Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
35 results
CVE-2024-6387 preview

CVE-2024-6387

GitHubd0rb/cve-2024-6387

Multithreaded Python exploit for OpenSSH CVE-2024-6387 RCE vulnerability, leveraging a signal handler race condition to achieve root access on target…

educationexploitationpayload-development+3
52
2 years ago
CVE-2025-14700-poc preview

CVE-2025-14700-poc

GitHubnosiume/cve-2025-14700-poc

Proof of Concept for Authenticated RCE in Crafty Controller <= 4.6.1

exploitationpayload-generationpenetration-testing+3
18 months ago
CVE-2023-4169_CVE-2023-3306_CVE-2023-4415 preview

CVE-2023-4169_CVE-2023-3306_CVE-2023-4415

GitHubthedarknessdied/cve-2023-4169_cve-2023-3306_cve-2023-4415

Ruijie-RG-EW1200G CVE-2023-4169_CVE-2023-3306_CVE-2023-4415

exploitationpassword-attackspenetration-testing+3
292 years ago
CVE-2024-21762 preview

CVE-2024-21762

GitHubd0rb/cve-2024-21762

The PoC demonstrates the potential for remote code execution by exploiting the identified security flaw.

exploitationpayload-developmentpenetration-testing+3
122 years ago
CVE-2022-41678 preview

CVE-2022-41678

GitHubmbadanoiu/cve-2022-41678

CVE-2022-41678: Dangerous MBeans Accessible via Jolokia API in Apache ActiveMQ

data-exfiltrationexploitationremote-access-tool+2
21 year ago
CVE-2024-3400 preview

CVE-2024-3400

GitHubmarconesler/cve-2024-3400

Exploit for GlobalProtect CVE-2024-3400

exploitationpenetration-testingred-teaming+3
22 years ago
WAGO-CVE-2023-1698 preview

WAGO-CVE-2023-1698

GitHubthedarknessdied/wago-cve-2023-1698

WAGO系统远程代码执行漏洞(CVE-2023-1698)

command-and-controlexploitationpenetration-testing+3
22 years ago
exploit_CVE-2022-24112 preview

exploit_CVE-2022-24112

GitHubbtar1gan/exploit_cve-2022-24112

New exploit for Apache APISIX v2.12.1 - Remote code execution (RCE)

exploitationpenetration-testingremote-access-tool+2
12 years ago
CVE-2021-44228-Apache-Log4j-Rce-main preview

CVE-2021-44228-Apache-Log4j-Rce-main

GitHubravid-checkmarx/cve-2021-44228-apache-log4j-rce-main

Proof-of-concept exploit for CVE-2021-44228 (Log4Shell) with JNDI LDAP/RMI injection, payload compilation, and WAF bypass techniques for testing…

exploitationpayload-generationpenetration-testing+4
4 years ago
DarkAgent preview

DarkAgent

GitHubilikenwf/darkagent

DarkAgent Remote Administration Tool RAT by DragonHunter

command-and-controlpenetration-testingpost-exploitation+3
14213 years ago
thetick preview

thetick

GitHubnccgroup/thetick

A simple embedded Linux backdoor.

command-and-controlembedded-systems-securitypersistence-mechanisms+3
1985 years ago
CVE-2021-44228-Apache-Log4j-Rce preview

CVE-2021-44228-Apache-Log4j-Rce

GitHubtangxiaofeng7/cve-2021-44228-apache-log4j-rce

Apache Log4j 远程代码执行

educationexploitationpayload-generation+4
894 years ago
loki preview

loki

GitHubnccgroup/loki

LOKI (Limited Obstructive Keyboard Impersonator) is a RDP File Transfer Tool Using Keypresses

data-exfiltrationlateral-movementpenetration-testing+3
6310 years ago
Sleipnir preview

Sleipnir

GitHubnccgroup/sleipnir

Tiny payload for transfer via LOKI - Provides high speed Virtual Channel two way file transfer capabilities

data-exfiltrationpayload-developmentpenetration-testing+1
2711 years ago
cisco-rv-rce-poc preview

cisco-rv-rce-poc

GitHuboguzhanozuzun301/cisco-rv-rce-poc

PoC and exploit scripts for CVE-2023-20048 - Remote Code Execution vulnerability affecting Cisco RV series routers. Includes a vulnerability checker…

educationexploitationpenetration-testing+3
111 months ago
CVE-2018-1207-better preview

CVE-2018-1207-better

GitHubhironull/cve-2018-1207-better

Reverse Shell CVE for iDRAC 7 & 8 with firmware 2.52.52.52 and below.

binary-exploitationeducationembedded-systems-security+5
1 year ago
CVE-2020-0022 preview

CVE-2020-0022

GitHubkalibb/cve-2020-0022

Zero-click Bluetooth RCE exploit for Android 8-9 (CVE-2020-0022) with heap spraying, address leaking, and JOP chain execution for remote code…

android-securitybinary-exploitationbluetooth-security+9
6 months ago
Previous12Next