Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
12 results
CVE-2020-17518 preview

CVE-2020-17518

GitHubqmf0c3uk/cve-2020-17518

Python exploit for CVE-2020-17518, allowing arbitrary file write via Apache Flink REST API. Supports single target and batch scanning from a file.

data-exfiltrationexploitationremote-access-tool+2
7
5 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubgotr00t0day/cve-2022-1388

A remote code execution vulnerability exists in the iControl REST API feature of F5's BIG-IP product. An unauthenticated, remote attacker can exploit…

authentication-authorizationexploitationpenetration-testing+3
52 years ago
CVE-2021-40539 preview

CVE-2021-40539

GitHublpyzds/cve-2021-40539

CVE-2021-40539:ADSelfService Plus RCE漏洞

exploitationpenetration-testingreconnaissance+3
1 year ago
-CVE-2017-9805 preview

-CVE-2017-9805

GitHub0x00-0x00/-cve-2017-9805

Exploit script for Apache Struts2 REST Plugin XStream RCE (‎CVE-2017-9805)

exploitationpayload-generationpenetration-testing+3
155 years ago
drupal8-REST-RCE preview

drupal8-REST-RCE

GitHubludy-dev/drupal8-rest-rce

Python exploit script for Drupal 8 REST RCE vulnerabilities (CVE-2019-6340, CVE-2018-7600) enabling remote code execution on target systems via…

exploitationpenetration-testingremote-access-tool+2
45 years ago
-CVE-2017-9805- preview

-CVE-2017-9805-

GitHubjongmartinez/-cve-2017-9805-

Python exploit script for Apache Struts2 REST Plugin XStream RCE (CVE-2017-9805) enabling remote command execution and reverse shell on vulnerable…

exploitationpayload-generationpenetration-testing+3
15 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubamitlttwo/cve-2022-1388

Python-based exploit for CVE-2022-1388, an F5 BIG-IP iControl REST authentication bypass leading to remote code execution. Supports single URL,…

command-and-controlexploitationpenetration-testing+3
13 years ago
CVE-2021-22986 preview

CVE-2021-22986

GitHubamitlttwo/cve-2021-22986

Python exploit for CVE-2021-22986, enabling unauthenticated RCE on F5 BIG-IP and BIG-IQ via iControl REST, with command execution, batch scanning,…

command-and-controlexploitationpenetration-testing+3
3 years ago
CVE-2021-22986 preview

CVE-2021-22986

GitHubal1ex/cve-2021-22986

CVE-2021-22986 & F5 BIG-IP RCE

command-and-controlexploitationpenetration-testing+3
915 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubal1ex/cve-2022-1388

CVE-2022-1388 F5 BIG-IP iControl REST RCE

command-and-controlexploitationpenetration-testing+3
374 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubzeyad-azima/cve-2022-1388

F5 BIG-IP iControl REST vulnerability RCE exploit with Java including a testing LAB

exploitationlabs-practicepenetration-testing+3
133 years ago
F5-BIG-IP-exploit preview

F5-BIG-IP-exploit

GitHubsashka3076/f5-big-ip-exploit

CVE-2022-1388

command-and-controlexploitationremote-access-tool+2
4 years ago