Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
679 results
RemoteRecon preview

RemoteRecon

GitHubxorrior/remoterecon

Remote Recon and Collection

payload-generationpenetration-testingpost-exploitation+2
4618 years ago
CVE-2020-2551 preview

CVE-2020-2551

GitHuby4er/cve-2020-2551

Weblogic IIOP CVE-2020-2551

command-and-controlexploitationpayload-development+3
3366 years ago
grc2 preview

grc2

GitHubandreiverse/grc2

Lightweight C2 framework written in Nim for generating implants, managing listeners, and executing tasks via TCP/HTTP with a loot system for…

command-and-controlpayload-generationred-teaming+1
3444 years ago
canisrufus preview

canisrufus

GitHubmaldevel/canisrufus

A stealthy Python based Windows backdoor that uses Github as a command and control server

command-and-controlpayload-generationpost-exploitation+2
2659 years ago
Striker preview

Striker

GitHub4g3nt47/striker

Multi-operator C2 framework with native C and Python agents, HTTP(S) channels, asynchronous tasking, and a reactive web UI for red team operations.

command-and-controlpayload-generationred-teaming+1
3003 years ago
CNVD-C-2019-48814 preview

CNVD-C-2019-48814

GitHubjas502n/cnvd-c-2019-48814

WebLogic wls9-async反序列化远程命令执行漏洞

exploitationpayload-generationpenetration-testing+3
2397 years ago
evil_minio preview

evil_minio

GitHubabelche/evil_minio

EXP for CVE-2023-28434 MinIO unauthorized to RCE

command-and-controlexploitationpayload-development+2
3193 years ago
Remote preview

Remote

GitHubzibility/remote

参考Gh0st源码,实现的一款PC远程协助软件,拥有远程Shell、文件管理、桌面管理、消息发送等功能。

command-and-controlpayload-developmentpenetration-testing+3
23010 years ago
CVE-2019-3396 preview

CVE-2019-3396

GitHubjas502n/cve-2019-3396

Confluence 未授权 RCE (CVE-2019-3396) 漏洞

command-and-controlexploitationpayload-development+3
1456 years ago
GoSH preview

GoSH

GitHubredcode-labs/gosh

Golang reverse/bind shell generator

exploitationpayload-developmentpayload-generation+4
2274 years ago
PwnLnX preview

PwnLnX

GitHubthatstraw/pwnlnx

Multi-threaded Python reverse shell with payload generation, session management, keylogging, screensharing, and persistence for authorized…

command-and-controlpayload-generationpenetration-testing+3
2264 years ago
Converto preview

Converto

GitHubdeveloperkunal/converto

Installing Kali linux on Vps Server

penetration-testingred-teamingremote-access-tool+1
1167 years ago
CVE-2021-21974 preview

CVE-2021-21974

GitHubshadow0ps/cve-2021-21974

POC for CVE-2021-21974 VMWare ESXi RCE Exploit

exploitationpayload-generationpenetration-testing+2
1866 months ago
CVE-2023-3519 preview

CVE-2023-3519

GitHubbishopfox/cve-2023-3519

RCE exploit for CVE-2023-3519

exploitationpayload-developmentremote-access-tool+3
2283 years ago
cve-2017-7494 preview

cve-2017-7494

GitHubbetab0t/cve-2017-7494

Proof-of-Concept exploit for CVE-2017-7494(Samba RCE from a writable share)

exploitationpayload-developmentpenetration-testing+2
1819 years ago
Remot3d preview

Remot3d

GitHubkeepwannabe/remot3d

Remot3d: is a simple tool created for large pentesters as well as just for the pleasure of defacers to control server by backdoors

exploitationpayload-generationpenetration-testing+2
2825 years ago
CVE-2022-26134-Godzilla-MEMSHELL preview

CVE-2022-26134-Godzilla-MEMSHELL

GitHubbeichendream/cve-2022-26134-godzilla-memshell

Java-based exploit for CVE-2022-26134 that injects a Godzilla webshell into Confluence servers, enabling remote code execution with password and key…

command-and-controlexploitationpayload-generation+3
3384 years ago
CVE-2019-0708-EXP-Windows preview

CVE-2019-0708-EXP-Windows

GitHubcbwang505/cve-2019-0708-exp-windows

CVE-2019-0708-EXP-Windows版单文件exe版,运行后直接在当前控制台反弹System权限Shell

exploitationpayload-generationpenetration-testing+3
3176 years ago
Previous1…456…38Next