Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
shellcode-x64 preview

shellcode-x64

GitHubhvictor/shellcode-x64

Shellcodes for Windows >= 11 x64

exploitationpayload-developmentpayload-generation+4
7
6 months ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubl0n3m4n/cve-2024-6387

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

exploitationnetwork-securitypayload-development+6
1112 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubprelearn-code/cve-2024-6387

Proof-of-concept exploit for CVE-2024-6387 (regreSSHion) targeting unauthenticated remote code execution in OpenSSH server via signal handler race…

command-and-controlexploitationpayload-development+4
22 years ago
zaphoxx-coldfusion preview

zaphoxx-coldfusion

GitHubzaphoxx/zaphoxx-coldfusion

coldfusion exploit based on https://cvedetails.com/cve/CVE-2009-2265/

exploitationpayload-generationpenetration-testing+3
25 years ago
CVE-2025-6002 preview

CVE-2025-6002

GitHubschn1tzelme1ster/cve-2025-6002

Python exploit for CVE-2025-6002 targeting authenticated arbitrary file upload in VirtueMart < 4.4.10. Logs in, uploads a PHP webshell, and triggers…

exploitationpayload-generationpenetration-testing+3
5 months ago
CVE-2025-24893 preview

CVE-2025-24893

GitHubinfinit3i/cve-2025-24893

PoC exploits CVE-2025-24893 , a remote code execution (RCE) vulnerability in XWiki caused by improper sandboxing in Groovy macros rendered…

command-and-controlexploitationpayload-generation+3
60 years ago
CVE-2024-56249 preview

CVE-2024-56249

GitHubnxploited/cve-2024-56249

WordPress WPMasterToolKit plugin <= 1.13.1 - Arbitrary File Upload vulnerability

exploitationpayload-generationpenetration-testing+4
11 year ago
CVE-2024-45519 preview

CVE-2024-45519

GitHubp33d/cve-2024-45519

SMTP vulnerability scanner and exploit script that checks for CVE-2024-45519 and establishes a reverse shell on vulnerable servers.

exploitationpayload-generationpenetration-testing+3
421 year ago
CVE-2023-38035-MobileIron-RCE preview

CVE-2023-38035-MobileIron-RCE

GitHubmind2hex/cve-2023-38035-mobileiron-rce

Script to exploit CVE-2023-38035

exploitationpenetration-testingreconnaissance+3
12 years ago
CVE-2022-31814 preview

CVE-2022-31814

GitHubsh4den/cve-2022-31814

Proof of concept for CVE-2022-31814

exploitationpenetration-testingred-teaming+3
11 month ago
CVE-2020-24186 preview

CVE-2020-24186

GitHubgazettel/cve-2020-24186

Exploit script for CVE-2020-24186 in WordPress that uploads a camouflaged PHP webshell and provides interactive or reverse shell access with optional…

exploitationpayload-generationpenetration-testing+4
1 year ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubvuducmanhno100-cloud/cve-2024-6387

CVE-2024-6387 POC (Currently being edited)

exploitationpayload-developmentpenetration-testing+3
3 months ago
CVE-2015-8351 preview

CVE-2015-8351

GitHubg01d3nw01f/cve-2015-8351

this script is exploit for wordpress old plugin gwolle

exploitationpayload-generationpenetration-testing+3
15 years ago
spring-rce-poc preview

spring-rce-poc

GitHubmarcingadz/spring-rce-poc

Testing CVE-2022-22968

exploitationpayload-generationshellcode+2
24 years ago
CVE-2015-6967-EXPLOIT preview

CVE-2015-6967-EXPLOIT

GitHubinnocentx0/cve-2015-6967-exploit

CVE-2015-6967 PoC Exploit

educationexploitationpayload-generation+3
1 year ago
CVE-2022-41544 preview

CVE-2022-41544

GitHubh3x0v3rl0rd/cve-2022-41544

Python exploit script for CVE-2022-41544 in GetSimple CMS. Automates API key leakage, CSRF token extraction, PHP shell upload, and reverse shell…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2022-1292 preview

CVE-2022-1292

GitHubgreek0x0/cve-2022-1292

OpenSSL

command-and-controlexploitationpenetration-testing+3
63 years ago
cve-2025-32433_rce_exploit preview
Archived

cve-2025-32433_rce_exploit

GitHubgiriaryan694-a11y/cve-2025-32433_rce_exploit

This exploit script is designed to simplify exploitation of the Erlang/OTP SSH vulnerability CVE-2025-32433 in the TryHackMe lab environment.

binary-exploitationeducationexploitation+5
8 months ago
Previous12Next