Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
83 results
r2rs preview

r2rs

GitHubhakkuri01/r2rs

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

command-and-controlexploitationpenetration-testing+3
1
2 months ago
TORQUE-Resource-Manager-2.5.x-2.5.13-stack-based-buffer-overflow-exploit-CVE-2014-8729-CVE-2014-878 preview

TORQUE-Resource-Manager-2.5.x-2.5.13-stack-based-buffer-overflow-exploit-CVE-2014-8729-CVE-2014-878

GitHubinso1337/torque-resource-manager-2.5.x-2.5.13-stack-based-buffer-overflow-exploit-cve-2014-8729-cve-2014-878

TORQUE Resource Manager 2.5.x-2.5.13 stack based buffer overflow exploit CVE-2014-8729; CVE-2014-878

binary-exploitationexploitationpayload-development+3
210 years ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubfaithtiannn/cve-2025-55182

CVE-2025-55182漏洞检测工具

command-and-controlexploitationpayload-development+5
27 months ago
CVE-2026-6643 preview

CVE-2026-6643

GitHubmlgzackfly/cve-2026-6643

ASUSTOR ADM 5.1.2 vpnupload.cgi Format String & Stack Buffer Overflow RCE (CVE-2026-6643)

binary-exploitationexploitationpayload-development+4
4 months ago
CVE-2019-9766 preview

CVE-2019-9766

GitHubzeronohacker/cve-2019-9766

Free MP3 CD Ripper 2.6 版本中存在栈缓冲区溢出漏洞 (CVE-2019-9766),远程攻击者可借助特制的 .mp3 文件利用该漏洞执行任意代码。

binary-exploitationexploitationpayload-development+3
13 years ago
Firefox-CVE-2016-9079 preview

Firefox-CVE-2016-9079

GitHubtau-hub/firefox-cve-2016-9079

Manual exploit for Firefox RCE CVE-2016-9079 with customizable shellcode, served via HTTP for remote code execution on vulnerable Windows systems.

exploitationpayload-developmentpenetration-testing+2
14 years ago
CVE-2022-1609 preview

CVE-2022-1609

GitHub0xsojalsec/cve-2022-1609

Bash poc for CVE-2022-1609 WordPress Weblizar Backdoor

command-and-controlexploitationpenetration-testing+3
4 years ago
CVE-2004-2271-MiniShare-1.4.1-BOF preview

CVE-2004-2271-MiniShare-1.4.1-BOF

GitHubpwncone/cve-2004-2271-minishare-1.4.1-bof

A python implementation of CVE-2004-2271 targeting MiniShare 1.4.1.

binary-exploitationexploitationpayload-development+3
6 years ago
cve-2014-6271-spec preview

cve-2014-6271-spec

GitHubrrreeeyyy/cve-2014-6271-spec
exploitationpenetration-testingshellcode+2
11 years ago
bluekeep_CVE-2019-0708_poc_to_exploit preview
Archived

bluekeep_CVE-2019-0708_poc_to_exploit

GitHubalgo7/bluekeep_cve-2019-0708_poc_to_exploit

An Attempt to Port BlueKeep PoC from @Ekultek to actual exploits

exploitationpayload-developmentpenetration-testing+3
3425 years ago
CVE-2015-1925.RCE preview
Archived

CVE-2015-1925.RCE

GitHubdamariion/cve-2015-1925.rce

Stack-based buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12 allows remote attackers to cause a denial of…

binary-exploitationexploitationpayload-development+3
17 days ago
spawn preview

spawn

GitHubboku7/spawn

Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks by spawning…

command-and-controlexploitationpayload-development+5
4663 years ago
asminject preview

asminject

GitHubbishopfox/asminject

Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

container-escapepayload-developmentpenetration-testing+2
1483 years ago
Foxit-Reader-RCE-with-virualalloc-and-shellcode-for-CVE-2018-9948-and-CVE-2018-9958 preview

Foxit-Reader-RCE-with-virualalloc-and-shellcode-for-CVE-2018-9948-and-CVE-2018-9958

GitHubmanojcode/foxit-reader-rce-with-virualalloc-and-shellcode-for-cve-2018-9948-and-cve-2018-9958

Foxit Reader version 9.0.1.1049 Use After Free with ASLR and DEP bypass on heap

binary-exploitationexploitationpayload-development+3
67 years ago
CVE-2019-0708 preview

CVE-2019-0708

GitHubinfenet/cve-2019-0708

Proof-of-concept exploit for CVE-2019-0708 (BlueKeep) targeting Windows RDP, with shellcode for x86 systems. Intended for authorized security testing…

exploitationpayload-developmentpenetration-testing+3
27 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubprelearn-code/cve-2024-6387

Proof-of-concept exploit for CVE-2024-6387 (regreSSHion) targeting unauthenticated remote code execution in OpenSSH server via signal handler race…

command-and-controlexploitationpayload-development+4
22 years ago
CVE-2017-7494 preview

CVE-2017-7494

GitHubincredible1yu/cve-2017-7494

C exploit for CVE-2017-7494 (Samba is_known_pipename) with custom shared object compilation and reverse shell payload generation.

binary-exploitationexploitationpayload-development+3
8 years ago
baron-samedit preview

baron-samedit

GitHubczeti/baron-samedit

This repository contains a Proof-of-Concept (PoC) exploit for the Baron Samedit vulnerability (CVE-2021-3156). The exploit demonstrates privilege…

binary-exploitationexploitationpayload-development+4
1 year ago
Previous12345Next