Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
566 results
CVE-2026-34197-PoC preview

CVE-2026-34197-PoC

GitHubnirvanasec/cve-2026-34197-poc

Proof-of-concept exploit for CVE-2026-34197, an RCE in Apache ActiveMQ via Jolokia's addNetworkConnector, with technical notes and reverse shell…

exploitationpenetration-testingred-teaming+3
2 days ago
cve-2025-55182 preview

cve-2025-55182

GitHubchrisbarack/cve-2025-55182

Technical penetration testing writeup demonstrating exploitation of CVE-2025-55182 in Next.js, credential harvesting from SQLite, and privilege…

exploitationpenetration-testingprivilege-escalation+4
4 days ago
CVE-2025-66478-PoC-Reverse-Shell preview

CVE-2025-66478-PoC-Reverse-Shell

GitHubjotaespig/cve-2025-66478-poc-reverse-shell

Proof-of-concept exploit for CVE-2025-55182/66478, a React Server Components deserialization RCE, delivering a reverse shell via crafted multipart…

exploitationpayload-developmentpenetration-testing+3
17 days ago
CVE-2025-2945-pgAdmin-RCE preview

CVE-2025-2945-pgAdmin-RCE

GitHubkhashayarnzk/cve-2025-2945-pgadmin-rce

PoC for CVE-2025-2945 — pgAdmin 4 authenticated eval() injection RCE, CVSS 9.9

exploitationpenetration-testingremote-access-tool+2
11 days ago
CVE-2026-73570 preview

CVE-2026-73570

GitHubgabrielunknown/cve-2026-73570

Zimbra SNMP Notification OS Command Injection — Unauthenticated RCE via SMTP exploit (Poc)

exploitationpenetration-testingred-teaming+3
49 days ago
adbHijacker preview

adbHijacker

GitHubunnaim/adbhijacker

A PoC tool for the CVE-2026-0073 on android 11+ devices which allows instant zero click RCE on any unpatched device with adb over tcp enabled

android-securityexploitationmobile-security+5
74 months ago
cve-2026-41940-tool preview

cve-2026-41940-tool

GitHubnull200ok/cve-2026-41940-tool

A comprehensive Python utility to **detect**, **scan in bulk**, and **exploit** the critical authentication bypass vulnerability (CVE-2026-41940) in…

exploitationinformation-gatheringpayload-development+5
44 months ago
badblood preview

badblood

GitHubjbaines-r7/badblood

SonicWall SMA-100 Unauth RCE Exploit (CVE-2021-20038)

binary-exploitationexploitationpenetration-testing+2
954 years ago
CVE-2026-1457 preview

CVE-2026-1457

GitHubii4gsp/cve-2026-1457

Provides a detailed analysis and proof-of-concept for CVE-2026-1457, an authenticated buffer overflow in TP-Link VIGI C385 web API leading to remote…

binary-exploitationexploitationpenetration-testing+3
7 months ago
CVE-2026-23744-POC preview

CVE-2026-23744-POC

GitHubfcjaviergarcia/cve-2026-23744-poc

Proof of Concept (PoC) exploit for CVE-2026-23744, a vulnerability affecting MCPJam Inspector that allows remote command execution (RCE) through…

exploitationpenetration-testingremote-access-tool+2
5 months ago
CVE-2021-24307-all-in-one-seo-pack-admin-rce preview

CVE-2021-24307-all-in-one-seo-pack-admin-rce

GitHubdarkpills/cve-2021-24307-all-in-one-seo-pack-admin-rce

Proof-of-concept exploit for CVE-2021-24307, an authenticated admin RCE in All in One SEO Pack <= 4.1.0.1 via PHP unserialization, enabling arbitrary…

exploitationpayload-generationpenetration-testing+3
44 years ago
CVE-2026-23520 preview

CVE-2026-23520

GitHubcypher-21/cve-2026-23520

Proof-of-concept exploit for CVE-2026-23520, a command injection vulnerability in Arcane's updater service, enabling remote code execution via…

exploitationpenetration-testingremote-access-tool+2
25 months ago
CVE-2024-6387_PoC preview

CVE-2024-6387_PoC

GitHubyassdev221608/cve-2024-6387_poc

Scans and exploits CVE-2024-6387 (regreSSHion) in OpenSSH servers. Features multi-threaded scanning, banner retrieval, grace time detection, and…

exploitationnetwork-securitypenetration-testing+2
171 year ago
cube0x0-CVE-2021-1675 preview

cube0x0-CVE-2021-1675

GitHubthejoyofhacking/cube0x0-cve-2021-1675

Impacket-based exploit for CVE-2021-1675/34527 (PrintNightmare) enabling remote or local DLL execution on vulnerable Windows systems, with scanning…

exploitationpayload-developmentpenetration-testing+2
4 years ago
LongBow preview

LongBow

GitHubstanleyjobsonau/longbow

CVE-2023-31756 Proof of Concept - Remote Code Execution for Archer V1/V2 Routers

exploitationpenetration-testingremote-access-tool+2
22 years ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubmonstertsl/cve-2026-24061

Python-based scanner that detects CVE-2026-24061 in GNU Inetutils telnetd, allowing batch testing of multiple targets for the authentication bypass…

authenticationexploitationpenetration-testing+2
17 months ago
lab-annie preview

lab-annie

GitHublincolino/lab-annie

Automates exploitation of CVE-2020-13160, a critical remote code execution vulnerability in AnyDesk 5.5.2, enabling penetration testers to validate…

exploitationpenetration-testingred-teaming+2
11 days ago
cve-2022-42475-poc preview

cve-2022-42475-poc

GitHubull0a/cve-2022-42475-poc

Proof of Concept (PoC) for research and controlled laboratory validation of CVE-2022-42475, a critical heap-based buffer overflow vulnerability…

exploitationpenetration-testingred-teaming+3
112 days ago
Previous12…32Next