Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
23 results
Laravel-8.4.2-rce-CVE-2021-3129 preview

Laravel-8.4.2-rce-CVE-2021-3129

GitHubfunphishing/laravel-8.4.2-rce-cve-2021-3129

Python exploit for CVE-2021-3129, a remote code execution vulnerability in Laravel 8.4.2. Includes Docker environment for local testing and requires…

exploitationpenetration-testingred-teaming+2
2
5 years ago
CVE-2023-39362-cacti-snmp-command-injection-poc preview

CVE-2023-39362-cacti-snmp-command-injection-poc

GitHubjakabakos/cve-2023-39362-cacti-snmp-command-injection-poc

Proof-of-concept exploit for CVE-2023-39362, an authenticated command injection in Cacti's SNMP options. Includes a vulnerable Docker environment for…

command-and-controlexploitationlabs-practice+4
22 years ago
PoC---CVE-2023-26482-RCE-LAB-Nextcloud preview

PoC---CVE-2023-26482-RCE-LAB-Nextcloud

GitHubisabbii/poc---cve-2023-26482-rce-lab-nextcloud

Docker-based lab reproducing CVE-2023-26482 (Nextcloud RCE) with automated exploit script for educational vulnerability analysis and exploitation…

educationexploitationlabs-practice+5
7 months ago
dockernymous preview

dockernymous

GitHubbcapptain/dockernymous

A script used to create a whonix like gateway/workstation environment with docker containers.

container-securityeducationpenetration-testing+2
1287 years ago
CVE-2026-20253 preview

CVE-2026-20253

GitHubivanesk315/cve-2026-20253

Docker lab environment with PoC exploit and checker for CVE-2026-20253, a pre-auth RCE in Splunk Enterprise via the PostgreSQL sidecar service.

educationexploitationlabs-practice+4
3 days ago
AutoSploit preview

AutoSploit

GitHubnullarray/autosploit

Automated Mass Exploiter

command-and-controlexploit-frameworksinformation-gathering+5
5.3k6 years ago
Lab4PurpleSec preview

Lab4PurpleSec

GitHub0xmr007/lab4purplesec

Lab4PurpleSec is a modular Purple Team homelab combining a vulnerable Active Directory environment (GOAD), a Docker-based web DMZ, pfSense +…

educationids-ips-evasionintrusion-detection+5
3328 months ago
CVE-2025-55182_liyon preview

CVE-2025-55182_liyon

GitHubhujiaozhuzhu/cve-2025-55182_liyon

Python-based exploit for CVE-2025-55182 (React Server Components RCE) with interactive shell, reverse shell, batch scanning, and Docker-based…

command-and-controleducationexploitation+7
5 months ago
cve-2022-22947-docker preview

cve-2022-22947-docker

GitHubhh-hunter/cve-2022-22947-docker

Dockerized exploit for CVE-2022-22947 targeting Spring Cloud Gateway. Provides a ready-to-use environment for testing and demonstrating the remote…

exploitationpenetration-testingred-teaming+2
4 years ago
WifiForge preview

WifiForge

GitHubblackhillsinfosec/wififorge

Automated WiFi hacking lab environment using mininet-wifi to simulate wireless attack vectors for pentester training, eliminating hardware overhead.

educationlabs-practicepenetration-testing+3
1.2k1 month ago
KLAIOS preview

KLAIOS

GitHublglznl/klaios

KLAIOS is a hybrid security environment that merges Kali Linux’s offensive toolkit with hardened, VPN-bunker-style isolation—enhanced by modern AI…

ai-securitycontainer-securityexploit-frameworks+7
17 months ago
CVE-2021-32675 preview

CVE-2021-32675

GitHubrubbxalc/cve-2021-32675

Functional DoS exploit for CVE-2021-32675 in Redis, leveraging oversized bulk string headers to trigger memory exhaustion. Includes usage…

educationexploitationpenetration-testing+2
4 days ago
CVE-2022-1329-WordPress-Elementor-RCE preview

CVE-2022-1329-WordPress-Elementor-RCE

GitHubgrazee/cve-2022-1329-wordpress-elementor-rce

Proof-of-concept exploit for CVE-2022-1329, a remote code execution vulnerability in WordPress Elementor 3.6.0-3.6.2. Includes Docker-based…

exploitationpayload-developmentpenetration-testing+3
44 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubmazx0p/cve-2021-41773

Proof-of-concept exploit for CVE-2021-41773, enabling remote code execution and CGI-bin path traversal on Apache HTTP Server 2.4.49. Includes…

exploitationpenetration-testingred-teaming+2
14 years ago
CVE-2025-33053-POC preview

CVE-2025-33053-POC

GitHubcyberw1ng/cve-2025-33053-poc

POC for CVE-2025-33053 WebDav Exploit, demonstrating how the vulnerability can be triggered in a real environment. This repository focuses on…

command-and-controleducationexploitation+7
8 months ago
CVE-2019-19356 preview

CVE-2019-19356

GitHubqq1515406085/cve-2019-19356

Docker-based proof-of-concept exploit for CVE-2019-19356, enabling rapid reproduction and testing of the vulnerability in a controlled environment.

exploitationpenetration-testingred-teaming+2
6 years ago
cve-2021-41773-v- preview

cve-2021-41773-v-

GitHubmightysai1997/cve-2021-41773-v-

Proof-of-concept exploit for Apache HTTP Server 2.4.49/2.4.50 path traversal vulnerability (CVE-2021-41773) enabling remote code execution via CGI…

educationexploitationpenetration-testing+3
3 years ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubl4rm4nd/cve-2025-55182

Docker-based lab for detecting and exploiting CVE-2025-55182 (React2Shell RCE) in Next.js/React Server Components, with pre-configured vulnerable…

educationlabs-practicepenetration-testing+4
879 months ago
Previous12Next