Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
28 results
CVE-2024-36104 preview

CVE-2024-36104

GitHubggfzx/cve-2024-36104

Exploit tool for CVE-2024-36104 targeting Apache OFBiz code execution vulnerability. Supports single and batch URL scanning with proxy and threading…

code-analysisexploitationpenetration-testing+3
2
2 years ago
CVE-2026-5027-Langflow preview

CVE-2026-5027-Langflow

GitHublayer-6/cve-2026-5027-langflow

Multi-CVE exploit tool for pre-auth remote code execution on Ivanti Sentry and FortiSandbox. Features interactive shell, webshell deployment,…

command-and-controlexploitationpayload-development+8
4 months ago
mcpExec preview

mcpExec

GitHubdaemoncibsec/mcpexec

POC for CVE-2026-23744 for a python revshell

command-and-controlexploitationpayload-generation+3
1 month ago
CVE-2025-24893 preview

CVE-2025-24893

GitHubkimtangker/cve-2025-24893

CVE-2025-24893 tool

exploitationpenetration-testingremote-access-tool+2
11 months ago
Webmin-1.580---file-show.cgi-Manual-Remote-Command-Execution-Non-Metasploit- preview

Webmin-1.580---file-show.cgi-Manual-Remote-Command-Execution-Non-Metasploit-

GitHubmarinovharisan/webmin-1.580---file-show.cgi-manual-remote-command-execution-non-metasploit-

Manual, non-Metasploit authenticated Remote Code Execution (RCE) exploit via the browser URL bar for Webmin 1.580 (CVE-2012-2982)

command-and-controlexploitationpenetration-testing+3
4 months ago
CVE-2022-31814 preview

CVE-2022-31814

GitHubarunhatter/cve-2022-31814

This script is a proof-of-concept exploit for pfBlockerNG <= 2.1.4_26 that allows for remote code execution. It takes a single target URL or a list…

exploitationpayload-developmentpenetration-testing+3
2 years ago
CVE-2021-22941 preview

CVE-2021-22941

GitHubhoav18/cve-2021-22941

Python exploit for CVE-2021-22941 targeting Citrix ShareFile RCE with shell and ping options for remote command execution and network probing.

exploitationpenetration-testingred-teaming+3
134 years ago
CVE-2024-23692 preview

CVE-2024-23692

GitHubvanboomqi/cve-2024-23692

Python exploit script for CVE-2024-23692, a template injection RCE in Rejetto HFS 2.3m. Supports single and batch URL exploitation with custom…

exploitationpenetration-testingred-teaming+3
122 years ago
CVE-2021-23369 preview

CVE-2021-23369

GitHubfazilbaig1/cve-2021-23369

Python exploit script for CVE-2021-23369, a Remote Code Execution vulnerability in Handlebars template engine versions before 4.7.7. Accepts a target…

code-analysisexploitationremote-access-tool+2
21 year ago
CVE-2023-42793 preview

CVE-2023-42793

GitHubhhesenjan/cve-2023-42793

Python exploit for CVE-2023-42793 that achieves remote code execution on TeamCity Linux servers by encoding a payload in a URL and sending it to the…

exploitationpenetration-testingremote-access-tool+2
12 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubamitlttwo/cve-2022-1388

Python-based exploit for CVE-2022-1388, an F5 BIG-IP iControl REST authentication bypass leading to remote code execution. Supports single URL,…

command-and-controlexploitationpenetration-testing+3
13 years ago
CVE-2021-25646 preview

CVE-2021-25646

GitHubj2ekim/cve-2021-25646

Python exploit for Apache Druid remote code execution vulnerability CVE-2021-25646, enabling command injection via crafted HTTP requests.

exploitationpenetration-testingremote-access-tool+2
44 years ago
CVE-2021-41773-Apache-2.4.49- preview

CVE-2021-41773-Apache-2.4.49-

GitHubkhaidtraivch/cve-2021-41773-apache-2.4.49-

Exploit scripts for CVE-2021-41773 (Apache 2.4.49) enabling path traversal and remote code execution via CGI, including a reverse shell payload.

exploitationpenetration-testingremote-access-tool+3
1 year ago
CVE-2022-30525 preview

CVE-2022-30525

GitHubhenry4e36/cve-2022-30525

Zyxel 防火墙远程命令注入漏洞(CVE-2022-30525)

command-and-controlexploitationpenetration-testing+3
224 years ago
CVE-2023-34468 preview

CVE-2023-34468

GitHubmbadanoiu/cve-2023-34468

CVE-2023-34468: Remote Code Execution via DB Components in Apache NiFi

exploitationpayload-developmentpenetration-testing+3
82 years ago
CVE-2024-36401 preview

CVE-2024-36401

GitHubniuwoo/cve-2024-36401

POC

command-and-controlexploitationremote-access-tool+2
42 years ago
CVE-2021-26084 preview

CVE-2021-26084

GitHubjun-5heng/cve-2021-26084

confluence远程代码执行RCE / Code By:Jun_sheng

command-and-controlexploitationpenetration-testing+3
14 years ago
CVE-2022-26134 preview

CVE-2022-26134

GitHubkelemaoya/cve-2022-26134

Confluence Server and Data Center存在一个远程代码执行漏洞,未经身份验证的攻击者可以利用该漏洞向目标服务器注入恶意ONGL表达式,进而在目标服务器上执行任意代码。

exploitationpenetration-testingremote-access-tool+2
13 years ago
Previous12Next