Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
362 results
POC-exploit-for-Dolibarr preview

POC-exploit-for-Dolibarr

GitHub1lkla/poc-exploit-for-dolibarr

POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253)

exploitationpayload-generationpenetration-testing+3
9 months ago
cve-2022-3218 preview

cve-2022-3218

GitHubmoisestapia/cve-2022-3218

Python exploit for CVE-2022-3218 that generates a reverse TCP payload via msfvenom and delivers it over HTTP to a target Windows host.

command-and-controlexploitationpayload-generation+3
9 months ago
CVE-2025-47917 preview

CVE-2025-47917

GitHubbytereaper77/cve-2025-47917

PoC exploit for CVE-2025-47917: Use-After-Free in mbedTLS leading to remote code execution.

binary-exploitationexploitationpayload-development+3
11 year ago
CVE-2025-6002 preview

CVE-2025-6002

GitHubschn1tzelme1ster/cve-2025-6002

Python exploit for CVE-2025-6002 targeting authenticated arbitrary file upload in VirtueMart < 4.4.10. Logs in, uploads a PHP webshell, and triggers…

exploitationpayload-generationpenetration-testing+3
6 months ago
CVE-2025-55182-POC preview

CVE-2025-55182-POC

GitHubluoqichen/cve-2025-55182-poc

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

command-and-controlexploitationpayload-development+5
6 months ago
CVE-2009-3999 preview

CVE-2009-3999

GitHubafifudinmtop/cve-2009-3999

HP Power Manager 4.2 (Build 7) exploit

binary-exploitationexploitationpayload-generation+3
8 months ago
cve-2023-3824 preview

cve-2023-3824

GitHubdadosneurais/cve-2023-3824

Proof-of-concept exploit for CVE-2023-3824 (PHP phar deserialization) enabling remote code execution via crafted phar archive and reverse shell…

command-and-controlexploitationpayload-generation+3
1 year ago
Exploit_MS08-067 preview

Exploit_MS08-067

GitHubnotrustedx/exploit_ms08-067

MS08-067 | CVE-2008-4250

exploitationpayload-generationpenetration-testing+3
11 year ago
CVE-2025-62369 preview

CVE-2025-62369

GitHubcristibtz/cve-2025-62369

This script exploits CVE-2025-62369 in Xibo CMS to execute a reverse shell command.

exploitationpayload-generationpenetration-testing+3
8 months ago
CVE-2025-13390 preview

CVE-2025-13390

GitHubd0n601/cve-2025-13390

WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover

authenticationexploitationpayload-generation+4
10 months ago
exploit_CVE-2024-39205 preview

exploit_CVE-2024-39205

GitHubbtar1gan/exploit_cve-2024-39205

Exploit for CVE-2024-39205, a js2py sandbox escape that enables remote code execution and establishes a reverse shell.

exploitationpayload-generationpenetration-testing+3
19 months ago
CVE-2022-42475-POC preview

CVE-2022-42475-POC

GitHubarthurhendrich/cve-2022-42475-poc

Exploit for CVE-2022-42475, a pre-auth RCE in FortiOS SSL VPN. Supports validation, benign verification, and full exploitation with connect-back…

exploitationpayload-developmentpenetration-testing+4
7 months ago
Drupalgeddon2 preview

Drupalgeddon2

GitHubruthvikvegunta/drupalgeddon2

CVE-2018-7600 | Drupal < 7.58 / < 8.3.9 / < 8.4.6 / < 8.5.1 - 'Drupalgeddon2' RCE

exploitationpayload-generationpenetration-testing+3
6 years ago
CVE-2025-24893 preview

CVE-2025-24893

GitHubandwati/cve-2025-24893

Python exploit for CVE-2025-24893 that executes a reverse shell on vulnerable web applications, with shell upgrade instructions.

command-and-controlexploitationpayload-generation+3
1 year ago
js-driveby-download-CVE-2006-4777 preview

js-driveby-download-CVE-2006-4777

GitHubmario1234/js-driveby-download-cve-2006-4777

malware del lado del cliente de explotacion de vulnerabilidad de internet explorer 6.0 SP1 en windows xp SP2. No requiere de consentimiento por parte…

exploitationmalware-analysispayload-generation+2
8 years ago
CVE-2008-4654 preview

CVE-2008-4654

GitHubhexastrike/cve-2008-4654

A fully functional exploit for a stack-based buffer overflow vulnerability in VideoLan’s VLC Media Player 0.9.4 when processing TiVo files.

binary-exploitationexploitationpayload-development+3
1 year ago
cve-2018-9948-9958-exp preview

cve-2018-9948-9958-exp

GitHuborangepirate/cve-2018-9948-9958-exp

a exp for cve-2018-9948/9958 , current shellcode called win-calc

exploitationpayload-generationshellcode+3
8 years ago
Rig-Exploit-for-CVE-2018-8174 preview

Rig-Exploit-for-CVE-2018-8174

GitHuborf53975/rig-exploit-for-cve-2018-8174

Rig Exploit for CVE-2018-8174 As with its previous campaigns, Rig’s Seamless campaign uses malvertising. In this case, the malvertisements have a…

command-and-controlexploitationmalware-analysis+3
8 years ago
Previous1…151617…21Next