Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
681 results
WingFTP-CVE-2025-47812-illdeed preview

WingFTP-CVE-2025-47812-illdeed

GitHubill-deed/wingftp-cve-2025-47812-illdeed

Remote Command Execution exploit for Wing FTP Server (CVE-2025-47812)

exploitationpayload-developmentpenetration-testing+3
1 year ago
CVE-2025-24893-Reverse-Shell preview

CVE-2025-24893-Reverse-Shell

GitHubazureadtrent/cve-2025-24893-reverse-shell

Reverse Shell Payload for CVE-2025-24893

exploitationpayload-developmentpenetration-testing+3
1 year ago
CVE-2025-32433 preview

CVE-2025-32433

GitHubmrdreamreal/cve-2025-32433

CVE-2025-32433 Summary and Attack Overview

command-and-controlexploitationpayload-generation+3
1 year ago
CVE-2017-7494 preview

CVE-2017-7494

GitHubhomjxi0e/cve-2017-7494

Exploit module for CVE-2017-7494, a Samba remote code execution vulnerability via arbitrary shared library load. Requires valid credentials and…

exploitationpayload-developmentpenetration-testing+3
9 years ago
UnrealIRCd-3.2.8.1-Backdoor-Command-Execution preview

UnrealIRCd-3.2.8.1-Backdoor-Command-Execution

GitHubchancej715/unrealircd-3.2.8.1-backdoor-command-execution

Python exploit for UnrealIRCd 3.2.8.1 backdoor (CVE-2010-2075) delivering a reverse shell via Netcat listener.

command-and-controlexploitationpayload-development+3
3 years ago
NagiosXI-RCE-all-version-CVE-2021-40345 preview

NagiosXI-RCE-all-version-CVE-2021-40345

GitHubarianeblow/nagiosxi-rce-all-version-cve-2021-40345

RFI to RCE Nagios/NagiosXI exploitation

exploitationpayload-generationpenetration-testing+3
4 years ago
sh1mazu preview

sh1mazu

GitHubnu11secur1ty/sh1mazu

Meterpreter auto exploit program

command-and-controlexploitationpayload-generation+4
3 years ago
vsftpd234-exploit preview

vsftpd234-exploit

GitHublghost256/vsftpd234-exploit

Exploit for CVE-2011-2523.

exploitationpayload-developmentpenetration-testing+2
1 year ago
CVE-2020-9496 preview

CVE-2020-9496

GitHubambalabanov/cve-2020-9496

XML-RPC request are vulnerable to unsafe deserialization and Cross-Site Scripting issues in Apache OFBiz 17.12.03

exploitationpayload-generationpenetration-testing+3
5 years ago
CVE-2023-43208 preview

CVE-2023-43208

GitHub4nuxd/cve-2023-43208

Unauthenticated RCE exploit for CVE-2023-43208 in Mirth Connect via XML deserialization, with version detection, bulk scanning, and interactive PTY…

exploitationpayload-generationpenetration-testing+3
6 months ago
clone_and_pwn preview

clone_and_pwn

GitHubh0k5/clone_and_pwn

Exploits CVE-2018-11235

command-and-controlexploitationpayload-generation+3
8 years ago
CVE-2007-2447-RCE preview

CVE-2007-2447-RCE

GitHubmikerega7/cve-2007-2447-rce

Samba 3.0.20

command-and-controlexploitationpayload-generation+3
3 years ago
-CVE-2011-2523 preview

-CVE-2011-2523

GitHub0xsojalsec/-cve-2011-2523

Python3 exploit script for VSFTPD 2.3.4 backdoor command execution (CVE-2011-2523) that connects to the target FTP service and spawns a shell using…

command-and-controlexploitationpayload-generation+3
4 years ago
PoC-for-CVE-2020-28948-CVE-2020-28949 preview

PoC-for-CVE-2020-28948-CVE-2020-28949

GitHubjinhao-l/poc-for-cve-2020-28948-cve-2020-28949

Proof-of-concept exploit for CVE-2020-28948 and CVE-2020-28949 targeting PHAR deserialization and inclusion vulnerabilities in Archive_Tar, enabling…

exploitationpayload-developmentpenetration-testing+3
3 years ago
CVE-2024-21762 preview

CVE-2024-21762

GitHub0x13-bytezer0/cve-2024-21762

Detects and exploits CVE-2024-21762 pre-authentication RCE in FortiGate SSL VPN, featuring baseline validation, automatic exploitation, ROP…

exploitationpayload-generationpenetration-testing+4
8 months ago
CVE-2020-14882 preview

CVE-2020-14882

GitHubalexfrancow/cve-2020-14882

Proof-of-concept exploit for CVE-2020-14882 in Oracle WebLogic Server, demonstrating remote code execution via crafted HTTP requests to the console…

command-and-controlexploitationpayload-generation+3
5 years ago
CVE-2021-44228-Log4j-PoC-RCE preview

CVE-2021-44228-Log4j-PoC-RCE

GitHubgrupo-kapa-7/cve-2021-44228-log4j-poc-rce

PoC RCE Log4j CVE-2021-4428 para pruebas

exploitationpayload-generationpenetration-testing+3
4 years ago
CVE-2024-6387_Check preview

CVE-2024-6387_Check

GitHubhadesnull123/cve-2024-6387_check

RCE OpenSSH CVE-2024-6387 Check and Exploit

exploitationpayload-developmentpenetration-testing+2
2 years ago
Previous1…323334…38Next