Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
271 results
CVE-2024-10914-Exploit preview

CVE-2024-10914-Exploit

GitHubtamirido30/cve-2024-10914-exploit

Exploit script for CVE-2024-10914 providing remote command execution, reverse shell support, and file transfer capabilities for authorized…

command-and-controlexploitationpayload-generation+5
1 year ago
CVE-2009-2265 preview

CVE-2009-2265

GitHubmatesz44/cve-2009-2265

POSIX shell proof-of-concept for CVE-2009-2265, leveraging curl, msfvenom, and uuidgen to generate and execute a payload for exploitation testing.

exploitationpayload-generationpenetration-testing+2
7 months ago
cve-2022-3218 preview

cve-2022-3218

GitHubmoisestapia/cve-2022-3218

Python exploit for CVE-2022-3218 that generates a reverse TCP payload via msfvenom and delivers it over HTTP to a target Windows host.

command-and-controlexploitationpayload-generation+3
8 months ago
CVE-2023-46818 preview

CVE-2023-46818

GitHubengranaabubakar/cve-2023-46818

Proof-of-concept exploit for authenticated PHP code injection in ISPConfig <= 3.2.11, enabling remote code execution via unsanitized language file…

code-analysisexploitationpayload-generation+4
1 year ago
UnrealIRCd-3.2.8.1-Backdoor-Command-Execution preview

UnrealIRCd-3.2.8.1-Backdoor-Command-Execution

GitHubchancej715/unrealircd-3.2.8.1-backdoor-command-execution

Python exploit for UnrealIRCd 3.2.8.1 backdoor (CVE-2010-2075) delivering a reverse shell via Netcat listener.

command-and-controlexploitationpayload-development+3
3 years ago
CVE-2017-9544 preview

CVE-2017-9544

GitHubadenkiewicz/cve-2017-9544

SEH BO based exploit for Easy Chat Server on Win 7 32b

binary-exploitationexploitationpayload-generation+3
7 years ago
sh1mazu preview

sh1mazu

GitHubnu11secur1ty/sh1mazu

Automated Meterpreter payload generator and reverse shell exploit tool for remote exploitation of OS vulnerabilities, enabling post-exploitation…

command-and-controlexploitationpayload-generation+4
3 years ago
CVE-2017-8869 preview

CVE-2017-8869

GitHubtankist0x01/cve-2017-8869

Local SEH buffer overflow exploit for MediaCoder 0.8.48.5888 with reverse shell payload generation.

binary-exploitationexploitationpayload-generation+3
5 months ago
CVE-2022-22965 preview

CVE-2022-22965

GitHublucaspdiniz/cve-2022-22965

Proof-of-concept exploit for Spring4Shell (CVE-2022-22965) with a Python script that deploys a JSP webshell to vulnerable Spring Core applications…

exploitationpayload-generationpenetration-testing+3
2 years ago
looney-tuneables preview

looney-tuneables

GitHubsilent6trinity/looney-tuneables

Exploit for CVE-2023-4911 (Looney Tunables) targeting glibc ld.so privilege escalation with pwntools-based payload generation.

binary-exploitationexploitationpayload-development+3
2 years ago
Linux_X86_Reverse_TCP_Alphanumeric_Staged_Shellcode_Execve-bin-bash preview

Linux_X86_Reverse_TCP_Alphanumeric_Staged_Shellcode_Execve-bin-bash

GitHubsnir-levi/linux_x86_reverse_tcp_alphanumeric_staged_shellcode_execve-bin-bash
exploitationpayload-developmentpayload-generation+1
9 years ago
CVE-2024-36401-WoodpeckerPlugin preview

CVE-2024-36401-WoodpeckerPlugin

GitHubfunnydog896/cve-2024-36401-woodpeckerplugin

CVE-2024-36401-GeoServer Property 表达式注入 Rce woodpecker-framework 插件

exploitationpayload-developmentpayload-generation+4
1 year ago
CVE-2025-48827 preview

CVE-2025-48827

GitHubwiseep/cve-2025-48827

Multi-threaded remote code execution exploit for vBulletin (versions 5.0.0-5.7.5, 6.0.0-6.0.3) with automatic vulnerability detection and PHP…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2024-25600-mass preview

CVE-2024-25600-mass

GitHubsvchostmm/cve-2024-25600-mass

Mass exploit for CVE-2024-25600, uploading webshells to vulnerable WordPress sites via a list of targets.

exploitationpayload-generationshellcode+2
2 years ago
CVE-2022-46169 preview

CVE-2022-46169

GitHubbkreisel/cve-2022-46169

Python exploit for CVE-2022-46169 targeting Cacti <= 1.2.22, delivering a staged reverse shell with configurable callback IP, port, and remote shell.

exploitationpayload-generationpenetration-testing+3
3 years ago
CVE-2024-23692 preview

CVE-2024-23692

GitHubmr-r00t11/cve-2024-23692

Rejetto HFS (HTTP File Server) is a simple web file server that facilitates file sharing over a network or the internet.

exploitationpayload-generationpenetration-testing+4
2 years ago
CVE-2022-41544 preview

CVE-2022-41544

GitHubh3x0v3rl0rd/cve-2022-41544

Python exploit script for CVE-2022-41544 in GetSimple CMS. Automates API key leakage, CSRF token extraction, PHP shell upload, and reverse shell…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2023-0386-libs preview

CVE-2023-0386-libs

GitHubestamelgg/cve-2023-0386-libs

C-based exploit for CVE-2023-0386 with static compilation and msfvenom-generated shellcode for privilege escalation on Linux systems.

binary-exploitationexploitationpayload-generation+4
2 years ago
Previous1…121314…16Next