Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
292 results
CVE-2019-7609 preview

CVE-2019-7609

GitHubhekadan/cve-2019-7609

Docker-based lab environment and exploit for CVE-2019-7609 (Kibana Timelion RCE) with reverse shell payload and patch analysis.

educationexploitationlabs-practice+3
20
6 years ago
CVE-2019-11043 preview

CVE-2019-11043

GitHubkriskhub/cve-2019-11043

Dockerized Python exploit for CVE-2019-11043, a critical PHP-FPM remote code execution vulnerability in NGINX configurations. Includes setup, usage,…

educationexploitationpenetration-testing+3
146 years ago
CVE-2025-24893 preview

CVE-2025-24893

GitHubb0ysie7e/cve-2025-24893

Python exploit for CVE-2025-24893, a critical unauthenticated RCE in XWiki Platform, allowing arbitrary Groovy code execution via crafted RSS request…

educationexploitationpenetration-testing+3
110 years ago
my-CVE-2021-1675 preview

my-CVE-2021-1675

GitHubhahaleyile/my-cve-2021-1675

Detailed analysis and exploit implementation for Windows PrintNightmare (CVE-2021-1675/34527) with RPC-based privilege escalation and remote code…

binary-exploitationeducationexploitation+4
35 years ago
CVE-2026-52199 preview

CVE-2026-52199

GitHublamaper/cve-2026-52199

Proof-of-concept exploit for CVE-2026-52199: unauthenticated remote code execution via exposed ADB daemon on UZ801 4G LTE router. Includes…

educationexploitationlabs-practice+5
1 month ago
Cve-2024-38063 preview

Cve-2024-38063

GitHubbrownpanda29/cve-2024-38063

Exploit code and technical analysis for CVE-2024-38063, a critical Windows TCP/IP RCE vulnerability, including CVSS metrics and exploitation details…

educationexploitationpayload-development+3
11 year ago
CVE-2017-11610 preview

CVE-2017-11610

GitHubdungsocool/cve-2017-11610

Step-by-step exploit writeup for CVE-2017-11610 (Supervisord XML-RPC RCE) with attack surface analysis, namespace traversal discovery, and…

educationexploitationlabs-practice+4
3 months ago
CVE-2019-0708 preview

CVE-2019-0708

GitHubumarfarook882/cve-2019-0708

CVE-2019-0708 - BlueKeep (RDP)

binary-exploitationeducationexploitation+3
407 years ago
cve-2010-2075-analysis preview

cve-2010-2075-analysis

GitHubmishaqdev/cve-2010-2075-analysis

Technical writeup and penetration testing report for CVE-2010-2075, demonstrating UnrealIRCd backdoor exploitation and remediation.

educationexploitationlabs-practice+3
2 months ago
n8n-cve-2025-68613 preview

n8n-cve-2025-68613

GitHubgagaltotal/n8n-cve-2025-68613

Authenticated RCE exploit PoC and vulnerability scanner for CVE-2025-68613 in n8n. Supports command execution, file operations, and reverse shell…

command-and-controleducationexploitation+5
8 months ago
byob preview

byob

GitHubmalwaredllc/byob

An open-source post-exploitation framework for students, researchers and developers.

command-and-controleducationpacket-sniffing-analysis+6
9.5k14 days ago
penelope preview

penelope

GitHubbrightio/penelope

Penelope Shell Handler

command-and-controlctfpayload-generation+5
2.0k1 day ago
0x00sec_code preview

0x00sec_code

GitHub0x00pf/0x00sec_code

Educational repository of offensive security source code: remote shells, ELF injectors, crypters, memory injection, and droppers for Linux,…

binary-exploitationeducationexploitation+5
3332 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHubjacubes/cve-2026-24061

CVE-2026-24061 exploit PoC

authenticationeducationexploitation+3
82414 days ago
CVE-2019-0708 preview

CVE-2019-0708

GitHubn1xbyte/cve-2019-0708

dump

educationexploitationpenetration-testing+2
4967 years ago
gmailc2 preview

gmailc2

GitHubmachine1337/gmailc2

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

command-and-controleducationpayload-generation+4
49011 months ago
bluekeep preview

bluekeep

GitHub0xeb-bp/bluekeep

Public work for CVE-2019-0708

educationexploitationpayload-development+3
2936 years ago
Remote-Desktop-Services-Remote-Code-Execution-Vulnerability-CVE-2019-0708- preview

Remote-Desktop-Services-Remote-Code-Execution-Vulnerability-CVE-2019-0708-

GitHubdorkerdevil/remote-desktop-services-remote-code-execution-vulnerability-cve-2019-0708-

Remote code execution exploit for CVE-2019-0708 (BlueKeep) in Windows Remote Desktop Services, designed to integrate with the pocsuite3 framework for…

educationexploitationpenetration-testing+2
1227 years ago
Previous12…17Next