Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
271 results
CVE-2019-11395 preview

CVE-2019-11395

GitHubcaioprince/cve-2019-11395

Python exploit for CVE-2019-11395, a buffer overflow in MailCarrier 2.51 POP3 service. Generates a reverse shell payload via msfvenom and achieves…

binary-exploitationexploitationpayload-generation+3
2 years ago
WonderCMS-4.3.2-XSS-to-RCE-Exploits-CVE-2023-41425 preview

WonderCMS-4.3.2-XSS-to-RCE-Exploits-CVE-2023-41425

GitHub0xdtc/wondercms-4.3.2-xss-to-rce-exploits-cve-2023-41425

Exploit scripts for WonderCMS 4.3.2 that chain XSS to RCE by injecting a crafted theme payload and triggering a reverse shell from the admin session.

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2009-1330 preview

CVE-2009-1330

GitHubadenkiewicz/cve-2009-1330

Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.

binary-exploitationexploitationpayload-generation+3
7 years ago
CVE-2024-39069 preview

CVE-2024-39069

GitHubaungsoepaing/cve-2024-39069

Demonstrates a DLL hijacking vulnerability in iFood Order Manager, allowing arbitrary code execution via a malicious d3d12.dll, with a…

binary-exploitationexploitationpayload-generation+3
2 years ago
CVE-2006-3592 preview

CVE-2006-3592

GitHubadenkiewicz/cve-2006-3592

Exploit for Easy File Sharing FTP Server 3.5 on Win7 32

binary-exploitationexploitationpayload-generation+3
7 years ago
Flangvik preview

Flangvik

GitHub1342486672/flangvik

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode in…

exploitationpayload-generationpenetration-testing+2
4 years ago
CVE-2023-4220 preview

CVE-2023-4220

GitHubh4cking4all/cve-2023-4220

Exploit for CVE-2023-4220, a file upload vulnerability in Chamilo LMS <= 1.11.24, enabling remote code execution via webshell upload and reverse…

exploitationpayload-generationremote-access-tool+3
1 year ago
CVE-2011-2523 preview

CVE-2011-2523

GitHubgr4ykt/cve-2011-2523

Python exploit for vsFTPd 2.3.4 backdoor (CVE-2011-2523) that triggers an interactive shell on port 6200 for remote command execution.

exploitationpayload-generationpenetration-testing+3
4 years ago
CVE-2023-4911 preview

CVE-2023-4911

GitHubguffre/cve-2023-4911

Python-based proof-of-concept exploit for CVE-2023-4911 (Looney Tunables) targeting glibc dynamic loader's parse_tunables() for local privilege…

binary-exploitationexploitationpayload-development+3
2 years ago
chamilo-lms-unauthenticated-rce-poc preview

chamilo-lms-unauthenticated-rce-poc

GitHubcharchit-subedi/chamilo-lms-unauthenticated-rce-poc

This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2024-50986 preview

CVE-2024-50986

GitHubriftsandroses/cve-2024-50986

An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file (DLL Hijacking)

binary-exploitationexploitationpayload-generation+4
1 year ago
CVE-2025-32433-Remote-Shell preview

CVE-2025-32433-Remote-Shell

GitHubmeloppeitreet/cve-2025-32433-remote-shell

Go-based exploit for CVE-2025-32433 that delivers a remote bash shell by exploiting a pre-authentication SSH protocol flaw in Erlang OTP SSH…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2024-23741 preview

CVE-2024-23741

GitHubgiovannipajeu1/cve-2024-23741

Automated exploit for CVE-2024-23741 targeting Hyper on macOS. Validates vulnerability and injects code to spawn a remote shell via RunAsNode and…

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2024-23740 preview

CVE-2024-23740

GitHubgiovannipajeu1/cve-2024-23740

Automated exploit for CVE-2024-23740 targeting Kap on macOS. Injects code via RunAsNode and enableNodeClilnspectArguments to spawn a remote shell.

binary-exploitationexploitationpayload-generation+3
2 years ago
baron-samedit preview

baron-samedit

GitHubczeti/baron-samedit

Assembly-based privilege escalation exploit for CVE-2021-3156 (Baron Samedit) targeting sudo on Ubuntu 20.04. Includes shellcode payload and…

binary-exploitationexploitationpayload-development+4
1 year ago
tools-for-CVE-2018-1000001 preview

tools-for-CVE-2018-1000001

GitHubusernameid0/tools-for-cve-2018-1000001

Exploit toolkit for CVE-2018-1000001 (realpath buffer underflow) providing offset calculation, stack analysis, and LD_PRELOAD-based patching for i386…

binary-exploitationexploitationpayload-development+3
4 years ago
Tomcat-CVE-2025-24813 preview

Tomcat-CVE-2025-24813

GitHubb1gn0se/tomcat-cve-2025-24813

Proof-of-concept exploit for Apache Tomcat CVE-2025-24813, demonstrating remote code execution via partial PUT and deserialization. Includes Docker…

exploitationpayload-generationpenetration-testing+4
1 year ago
CVE-2019-11447_reverse_shell_upload preview

CVE-2019-11447_reverse_shell_upload

GitHubsubsting/cve-2019-11447_reverse_shell_upload

Python exploit for CVE-2019-11447 that uploads a PHP reverse shell to CuteNews 2.1.2, enabling remote command execution on vulnerable web…

exploitationpayload-generationpenetration-testing+3
2 years ago
Previous1…13141516Next