Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1023 results
SmarterMail-CVE-2026-24423 preview

SmarterMail-CVE-2026-24423

GitHubcyberalp0/smartermail-cve-2026-24423

Exploit for CVE-2026-24423 — a critical unauthenticated RCE in SmarterMail's ConnectToHub API. Affects all builds prior to 9511.

exploitationpenetration-testingred-teaming+3
16h 17m ago
SmarterMail-CVE-2026-24423- preview

SmarterMail-CVE-2026-24423-

GitHubcyberalp0/smartermail-cve-2026-24423-

Exploit for CVE-2026-24423 — a critical unauthenticated RCE in SmarterMail's ConnectToHub API. Affects all builds prior to 9511.

exploitationpenetration-testingred-teaming+3
16h 17m ago
CVE-2025-66478-PoC-Reverse-Shell preview

CVE-2025-66478-PoC-Reverse-Shell

GitHubjotaespig/cve-2025-66478-poc-reverse-shell

Proof-of-concept exploit for CVE-2025-55182/66478, a React Server Components deserialization RCE, delivering a reverse shell via crafted multipart…

exploitationpayload-developmentpenetration-testing+3
13 days ago
CVE-2026-33017-PoC-Reverse-Shell preview

CVE-2026-33017-PoC-Reverse-Shell

GitHubahseven/cve-2026-33017-poc-reverse-shell

Exploit for CVE-2026-33017, an unauthenticated RCE in Langflow, enabling reverse shell via malicious CustomComponent payload.

exploitationpenetration-testingred-teaming+3
5 days ago
Project-CVE-2026-33017 preview

Project-CVE-2026-33017

GitHube4zyy/project-cve-2026-33017

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

command-and-controlexploitationpayload-development+6
5 days ago
CVE-2025-2945-pgAdmin-RCE preview

CVE-2025-2945-pgAdmin-RCE

GitHubkhashayarnzk/cve-2025-2945-pgadmin-rce

PoC for CVE-2025-2945 — pgAdmin 4 authenticated eval() injection RCE, CVSS 9.9

exploitationpenetration-testingremote-access-tool+2
7 days ago
CVE-2026-73570 preview

CVE-2026-73570

GitHubgabrielunknown/cve-2026-73570

Zimbra SNMP Notification OS Command Injection — Unauthenticated RCE via SMTP exploit (Poc)

exploitationpenetration-testingred-teaming+3
45 days ago
adbHijacker preview

adbHijacker

GitHubunnaim/adbhijacker

A PoC tool for the CVE-2026-0073 on android 11+ devices which allows instant zero click RCE on any unpatched device with adb over tcp enabled

android-securityexploitationmobile-security+5
73 months ago
CVE-2026-7669-PoC preview

CVE-2026-7669-PoC

GitHubgouldnicholas/cve-2026-7669-poc

PoC for CVE-2026-7669: SGLang silent trust_remote_code override -> RCE

exploitationpayload-developmentremote-access-tool+3
4 months ago
CVE-2026-23744-Remote-Code-Execution-POC preview

CVE-2026-23744-Remote-Code-Execution-POC

GitHubsuljov/cve-2026-23744-remote-code-execution-poc

Proof-of-concept exploit for CVE-2026-23744, a remote code execution vulnerability in MCPJam inspector <=1.4.2, triggered via crafted HTTP requests…

exploitationpenetration-testingremote-access-tool+2
115 months ago
CVE-2026-22812-exploit preview

CVE-2026-22812-exploit

GitHubrohmatariow/cve-2026-22812-exploit

Exploitation toolkit for CVE-2026-22812 (OpenCode unauthenticated RCE) providing interactive shell, arbitrary command execution, file…

command-and-controlexploitationpenetration-testing+3
337 months ago
CVE-2021-22205-gitlab preview

CVE-2021-22205-gitlab

GitHubosungjinwoo/cve-2021-22205-gitlab

Python exploit for GitLab CVE-2021-22205, enabling remote command execution and reverse shells on vulnerable GitLab CE/EE versions. Includes batch…

exploitationpenetration-testingremote-access-tool+2
4 years ago
CVE-2026-33017-Langflow-RCE-PoC preview

CVE-2026-33017-Langflow-RCE-PoC

GitHubomer-efe-curkus/cve-2026-33017-langflow-rce-poc

The vulnerability in Langflow 1.8.1 and earlier allows a remote, unauthenticated attacker to achieve arbitrary command execution on the host.

exploitationpenetration-testingremote-access-tool+2
15 months ago
CVE-2024-12856 preview

CVE-2024-12856

GitHubnu113d/cve-2024-12856

An exploit for Four-Faith routers to get a reverse shell

exploitationpenetration-testingremote-access-tool+2
31 year ago
CVE-2026-24061-POC preview

CVE-2026-24061-POC

GitHubms0x08-dev/cve-2026-24061-poc

Proof-of-concept exploit for CVE-2026-24061 providing an interactive remote shell session with configurable timeouts for reliable exploitation.

command-and-controlexploitationpenetration-testing+2
7 months ago
CVE-2026-39987_exploit preview

CVE-2026-39987_exploit

GitHubmki9/cve-2026-39987_exploit

Exploit for Marimo pre-auth RCE via WebSocket auth bypass, providing interactive shell access on affected versions.

exploitationpenetration-testingremote-access-tool+2
4 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubmidox008/cve-2026-24061

GNU Inetutils telnetd Remote Authentication Bypass

exploitationpenetration-testingremote-access-tool+2
4 months ago
CVE-2026-24061-GNU-Inetutils-telnetd-Remote-Authentication-Bypass-Root-Shell- preview

CVE-2026-24061-GNU-Inetutils-telnetd-Remote-Authentication-Bypass-Root-Shell-

GitHubmbanyamer/cve-2026-24061-gnu-inetutils-telnetd-remote-authentication-bypass-root-shell-

Proof-of-concept exploit for GNU Inetutils telnetd authentication bypass (CVE-2026-24061) that spawns a root shell via crafted NEW-ENVIRON USER…

authenticationexploitationpenetration-testing+3
6 months ago
Previous12…57Next