Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
90 results
CVE-2025-24893 preview

CVE-2025-24893

GitHubvasilysaint/cve-2025-24893

OSCP like CVE-2025-24893 exploit for Linux XWiki

educationexploitationlabs-practice+3
13 months ago
CVE-2025-24893 preview

CVE-2025-24893

GitHubalaxar/cve-2025-24893

XWiki 15.10.11, 16.4.1 and 16.5.0RC1 Unauthenticated Remote code execution POC

exploitationpenetration-testingremote-access-tool+2
1 year ago
CVE-2022-4510-WalkingPath preview

CVE-2022-4510-WalkingPath

GitHubadhikara13/cve-2022-4510-walkingpath

A Python script for generating exploits targeting CVE-2022-4510 RCE Binwalk. It supports SSH, command execution, and reverse shell options. Exploits…

binary-exploitationexploitationpayload-generation+3
143 years ago
vsftpd-2.3.4---Backdoor-Command-Execution preview

vsftpd-2.3.4---Backdoor-Command-Execution

GitHubtshaq17/vsftpd-2.3.4---backdoor-command-execution

vsftpd 2.3.4 (CVE-2011-2523) a critical vulnerability that leads to Reverse Root Shell. In this repo I will do a PoC how to exploit it step by step,…

educationexploitationpayload-generation+3
8 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubobrunolima1910/cve-2026-24061

🚨 Exploit CVE-2026-24061, a critical remote authentication bypass in GNU inetutils-telnetd, for instant root shell access without authentication.

authenticationeducationexploitation+3
5 days ago
CVE-2018-11235 preview

CVE-2018-11235

GitHubrogdham/cve-2018-11235

PoC exploit for CVE-2018-11235 allowing RCE on git clone --recurse-submodules

command-and-controlexploitationpayload-generation+2
485 years ago
DarkAgent preview

DarkAgent

GitHubilikenwf/darkagent

DarkAgent Remote Administration Tool RAT by DragonHunter

command-and-controlpenetration-testingpost-exploitation+3
14313 years ago
notRDP preview

notRDP

GitHubdagowda/notrdp

Havoc C2 plugin that creates a hidden Windows desktop, streams it to a browser viewer, and injects mouse/keyboard input for covert remote control.

command-and-controldata-exfiltrationimpersonation-tools+6
2047 days ago
CVE-2017-7494 preview

CVE-2017-7494

GitHubsudlit/cve-2017-7494

Remote root exploit for SAMBA CVE-2017-7494 that compiles a shared library payload, uploads it to a writable share, and triggers loading to spawn a…

exploitationpayload-generationpenetration-testing+2
10 months ago
novahot preview
Archived

novahot

GitHubchrisallenlane/novahot

A webshell framework for penetration testers.

command-and-controlexploit-frameworkspayload-generation+3
2981 year ago
CVE-2022-22963_Reverse-Shell-Exploit preview

CVE-2022-22963_Reverse-Shell-Exploit

GitHubj0ey17/cve-2022-22963_reverse-shell-exploit

CVE-2022-22963 is a vulnerability in the Spring Cloud Function Framework for Java that allows remote code execution. This python script will verify…

exploitationpayload-generationpenetration-testing+3
243 years ago
CVE-2023-42793 preview

CVE-2023-42793

GitHubhhesenjan/cve-2023-42793

Python exploit for CVE-2023-42793 that achieves remote code execution on TeamCity Linux servers by encoding a payload in a URL and sending it to the…

exploitationpenetration-testingremote-access-tool+2
12 years ago
cve-2022-3218 preview

cve-2022-3218

GitHubmoisestapia/cve-2022-3218

Python exploit for CVE-2022-3218 that generates a reverse TCP payload via msfvenom and delivers it over HTTP to a target Windows host.

command-and-controlexploitationpayload-generation+3
9 months ago
CVE-2025-26686-poc-A-critical-RCE-vulnerability-in-Windows-TCP-IP-stack preview

CVE-2025-26686-poc-A-critical-RCE-vulnerability-in-Windows-TCP-IP-stack

GitHubcyghtinc/cve-2025-26686-poc-a-critical-rce-vulnerability-in-windows-tcp-ip-stack

POC for CVE-2025-26686 - A critical RCE vulnerability in Windows TCP/IP stack (CVE-2025-26686) leaves sensitive memory unlocked, allowing remote…

exploitationpayload-developmentpenetration-testing+3
10 months ago
CVE-2022-45701 preview

CVE-2022-45701

GitHubgeniuszly/cve-2022-45701

it is script designed to exploit certain vulnerabilities in routers by sending payloads through SNMP (Simple Network Management Protocol). The script…

educationexploitationiot-security+6
52 years ago
nano preview

nano

GitHubs0md3v/nano

Nano is a family of PHP web shells which are code golfed for stealth.

command-and-controlpayload-generationpenetration-testing+3
4477 years ago
grc2 preview

grc2

GitHubandreiverse/grc2

Lightweight C2 framework written in Nim for generating implants, managing listeners, and executing tasks via TCP/HTTP with a loot system for…

command-and-controlpayload-generationred-teaming+1
3444 years ago
SecurityNotFound preview

SecurityNotFound

GitHubarchive-puma/securitynotfound

Stealthy PHP webshell disguised as a 404 error page with AJAX console, hidden command execution via Referrer header, and preconfigured actions for…

payload-generationremote-access-toolweb-security
914 years ago
Previous12345Next