Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1721 results
CVE-2020-6308 preview

CVE-2020-6308

GitHubthemmmdev/cve-2020-6308

Exploit script for SAP Business Objects SSRF

exploitationpenetration-testingred-teaming+2
1
5 years ago
CVE-2022-27925-PoC preview

CVE-2022-27925-PoC

GitHubvnhacker1337/cve-2022-27925-poc

Zimbra RCE simple poc

exploitationpenetration-testingred-teaming+2
654 years ago
CVE-2020-6287 preview

CVE-2020-6287

GitHubmurataydemir/cve-2020-6287

[CVE-2020-6287] SAP NetWeaver AS JAVA (LM Configuration Wizard) Authentication Bypass (Create Simple & Administrator Java User)

authentication-authorizationexploitationpenetration-testing+3
135 years ago
0-click-RCE-Exploit-for-CVE-2024-10924 preview

0-click-RCE-Exploit-for-CVE-2024-10924

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-10924

Unauthenticated authentication bypass to RCE exploit for CVE-2024-10924. Abuses an authentication and 2FA bypass in the Really Simple Security…

authenticationexploitationpayload-development+4
147 months ago
CVE-2021-31166 preview

CVE-2021-31166

GitHubzecopro/cve-2021-31166

simple bash script for exploit CVE-2021-31166

exploitationpenetration-testingred-teaming+2
55 years ago
CVE-2016-2098 preview

CVE-2016-2098

GitHubits-arun/cve-2016-2098

CVE-2016-2098 simple POC written in bash

exploitationpenetration-testingred-teaming+2
18 years ago
gitlab-cve-2021-22205 preview

gitlab-cve-2021-22205

GitHubnukingdragons/gitlab-cve-2021-22205

A simple bash script that exploits CVE-2021-22205 against vulnerable instances of gitlab

command-and-controlexploitationpenetration-testing+3
12 years ago
CVE-2025-29927-PoC preview

CVE-2025-29927-PoC

GitHubw2hcorp/cve-2025-29927-poc

Here is a simple but effective exploit for CVE-2025-29927.

exploitationpenetration-testingred-teaming+3
11 year ago
cve-2024-3400-poc preview

cve-2024-3400-poc

GitHubtfrederick74656/cve-2024-3400-poc

Simple POC for CVE-2024-3400

exploitationpenetration-testingred-teaming+2
2 years ago
CVE-2016-3113 preview

CVE-2016-3113

GitHub0xemanuel/cve-2016-3113

A proof of concept to exploit the reflected XSS vulnerability in the oVirt web interface (RedHat). In this PoC a VM in the oVirt IaaS environment is…

exploitationpenetration-testingred-teaming+2
5 years ago
Webmin_Exploit_reverse_shell preview
Archived

Webmin_Exploit_reverse_shell

GitHubbytereaper77/webmin_exploit_reverse_shell

A simple C-based vulnerability in Webmin versions 1.890 to 1.920

binary-exploitationexploitationpayload-development+4
21 year ago
CVE-2022-36804 preview

CVE-2022-36804

GitHubnotdls/cve-2022-36804

A real exploit for BitBucket RCE CVE-2022-36804

exploitationpenetration-testingred-teaming+3
351 year ago
CVE-2022-1388-RCE-checker-and-POC-Exploit preview

CVE-2022-1388-RCE-checker-and-POC-Exploit

GitHubblind-intruder/cve-2022-1388-rce-checker-and-poc-exploit
exploitationpenetration-testingred-teaming+2
84 years ago
CVE-2023-30258-magnus-billing-v7-exploit preview

CVE-2023-30258-magnus-billing-v7-exploit

GitHubtinashelorenzi/cve-2023-30258-magnus-billing-v7-exploit
command-and-controlexploitationpenetration-testing+3
71 year ago
CVE-2022-41544 preview

CVE-2022-41544

GitHubyosef0x01/cve-2022-41544

Exploit script for CVE-2022-41544 - RCE in get-simple CMS

exploitationpenetration-testingred-teaming+2
13 years ago
fusionpbx_rce_vulnerability preview

fusionpbx_rce_vulnerability

GitHubhoseynheydari/fusionpbx_rce_vulnerability

Chain CVE-2019-11408 – XSS in operator panel and CVE-2019-11409 – Command injection in operator panel.

command-and-controlexploitationpenetration-testing+3
2 years ago
recon-skills preview

recon-skills

GitHubuphiago/recon-skills

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

cloud-securitycrawlerexploitation+9
1.2k23 days ago
malicious-pdf preview

malicious-pdf

GitHubjonaslejon/malicious-pdf

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

data-exfiltrationeducationexploitation+6
4.1k2 months ago
Previous12…96Next