Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
843 results
CVE-2018-19323 preview

CVE-2018-19323

GitHubblueisbeautiful/cve-2018-19323

An exploitation framework for CVE-2018-19323 - GIGABYTE GDrv privilege escalation vulnerability with multi-architecture support and framework…

binary-exploitationexploit-frameworkspayload-development+5
1 year ago
CVE-2024-23738 preview

CVE-2024-23738

GitHubgiovannipajeu1/cve-2024-23738

Proof-of-concept exploit for CVE-2024-23738 targeting Postman on macOS. Automates vulnerability detection and code injection via Electron settings to…

exploitationpayload-generationremote-access-tool+3
12 years ago
CVE-2024-38077-MadLicense-exploit preview

CVE-2024-38077-MadLicense-exploit

GitHubermensonx/cve-2024-38077-madlicense-exploit

Modular exploit framework for CVE-2024-38077 (Windows RDL heap overflow) with ASLR bypass, heap grooming, ROP chain generation, and DLL injection…

binary-exploitationeducationexploitation+6
19 months ago
CVE-2019-16278-Nostromo-1.9.6-RCE preview

CVE-2019-16278-Nostromo-1.9.6-RCE

GitHubcancela24/cve-2019-16278-nostromo-1.9.6-rce

Exploit for CVE-2019-16278 targeting Nostromo Web Server 1.9.6, achieving remote code execution via directory traversal. Uses pwntools to deliver a…

educationexploitationpayload-generation+3
11 year ago
CVE-2024-23742 preview

CVE-2024-23742

GitHubgiovannipajeu1/cve-2024-23742

Proof-of-concept exploit for CVE-2024-23742 in Loom for macOS. Validates vulnerability and injects arbitrary code via RunAsNode settings to gain a…

exploitationpayload-generationpenetration-testing+3
12 years ago
CVE-2021-3156-Baron-Samedit preview

CVE-2021-3156-Baron-Samedit

GitHubtheleopard65/cve-2021-3156-baron-samedit

A simple Docker lab and Exploit setup for CVE-2021-3156 - "Baron Samedit".

binary-exploitationcontainer-securityeducation+5
16 months ago
CVE-2010-2883 preview

CVE-2010-2883

GitHubavielzecharia/cve-2010-2883

Proof-of-concept exploit for CVE-2010-2883 using buffer overflow, ROP chain, and heap spraying techniques, with Metasploit integration for…

binary-exploitationeducationexploitation+4
111 months ago
CVE-2023-32233 preview

CVE-2023-32233

GitHubvoid0red/cve-2023-32233

Linux kernel privilege escalation exploit for CVE-2023-32233 using nft_quota UAF, ROP chain, and modprobe_path overwrite to gain root on kernels…

binary-exploitationexploitationpayload-development+3
12 years ago
CVE-2024-23743 preview

CVE-2024-23743

GitHubgiovannipajeu1/cve-2024-23743

Automated exploit tool for CVE-2024-23743 targeting Notion macOS via RunAsNode and enableNodeClilnspectArguments, enabling remote code execution and…

exploitationpayload-generationshellcode+2
12 years ago
CVE-2018-2628 preview

CVE-2018-2628

GitHubherantong/cve-2018-2628

Python-based exploit for CVE-2018-2628 targeting Oracle WebLogic Server, providing vulnerability detection and remote shell access via JSP payload…

exploitationpayload-generationpenetration-testing+3
18 months ago
CVE-2025-5548-POC preview

CVE-2025-5548-POC

GitHublorenzoporrasduque/cve-2025-5548-poc

Educational lab demonstrating a stack buffer overflow (CVE-2025-5548) in FreeFloat FTP Server. Covers full exploit development: vulnerability…

binary-exploitationdebuggerseducation+7
6 months ago
CVE-2025-55182-POC preview

CVE-2025-55182-POC

GitHubluoqichen/cve-2025-55182-poc

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

command-and-controlexploitationpayload-development+5
6 months ago
Exploit-CVE-2024-23897 preview

Exploit-CVE-2024-23897

GitHubaadi0258/exploit-cve-2024-23897

Exploit for CVE-2024-23897 in Jenkins, enabling file read and remote code execution via crafted requests. Includes Docker setup and Groovy scripts…

exploitationpenetration-testingremote-access-tool+3
10 months ago
exploit_CVE-2024-39205 preview

exploit_CVE-2024-39205

GitHubbtar1gan/exploit_cve-2024-39205

Exploit for CVE-2024-39205, a js2py sandbox escape that enables remote code execution and establishes a reverse shell.

exploitationpayload-generationpenetration-testing+3
18 months ago
CVE-2022-26810 preview

CVE-2022-26810

GitHubmr-alperen/cve-2022-26810

Remote code execution exploit for CVE-2022-26809 targeting Windows RPC heap buffer overflow with msfvenom shellcode integration and meterpreter…

binary-exploitationcommand-and-controlexploitation+6
8 months ago
CVE-2022-42475-POC preview

CVE-2022-42475-POC

GitHubarthurhendrich/cve-2022-42475-poc

Exploit for CVE-2022-42475, a pre-auth RCE in FortiOS SSL VPN. Supports validation, benign verification, and full exploitation with connect-back…

exploitationpayload-developmentpenetration-testing+4
6 months ago
ms09-050-CVE-2009-3103-exploit preview

ms09-050-CVE-2009-3103-exploit

GitHubnicolasdamians/ms09-050-cve-2009-3103-exploit

Automated exploit wrapper for MS09-050 (CVE-2009-3103) targeting SMBv2 on Windows Vista/Server 2008. Generates shellcode, builds exploit, and creates…

educationexploitationpayload-generation+3
8 months ago
cve-2022-3218 preview

cve-2022-3218

GitHubmoisestapia/cve-2022-3218

Python exploit for CVE-2022-3218 that generates a reverse TCP payload via msfvenom and delivers it over HTTP to a target Windows host.

command-and-controlexploitationpayload-generation+3
9 months ago
Previous1…131415…47Next