Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
CVE-2026-63030 preview

CVE-2026-63030

GitHubfl0ydsec/cve-2026-63030

Python mass exploit and detector for the WordPress Core pre-auth RCE chain CVE-2026-63030 and CVE-2026-60137, chaining SQL injection into remote code…

exploitationpassword-attackspayload-development+7
14 days ago
poisontap preview

poisontap

GitHubsamyk/poisontap

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

authenticationcommand-and-controldata-exfiltration+7
6.5k7 years ago
teamview preview

teamview

GitHubianxtianxt/teamview

Generates TeamViewer ID and password payloads for remote access to target machines. Combines executable generation with third-party remote control…

payload-generationremote-access-toolremote-access-trojan
117 years ago
CVE-2024-22274 preview

CVE-2024-22274

GitHubninhpn1337/cve-2024-22274

Exploit for CVE-2024-22274 that creates a privileged user and spawns a root SSH shell on a target host using provided credentials.

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2021-27651 preview

CVE-2021-27651

GitHuborangmuda/cve-2021-27651

bypass all stages of the password reset flow

authenticationcode-analysisexploitation+3
15 years ago
Rocket-Chat-3.12.1-PoC-CVE-2021-22911- preview

Rocket-Chat-3.12.1-PoC-CVE-2021-22911-

GitHubyoohhuu/rocket-chat-3.12.1-poc-cve-2021-22911-

Proof-of-concept exploit for CVE-2021-22911 targeting Rocket.Chat 3.12.1. Automates privilege escalation from low-privileged user to administrator…

exploitationpenetration-testingprivilege-escalation+3
1 year ago
CVE-2024-42049-PoC preview

CVE-2024-42049-PoC

GitHubzeved/cve-2024-42049-poc

PoC for CVE-2024-42049

exploitationpassword-attackspenetration-testing+3
1 year ago
CVE-2023-4169_CVE-2023-3306_CVE-2023-4415 preview

CVE-2023-4169_CVE-2023-3306_CVE-2023-4415

GitHubthedarknessdied/cve-2023-4169_cve-2023-3306_cve-2023-4415

Ruijie-RG-EW1200G CVE-2023-4169_CVE-2023-3306_CVE-2023-4415

exploitationpassword-attackspenetration-testing+3
292 years ago
CVE-2022-35405 preview

CVE-2022-35405

GitHubviniciuspereiras/cve-2022-35405

ManageEngine PAM360, Password Manager Pro, and Access Manager Plus unauthenticated remote code execution vulnerability PoC-exploit

exploitationpayload-generationpenetration-testing+3
314 years ago
CVE-2019-16113 preview

CVE-2019-16113

GitHubm4rm0k/cve-2019-16113

Bludit 3.9.2 - Remote command execution - CVE-2019-16113

exploitationpassword-attacksremote-access-tool+2
6 years ago
CVE-2018-5354 preview

CVE-2018-5354

GitHubmissing0x00/cve-2018-5354

CVE-2018-5354

exploitationpenetration-testingprivilege-escalation+3
6 years ago
CiscoExploit preview

CiscoExploit

GitHubk8gege/ciscoexploit

Cisco Exploit (CVE-2019-1821 Cisco Prime Infrastructure Remote Code Execution/CVE-2019-1653/Cisco SNMP RCE/Dump Cisco RV320 Password)

exploitationinformation-gatheringpassword-attacks+3
1427 years ago
CVE-2019-19781 preview

CVE-2019-19781

GitHubjas502n/cve-2019-19781

Python exploit for CVE-2019-19781 targeting Citrix ADC with template injection to achieve remote code execution on vulnerable gateways.

exploitationpenetration-testingred-teaming+3
856 years ago
CVE-2022-46080 preview

CVE-2022-46080

GitHubgeniuszly/cve-2022-46080

it is script that enables Telnet on routers by sending a specially crafted request. The script allows users to specify the router's URL, Telnet port,…

educationexploitationpenetration-testing+3
82 years ago
CVE-2025-58434_CVE-2025-59528 preview

CVE-2025-58434_CVE-2025-59528

GitHubhonney336/cve-2025-58434_cve-2025-59528

CVE-2025-58434 Flowise <= 3.0.5 and earlier allows account takeover via unauthenticated forgot-password token. CVE-2025-59528 lowiseAI Custom MCP…

authenticationexploitationpenetration-testing+3
5 months ago
CVE-2025-58434-59528 preview

CVE-2025-58434-59528

GitHubazureadtrent/cve-2025-58434-59528

CVE-2025-58434 and CVE-2025-59528 chain POC

authenticationexploitationpenetration-testing+3
55 months ago
PRTG-Network-Monitor-18.2.38---Authenticated-Remote-Code-Execution-CVE-2018-9276 preview

PRTG-Network-Monitor-18.2.38---Authenticated-Remote-Code-Execution-CVE-2018-9276

GitHubac8999/prtg-network-monitor-18.2.38---authenticated-remote-code-execution-cve-2018-9276

Python Exploit for CVE: 2018-9276

command-and-controlexploitationpayload-generation+3
6 months ago
CVE-2022-26134-Godzilla-MEMSHELL preview

CVE-2022-26134-Godzilla-MEMSHELL

GitHubbeichendream/cve-2022-26134-godzilla-memshell

Java-based exploit for CVE-2022-26134 that injects a Godzilla webshell into Confluence servers, enabling remote code execution with password and key…

command-and-controlexploitationpayload-generation+3
3384 years ago
Previous12Next