Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
362 results
CVE-2017-8869 preview

CVE-2017-8869

GitHubtankist0x01/cve-2017-8869

CVE-2017-8869 - MediaCoder 0.8.48.5888 - Local Buffer Overflow (SEH)

binary-exploitationexploitationpayload-generation+3
6 months ago
CVE-2022-46169 preview

CVE-2022-46169

GitHubbkreisel/cve-2022-46169

🐍 Python Exploit for CVE-2022-46169

exploitationpayload-generationpenetration-testing+3
3 years ago
CVE-2023-0386-libs preview

CVE-2023-0386-libs

GitHubestamelgg/cve-2023-0386-libs

CVE-2023-0386 包含所需运行库

binary-exploitationexploitationpayload-generation+4
2 years ago
CVE-2024-23692 preview

CVE-2024-23692

GitHubmr-r00t11/cve-2024-23692

Rejetto HFS (HTTP File Server) is a simple web file server that facilitates file sharing over a network or the internet.

exploitationpayload-generationpenetration-testing+4
2 years ago
CVE-2022-41544 preview

CVE-2022-41544

GitHubh3x0v3rl0rd/cve-2022-41544

Python exploit script for CVE-2022-41544 in GetSimple CMS. Automates API key leakage, CSRF token extraction, PHP shell upload, and reverse shell…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2024-50986 preview

CVE-2024-50986

GitHubriftsandroses/cve-2024-50986

An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file (DLL Hijacking)

binary-exploitationexploitationpayload-generation+4
1 year ago
baron-samedit preview

baron-samedit

GitHubczeti/baron-samedit

This repository contains a Proof-of-Concept (PoC) exploit for the Baron Samedit vulnerability (CVE-2021-3156). The exploit demonstrates privilege…

binary-exploitationexploitationpayload-development+4
1 year ago
CVE-2008-4654 preview

CVE-2008-4654

GitHubrnnsz/cve-2008-4654

PoC exploit generator for CVE-2008-4654, a stack-based buffer overflow in VLC Media Player via crafted .ty+ files. Generates malicious payload file…

binary-exploitationexploitationpayload-generation+2
5 years ago
DrayTek-Exploit preview

DrayTek-Exploit

GitHubsymbolexe/draytek-exploit

CVE-2022-23093 FreeBSD Stack-Based Overflow

binary-exploitationexploitationpayload-development+3
2 years ago
CVE-2017-8367 preview

CVE-2017-8367

GitHubrnnsz/cve-2017-8367

Python-based proof-of-concept exploit for CVE-2017-8367, a stack-based buffer overflow in Easy Mov Converter. Generates a payload file for local…

binary-exploitationexploitationpayload-generation+3
5 years ago
CVE-2018-4121 preview

CVE-2018-4121

GitHubjezzus/cve-2018-4121

Proof-of-concept remote code execution exploit targeting Safari 11.0.3 on macOS 10.13.3 via a WebAssembly section vulnerability (CVE-2018-4121).…

binary-exploitationexploitationpayload-development+3
8 years ago
Tomcat-CVE-2025-24813 preview

Tomcat-CVE-2025-24813

GitHubb1gn0se/tomcat-cve-2025-24813

Proof-of-concept exploit for Apache Tomcat CVE-2025-24813, demonstrating remote code execution via partial PUT and deserialization. Includes Docker…

exploitationpayload-generationpenetration-testing+4
1 year ago
cve-2022-29464 preview

cve-2022-29464

GitHublowkey0808/cve-2022-29464

Python exploit for CVE-2022-29464 targeting WSO2 web servers with automated webshell upload and command execution capabilities.

exploitationpayload-generationpenetration-testing+3
4 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubyassdev221608/cve-2024-6387

Python exploit for CVE-2024-6387 (OpenSSH signal handler race condition) targeting glibc-based 32-bit Linux systems, with multi-threaded concurrency…

binary-exploitationexploitationpayload-development+3
1 year ago
CloudMe-Sync-1.10.9---Buffer-Overflow-SEH-DEP-Bypass preview

CloudMe-Sync-1.10.9---Buffer-Overflow-SEH-DEP-Bypass

GitHubmanojcode/cloudme-sync-1.10.9---buffer-overflow-seh-dep-bypass

My version - CloudMe-Sync-1.10.9---Buffer-Overflow-SEH-DEP-Bypass on Win7 x64 CVE-2018-6892

binary-exploitationexploitationpayload-development+3
8 years ago
CVE-2018-20250 preview

CVE-2018-20250

GitHubtannlh/cve-2018-20250

Exploit for CVE-2018-20250 (WinRAR ACE path traversal) with automated payload generation and Metasploit reverse shell integration for penetration…

command-and-controlexploitationpayload-generation+3
2 years ago
Exploit_Sync_Breeze_v10.0.28_CVE-2017-14980 preview

Exploit_Sync_Breeze_v10.0.28_CVE-2017-14980

GitHubxn0kkx/exploit_sync_breeze_v10.0.28_cve-2017-14980

Buffer overflow in Sync Breeze Enterprise 10.0.28 allows remote attackers to have unspecified impact via a long username parameter to /login.

binary-exploitationexploitationpayload-development+3
1 year ago
CVE-2018-4121 preview

CVE-2018-4121

GitHublikekabin/cve-2018-4121

Proof-of-concept remote code execution exploit for Safari 11.0.3 on macOS 10.13.3, leveraging a WebAssembly section vulnerability with heap spray and…

binary-exploitationexploitationpayload-development+2
8 years ago
Previous1…171819…21Next