Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
53 results
CVE-2026-75429_PowerJob_friend_process_RCE preview

CVE-2026-75429_PowerJob_friend_process_RCE

GitHubunpredictable21/cve-2026-75429_powerjob_friend_process_rce

Unauthenticated remote code execution exploit for PowerJob Server via Groovy injection in the /friend/process endpoint, enabling arbitrary command…

exploitationpenetration-testingremote-access-trojan+2
28 days ago
CVE-2026-33017 preview

CVE-2026-33017

GitHubmaxprog-svg/cve-2026-33017

CVE-2025-62593 — Ray Unauthenticated RCE Exploit is an unauthenticated remote code execution vulnerability in the Ray distributed AI compute engine.

command-and-controlexploitationreconnaissance+3
6 days ago
malvinci preview

malvinci

GitHubgsoffmarket/malvinci

This simple but powerful script will introduce a new type of malware that will turn off the firewall, start an HTTP server, forward its port through…

command-and-controldata-exfiltrationpayload-development+3
592 years ago
CTT-Enhanced-CVE-2026-46339-Exploit-Engine preview

CTT-Enhanced-CVE-2026-46339-Exploit-Engine

GitHubsimoesctt/ctt-enhanced-cve-2026-46339-exploit-engine

Python framework exploiting CVE-2026-46339 for unauthenticated RCE on 9Router via MCP bridge, using temporal sharding and dispersion to evade…

exploitationpayload-developmentred-teaming+3
10 days ago
CVE-2026-1731 preview

CVE-2026-1731

GitHubjakubie07/cve-2026-1731

Proof-of-concept exploit for CVE-2026-1731, a blind RCE in BeyondTrust Privileged Remote Access and Remote Support, allowing remote command execution…

exploitationpenetration-testingred-teaming+2
64 months ago
CVE-2026-0770-PoC preview

CVE-2026-0770-PoC

GitHubaffix/cve-2026-0770-poc

Proof of Concept for CVE-2026-0770 - Langflow Remote Code Execution

exploitationpenetration-testingremote-access-trojan+2
66 months ago
CVE-2023-22527 preview

CVE-2023-22527

GitHubrevoltsecurities/cve-2023-22527

Exploitation tool for CVE-2023-22527 targeting Confluence servers, enabling remote code execution with support for multiple targets, concurrency, and…

exploitationpenetration-testingred-teaming+3
102 years ago
CVE-2026-22738 preview

CVE-2026-22738

GitHubrockmelodies/cve-2026-22738

SpEL Injection via Unescaped Filter Key in SimpleVectorStore Leads to Remote Code Execution

educationexploitationpayload-development+3
25 months ago
CVE-2026-0770 preview

CVE-2026-0770

GitHub0xgh057r3c0n/cve-2026-0770

Langflow Remote Code Execution (RCE) Proof-of-Concept

educationexploitationpenetration-testing+3
16 months ago
slot2 preview

slot2

GitHubcenobyte-vincit/slot2

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

cloud-securitycommand-and-controldata-exfiltration+5
19 days ago
PSSW100AVB preview

PSSW100AVB

GitHubtihanyin/pssw100avb

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

ai-securitycommand-and-controlids-ips-evasion+5
1.4k3 months ago
SubSeven preview

SubSeven

GitHubdarkcodersc/subseven

SubSeven Legacy Official Source Code Repository

persistence-mechanismspost-exploitationremote-access-tool+1
6552 years ago
Venom preview

Venom

GitHubidov31/venom

Venom is a library that meant to perform evasive communication using stolen browser socket

command-and-controlids-ips-evasionred-teaming+1
3972 years ago
RendezvousRAT preview

RendezvousRAT

GitHubrvrsh3ll/rendezvousrat

Self-healing RAT utilizing libp2p

command-and-controlpost-exploitationred-teaming+1
885 years ago
backdoors preview

backdoors

GitHubhackerhouse-opensource/backdoors

Tools for maintaining access to systems and proof-of-concept demonstrations.

command-and-controlpayload-developmentpersistence-mechanisms+3
1827 months ago
xll_windows_reverse_shell preview

xll_windows_reverse_shell

GitHubh3x0v3rl0rd/xll_windows_reverse_shell

xll windows reverse shell

command-and-controlexploitationpayload-development+4
1 year ago
Umbra preview

Umbra

GitHubh3xduck/umbra

A LKM rootkit targeting 4.x and 5.x kernel versions which opens a backdoor that can spawn a reverse shell to a remote host, launch malware and more.

command-and-controleducationencryption-decryption-tools+6
1364 years ago
n00bRAT preview

n00bRAT

GitHubabhishekkr/n00brat

Remote Administration Toolkit (or Trojan) for POSiX (Linux/Unix) system working as a Web Service

command-and-controleducationfingerprint-spoofing+5
1747 years ago
Previous123Next