Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
170 results
ms09-050-CVE-2009-3103-exploit preview

ms09-050-CVE-2009-3103-exploit

GitHubnicolasdamians/ms09-050-cve-2009-3103-exploit

Automated exploit wrapper for MS09-050 (CVE-2009-3103) targeting SMBv2 on Windows Vista/Server 2008. Generates shellcode, builds exploit, and creates…

educationexploitationpayload-generation+3
9 months ago
CVE-2009-1330 preview

CVE-2009-1330

GitHubadenkiewicz/cve-2009-1330

Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.

binary-exploitationexploitationpayload-generation+3
7 years ago
bowcaster preview

bowcaster

GitHubzcutlip/bowcaster

Python-based exploit development framework with payloads, encoders, and connect-back servers, focused on MIPS CPU architecture but designed for…

binary-exploitationembedded-systems-securityexploitation+6
1388 years ago
Cmulator preview
Archived

Cmulator

GitHubcoldzer0/cmulator

Cmulator is ( x86 - x64 ) Scriptable Reverse Engineering Sandbox Emulator for shellcode and PE binaries . Based on Unicorn & Zydis Engine &…

binary-analysisdebuggersdynamic-analysis-sandboxing+4
3044 years ago
ASPX_WebShell_COFFLoader preview

ASPX_WebShell_COFFLoader

GitHubepotseluevskaya/aspx_webshell_coffloader

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

command-and-controlpayload-developmentpenetration-testing+3
1366 months ago
CVE-2020-9484 preview

CVE-2020-9484

GitHubpentestical/cve-2020-9484

Bash proof-of-concept exploit for CVE-2020-9484 enabling remote code execution on Apache Tomcat via insecure deserialization in file uploads, with…

educationexploitationpayload-generation+3
354 years ago
CVE-2025-3500-Poc preview

CVE-2025-3500-Poc

GitHubchicken3962/cve-2025-3500-poc

Educational lab environment for researching CVE-2025-3500, an integer overflow privilege escalation exploit in Avast Antivirus 25.1.981.6 on Windows,…

binary-exploitationeducationexploitation+5
19 months ago
venom preview

venom

GitHubboku7/venom

Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence

command-and-controlencryption-decryption-toolslateral-movement+6
44010 months ago
windows-x86-shellcode-poc preview

windows-x86-shellcode-poc

GitHubnataliadiak/windows-x86-shellcode-poc

Windows x86 PoC: Stack‑based buffer overflow with custom shellcode on legacy 32-bit Windows.

binary-exploitationeducationpayload-development+3
84 months ago
OneDriveUpdaterSideloading preview

OneDriveUpdaterSideloading

GitHubchoisg/onedriveupdatersideloading

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

adversarial-attackpayload-developmentred-teaming+1
1013 years ago
CVE-2024-45519 preview

CVE-2024-45519

GitHubp33d/cve-2024-45519

SMTP vulnerability scanner and exploit script that checks for CVE-2024-45519 and establishes a reverse shell on vulnerable servers.

exploitationpayload-generationpenetration-testing+3
421 year ago
PEzor-Docker preview

PEzor-Docker

GitHubcyb3r-techie/pezor-docker

With the help of this docker image, you can easily access PEzor on your system!

educationexploitationpayload-generation+2
154 years ago
CVE-2025-24893 preview

CVE-2025-24893

GitHubandwati/cve-2025-24893

Python exploit for CVE-2025-24893 that executes a reverse shell on vulnerable web applications, with shell upgrade instructions.

command-and-controlexploitationpayload-generation+3
1 year ago
RecycledInjector preview

RecycledInjector

GitHubflorylsk/recycledinjector

Native syscall shellcode injector using HellsGate/HalosGate/TartarusGate for undetectable execution, with external shellcode loading and EDR evasion…

privilege-escalationshellcodeshellcode-generation
2663 years ago
DoubleStar preview

DoubleStar

GitHubforrest-orr/doublestar

A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of my own…

binary-exploitationexploitationpayload-development+4
1474 years ago
Lenovo-CVE-2025-8061 preview

Lenovo-CVE-2025-8061

GitHubsymeonp/lenovo-cve-2025-8061

PoC for popping a system shell against the LnvMSRIO.sys driver

binary-exploitationexploitationpayload-development+3
12511 months ago
CVE-2021-40449_poc preview

CVE-2021-40449_poc

GitHubkristal-g/cve-2021-40449_poc

Exploit for CVE-2021-40449

binary-exploitationexploitationpayload-development+3
544 years ago
LolModapi preview

LolModapi

GitHubmein-0/lolmodapi

Local privilege escalation exploit for MSI Dragon Center's MODAPI.sys driver, abusing unauthenticated MSR writes to bypass SMEP and gain SYSTEM.

binary-exploitationexploitationprivilege-escalation+2
413 days ago
Previous1234…10Next