Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
460 results
backdoorme preview

backdoorme

GitHubkkevsterrr/backdoorme

SSH-based post-exploitation framework deploying persistent backdoors (bash, Python, Metasploit) with modules for cron, startup, and privilege…

command-and-controlpayload-generationpenetration-testing+5
747
8 years ago
CVE-2018-2628 preview

CVE-2018-2628

GitHub0xmj/cve-2018-2628

Exploit for Oracle WebLogic CVE-2018-2628 that tests vulnerable servers, uploads webshells, and executes remote commands via JRMP deserialization and…

command-and-controlexploitationpayload-generation+3
127 years ago
cve-2019-0227 preview

cve-2019-0227

GitHubianxtianxt/cve-2019-0227

Exploit for Apache Axis 1.4 remote code execution (CVE-2019-0227) with Metasploit listener integration and JSP payload deployment.

exploitationpayload-generationpenetration-testing+3
46 years ago
CVE-2017-7494_SambaCry preview

CVE-2017-7494_SambaCry

GitHubd3fudd/cve-2017-7494_sambacry

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

exploitationpayload-developmentpenetration-testing+3
73 years ago
CVE-2018-20250 preview

CVE-2018-20250

GitHublamsonbinh/cve-2018-20250

Exploit script for CVE-2018-20250 (WinRAR ACE path traversal) with integrated Metasploit payload generation and reverse shell delivery for…

command-and-controlexploitationpayload-generation+3
2 years ago
CVE-2019-8943 preview

CVE-2019-8943

GitHuboussama-rahali/cve-2019-8943

Python exploit for WordPress 5.0.0 achieving remote code execution via CVE-2019-8942 and CVE-2019-8943, with crop-image shell upload technique.

exploitationpayload-developmentpenetration-testing+3
245 years ago
CVE-2004-1561 preview

CVE-2004-1561

GitHubivanitlearning/cve-2004-1561

Icecast Header Overwrite buffer overflow RCE < 2.0.1 (Win32)

exploitationpayload-generationpenetration-testing+3
76 years ago
CVE-2017-11610 preview

CVE-2017-11610

GitHubivanitlearning/cve-2017-11610

Standalone Python ≥3.6 RCE Unauthenticated exploit for Supervisor 3.0a1 to 3.3.2

exploitationpayload-generationpenetration-testing+2
6 years ago
etaHEN preview

etaHEN

GitHubetahen/etahen

PS5 homebrew enabler payload offering post-exploitation features: custom plugin/payload loading, unsigned fself/fpkg support, debug settings, FTP…

binary-exploitationexploitationpayload-development+3
6503 months ago
SockTail preview

SockTail

GitHubyeeb1/socktail

Lightweight Go binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy for ephemeral red team access. Supports…

command-and-controllateral-movementnetwork-security+4
57110 months ago
CVE-2019-3980 preview

CVE-2019-3980

GitHubwarferik/cve-2019-3980

Proof-of-concept exploit for CVE-2019-3980 enabling remote command execution via custom C# payload with HTTP callback for output retrieval.

command-and-controlexploitationpayload-generation+3
185 years ago
CVE-2026-33017 preview

CVE-2026-33017

GitHubdynamo2k1/cve-2026-33017

PoC exploit for CVE-2026-33017: unauthenticated remote code execution in Langflow via malicious Python Custom Component injection, with built-in…

command-and-controlexploitationpayload-generation+4
1 month ago
CVE-2024-24590-ClearML-RCE-CMD-POC preview

CVE-2024-24590-ClearML-RCE-CMD-POC

GitHubdiegogarciayala/cve-2024-24590-clearml-rce-cmd-poc

Python exploit for CVE-2024-24590 that uploads a malicious pickle file to ClearML, enabling reverse shell or custom command execution on the target…

command-and-controlexploitationpayload-generation+3
92 years ago
Redis-RCE preview

Redis-RCE

GitHubal1ex/redis-rce

Exploit tool for Redis 4.x/5.x that achieves remote code execution by loading a custom RedisModule (exp.so) through a rogue server, enabling…

database-securityexploitationpenetration-testing+3
46 years ago
CVE-2007-2447 preview

CVE-2007-2447

GitHubxbufu/cve-2007-2447

Python3 exploit for CVE-2007-2447 targeting Samba 3.0.20-3.0.25rc3 with Netcat reverse shell and custom command execution support.

command-and-controlexploitationpayload-generation+3
24 years ago
CVE-2022-42889 preview

CVE-2022-42889

GitHubengranaabubakar/cve-2022-42889

Python exploit for CVE-2022-42889 (Text4Shell) enabling remote code execution via Apache Commons Text interpolation. Supports reverse shell…

educationexploitationpayload-generation+3
5 months ago
RemoteMouse-3.008-RCE preview

RemoteMouse-3.008-RCE

GitHubgoultarde/remotemouse-3.008-rce

Python-based exploit for CVE-2021-35448 targeting Remote Mouse, enabling remote code execution via custom commands or reverse shells on Windows…

educationexploitationpayload-generation+3
1 year ago
Exploit_MS08-067 preview

Exploit_MS08-067

GitHubnotrustedx/exploit_ms08-067

Python exploit for MS08-067 (CVE-2008-4250) targeting Windows XP/2000/2003 via SMB. Supports custom shellcode, multiple OS versions, and port…

exploitationpayload-generationpenetration-testing+3
11 year ago
Previous12…26Next