationexploitationpayload-development+3
1 year ago
Cve-2024-32002-poc preview

Cve-2024-32002-poc

GitHubashutosh0408/cve-2024-32002-poc

This repository contains a PoC for exploiting CVE-2024-32002, a vulnerability in Git that allows RCE during a git clone operation. By crafting…

binary-exploitationeducationexploitation+3
1 year ago
sharepoint-toolshell-cve-2025-53770 preview

sharepoint-toolshell-cve-2025-53770

GitHubbharath-cyber-root/sharepoint-toolshell-cve-2025-53770
authenticationexploitationpenetration-testing+3
1 year ago
CVE-2025-15556-Notepad-WinGUp-Updater-RCE preview

CVE-2025-15556-Notepad-WinGUp-Updater-RCE

GitHubgeorge0papasotiriou/cve-2025-15556-notepad-wingup-updater-rce
educationexploitationpenetration-testing+3
16 months ago
CVE-2026-49009 preview

CVE-2026-49009

GitHubj0xh-sec/cve-2026-49009

POC for CVE-2026-49009, an authenticated path traversal to RCE issue in Mender Server.

educationexploitationpenetration-testing+3
2 months ago
CVE-2025-34159 preview

CVE-2025-34159

GitHubeyodav/cve-2025-34159

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

cloud-securitycontainer-securityexploitation+5
11 months ago
CVE-2019-9978-Social-Warfare-WordPress-Plugin-RCE preview

CVE-2019-9978-Social-Warfare-WordPress-Plugin-RCE

GitHubhousma/cve-2019-9978-social-warfare-wordpress-plugin-rce

The `swp_debug` parameter in `admin-post.php` allows remote attackers to include external files containing malicious PHP code, which are evaluated on…

educationexploitationpayload-generation+5
1 year ago
BlockchainC2 preview

BlockchainC2

GitHubxpn/blockchainc2

A POC C2 server and agent to explore just if/how the Ethereum blockchain can be used for C2

command-and-controlexploitationpayload-development+2
797 years ago
EvilAbigail preview

EvilAbigail

GitHubstrozfriedberg/evilabigail

Automated Linux evil maid attack

exploitationpassword-attackspayload-development+3
43510 years ago
CVE-2025-27591 preview

CVE-2025-27591

GitHub0x00jeff/cve-2025-27591

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

binary-exploitationexploitationpayload-development+5
151 month ago
CVE-2023-30258-magnus-billing-v7-exploit preview

CVE-2023-30258-magnus-billing-v7-exploit

GitHubtinashelorenzi/cve-2023-30258-magnus-billing-v7-exploit
command-and-controlexploitationpenetration-testing+3
71 year ago
CVE-2023-23397-Report preview

CVE-2023-23397-Report

GitHubcyb3rmaddy/cve-2023-23397-report

An exploitation demo of Outlook Elevation of Privilege Vulnerability

authenticationexploitationlateral-movement+3
13 years ago
cve-2025-66398 preview

cve-2025-66398

GitHubjoshuavanderpoll/cve-2025-66398

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

command-and-controleducationexploitation+7
25 months ago
Absolutely-Positively-NOT-Hacking-Back-with-Pcap preview

Absolutely-Positively-NOT-Hacking-Back-with-Pcap

GitHubstvemillertime/absolutely-positively-not-hacking-back-with-pcap

Streaming Unexpected Network Byte Sequences with High Probability of Blue Screening or Otherwise Crashing Attacker Command-and-Control Nodes

command-and-controlexploitationids-ips-evasion+3
227 years ago
cve-2018-11714_POC preview

cve-2018-11714_POC

GitHubmikelkarma/cve-2018-11714_poc

An issue was discovered on TP-Link TL-WR840N. This issue is caused by improper session handling on the /cgi/ folder or a /cgi file. If an attacker…

authenticationexploitationpenetration-testing+3
1 year ago
QuickResponseC2 preview

QuickResponseC2

GitHubkimd155/quickresponsec2

Covert C2 framework using QR codes for indirect command execution and result retrieval via HTTP/S, designed for stealthy penetration testing and red…

command-and-controlpayload-generationpenetration-testing+2
543 months ago
Previous123456Next