Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
197 results
CVE-2021-38163 preview

CVE-2021-38163

GitHubpurpleteam-ru/cve-2021-38163

CVE-2021-38163 - SAP NetWeaver AS Java Desynchronization Vulnerability

exploitationinformation-gatheringpenetration-testing+3
1 year ago
BrainDamage preview
Archived

BrainDamage

GitHubmehulj94/braindamage

Remote administration service which uses twitter as a command and control server

command-and-controldata-exfiltrationinformation-gathering+5
7135 years ago
CVE-2021-22205 preview
Archived

CVE-2021-22205

GitHubinspiringz/cve-2021-22205

GitLab CE/EE Preauth RCE using ExifTool

exploitationpenetration-testingreconnaissance+3
2384 years ago
powercat preview

powercat

GitHubbesimorhino/powercat

netshell features all in version 2 powershell

command-and-controldns-analysisnetwork-security+5
2.4k2 years ago
CVE-2026-61511-PoC-Exploit preview

CVE-2026-61511-PoC-Exploit

GitHubtc4dy/cve-2026-61511-poc-exploit

CVE-2026-61511 – vBulletin Pre-Auth RCE (CVSS 9.8). Vuln 5.x/6.x (unpatched). Multi-exploit via Endpoint Pool, AJAX, PHPFuck WAF bypass. Full…

database-securityexploitationnetwork-mapping+7
52 months ago
lab-annie preview

lab-annie

GitHublincolino/lab-annie

Automates exploitation of CVE-2020-13160, a critical remote code execution vulnerability in AnyDesk 5.5.2, enabling penetration testers to validate…

exploitationpenetration-testingred-teaming+2
1 month ago
CVE-2024-6387-poc-1 preview

CVE-2024-6387-poc-1

GitHubanhvutuan/cve-2024-6387-poc-1

CVE-2024-6387, also known as RegreSSHion, is a high-severity vulnerability found in OpenSSH servers (sshd) running on glibc-based Linux systems. It…

exploitationnetwork-securitypenetration-testing+3
22 years ago
CVE-2026-13768 preview

CVE-2026-13768

GitHubmichaeladamgroberman/cve-2026-13768

CVE-2026-13768: Privileged iothubowner IoT Hub credential — fleet enumeration, device RCE, home-network pivot — Gardyn (ICSA-26-183-03)

cloud-securityexploitationiot-security+5
3 months ago
CVE-2021-21985_PoC preview

CVE-2021-21985_PoC

GitHubalt3kx/cve-2021-21985_poc

PoC exploit and NSE scanner for CVE-2021-21985, a vCenter Server RCE vulnerability in the vSAN Health Check plugin, with manual exploitation steps…

exploitationpenetration-testingreconnaissance+3
2134 years ago
CVE-2019-0708-POC preview

CVE-2019-0708-POC

GitHubaaroncaiii/cve-2019-0708-poc

Proof-of-concept exploit and scanner for CVE-2019-0708 (BlueKeep) that targets Windows RDP services on port 3389 to trigger remote code execution.

exploitationinformation-gatheringpenetration-testing+2
5 years ago
CVE-2017-6079-Blind-Command-Injection-In-Edgewater-Edgemarc-Devices-Exploit preview

CVE-2017-6079-Blind-Command-Injection-In-Edgewater-Edgemarc-Devices-Exploit

GitHubmostafasoliman/cve-2017-6079-blind-command-injection-in-edgewater-edgemarc-devices-exploit

Exploit for CVE-2017-6079 blind command injection in Edgewater Edgemarc devices; reads remote files and uploads/executes ELF payloads via hidden…

exploitationremote-access-toolvulnerability-analysis+1
188 years ago
Webmin_CVE-2019-15107 preview

Webmin_CVE-2019-15107

GitHubsquid22/webmin_cve-2019-15107

CVE-2019–15107 - Unauthenticated RCE Webmin <=1.920

exploitationpenetration-testingremote-access-tool+2
35 years ago
Commvault-CVE-2025-34028 preview

Commvault-CVE-2025-34028

GitHubbecrevex/commvault-cve-2025-34028

Commvault Remote Code Execution (CVE-2025-34028) NSE

exploitationpenetration-testingremote-access-tool+2
11 year ago
CVE-2022-24706 preview

CVE-2022-24706

GitHubbecrevex/cve-2022-24706

Apache CouchDB 3.2.1 - Remote Code Execution (RCE) Checker

exploitationpenetration-testingremote-access-tool+2
1 year ago
MS09-050 preview

MS09-050

GitHubbytejmp/ms09-050

Python exploit for MS09-050 (CVE-2009-3103) SMBv2 srv2.sys buffer overflow, with vulnerability scanner, arch auto-detection, and x86/x64 reverse…

exploitationinformation-gatheringnetwork-security+7
22 days ago
LadonGo preview

LadonGo

GitHubk8gege/ladongo

Ladon for Kali 全平台开源内网渗透扫描器,Windows/Linux/Mac/路由器内网渗透,使用它可轻松一键批量探测C段、B段、A段存活主机、高危漏洞检测MS17010、SmbGhost,远程执行SSH/Winrm,密码爆破SMB/SSH/FTP/Mysql/Mssql/Oracle…

exploitationinformation-gatheringpassword-attacks+5
1.7k2 years ago
CVE-2021-21972 preview

CVE-2021-21972

GitHubalt3kx/cve-2021-21972

Nmap script to detect VMware vCenter Server CVE-2021-21972 RCE vulnerability by probing the uploadova endpoint and checking for vulnerable response.

exploitationinformation-gatheringpenetration-testing+3
545 years ago
n8n-exploit-CVE-2025-68613-n8n-God-Mode-Ultimate preview

n8n-exploit-CVE-2025-68613-n8n-God-Mode-Ultimate

GitHubhackersatyamrastogi/n8n-exploit-cve-2025-68613-n8n-god-mode-ultimate

n8n God Mode Ultimate - CVE-2025-68613 Scanner v1.0.0 ║ ║ Workflow Automation Remote Code Execution

command-and-controleducationexploitation+8
59 months ago
Previous1…345…11Next