Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
796 results
firecat preview

firecat

GitHubbishopfox/firecat

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.

lateral-movementpenetration-testingpost-exploitation+2
135
10 years ago
Gorsair preview
Archived

Gorsair

GitHubullaakut/gorsair

Gorsair gives root access on remote docker containers that expose their APIs

cloud-securitycontainer-securityexploitation+6
8482 years ago
CVE-2024-10914-Exploit preview

CVE-2024-10914-Exploit

GitHubtamirido30/cve-2024-10914-exploit

CVE-2024-10914 Shell Exploit

command-and-controlexploitationpayload-generation+5
1 year ago
CVE-Exploit-Research-Development preview

CVE-Exploit-Research-Development

GitHubfaizanali8232/cve-exploit-research-development

A professional Python tool designed for educational penetration testing, demonstrating SSH vulnerabilities (CVE-2008-0166 / CVE-2008-1657) with…

command-and-controleducationexploitation+6
6 months ago
CVE-2025-55182-poc-tool preview

CVE-2025-55182-poc-tool

GitHubdh4v4l8/cve-2025-55182-poc-tool

Automated exploit tool for CVE-2025-55182 in Next.js React Server Components. Enables remote command execution with built-in WAF bypass, custom…

exploitationpenetration-testingremote-access-tool+3
310 months ago
CVE-2026-22812 preview

CVE-2026-22812

GitHub0xgh057r3c0n/cve-2026-22812

Python exploit tool for OpenCode RCE (CVE-2026-22812) providing command execution, file read/write/upload/download, and interactive shell for…

command-and-controlexploitationpenetration-testing+3
28 months ago
CVE-2018-9276 preview

CVE-2018-9276

GitHubbardlaudian/cve-2018-9276

CVE-2018-9276 — PRTG Network Monitor < 18.2.39 Authenticated RCE. For educational purposes and authorized penetration testing only.

command-and-controleducationexploitation+5
16 days ago
PeekABoo preview

PeekABoo

GitHubviralmaniar/peekaboo

PeekABoo tool can be used during internal penetration testing when a user needs to enable Remote Desktop on the targeted machine. It uses PowerShell…

penetration-testingpost-exploitationred-teaming+1
1457 years ago
cve-2019-0708 preview

cve-2019-0708

GitHubcve-2019-0708-poc/cve-2019-0708

Exploit tool targeting CVE-2019-0708 in Remote Desktop Services, enabling remote code execution on vulnerable Windows systems for penetration testing…

exploitationpenetration-testingremote-access-tool+2
187 years ago
Eden-RAT preview

Eden-RAT

GitHubiss4cf0ng/eden-rat

An open-source Linux GUI-based Remote Access Tool developed in C# with a Python payload, intended for legitimate penetration testing and…

command-and-controlencryption-decryption-toolsexploitation+5
337 months ago
hfs-cve-2014-6287-exploit preview

hfs-cve-2014-6287-exploit

GitHubfrancescobrina/hfs-cve-2014-6287-exploit

Python-based exploit for CVE-2014-6287 in HTTP File Server 2.3.x, delivering a reverse shell via Base64-encoded PowerShell payload for authorized…

command-and-controleducationexploitation+5
1 year ago
CVE-2025-8110 preview

CVE-2025-8110

GitHubixzodiak/cve-2025-8110

Gogs service Exploit and get the root user

ctfeducationexploitation+4
12 months ago
CVE-2026-5027-Langflow preview

CVE-2026-5027-Langflow

GitHublayer-6/cve-2026-5027-langflow

Multi-CVE exploit tool for pre-auth remote code execution on Ivanti Sentry and FortiSandbox. Features interactive shell, webshell deployment,…

command-and-controlexploitationpayload-development+8
4 months ago
CVE-2023-27350 preview

CVE-2023-27350

GitHubdezso-dfield/cve-2023-27350

PaperCut NG/MG Authentication Bypass and Remote Code Execution (RCE) Exploit Tool. A standalone Bash implementation of the PaperCut exploit chain,…

authentication-authorizationcommand-and-controlexploitation+4
9 months ago
CVE-2020-14882_Exploit_Gui preview

CVE-2020-14882_Exploit_Gui

GitHubqianniaoge/cve-2020-14882_exploit_gui

GUI-based exploit tool for CVE-2020-14882 targeting Oracle WebLogic servers. Supports reverse shell payload generation, proxy configuration, and…

exploitationpayload-generationpenetration-testing+3
5 years ago
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
39.1k1 day ago
gh0st preview

gh0st

GitHubsin5678/gh0st

a open source remote administrator tool

command-and-controlpayload-developmentpenetration-testing+3
55913 years ago
PANIX preview

PANIX

GitHubaegrah/panix

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

container-escapepenetration-testingpersistence-mechanisms+4
8907 months ago
Previous12…45Next