Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
133 results
Copyfail-sh preview

Copyfail-sh

GitHubnonameuserosint-hue/copyfail-sh

A Bash implementation of copyfail (CVE-2026-31431)

binary-exploitationexploitationpenetration-testing+4
4 months ago
CVE-2026-6643 preview

CVE-2026-6643

GitHubmlgzackfly/cve-2026-6643

ASUSTOR ADM 5.1.2 vpnupload.cgi Format String & Stack Buffer Overflow RCE (CVE-2026-6643)

binary-exploitationexploitationpayload-development+4
4 months ago
r2rs preview

r2rs

GitHubhakkuri01/r2rs

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

command-and-controlexploitationpenetration-testing+3
13 months ago
Firefox-CVE-2016-9079 preview

Firefox-CVE-2016-9079

GitHubtau-hub/firefox-cve-2016-9079

Manual exploit for Firefox RCE CVE-2016-9079 with customizable shellcode, served via HTTP for remote code execution on vulnerable Windows systems.

exploitationpayload-developmentpenetration-testing+2
14 years ago
CVE-2023-38035-MobileIron-RCE preview

CVE-2023-38035-MobileIron-RCE

GitHubmind2hex/cve-2023-38035-mobileiron-rce

Script to exploit CVE-2023-38035

exploitationpenetration-testingreconnaissance+3
13 years ago
CVE-2019-9766 preview

CVE-2019-9766

GitHubzeronohacker/cve-2019-9766

Free MP3 CD Ripper 2.6 版本中存在栈缓冲区溢出漏洞 (CVE-2019-9766),远程攻击者可借助特制的 .mp3 文件利用该漏洞执行任意代码。

binary-exploitationexploitationpayload-development+3
14 years ago
w48crash preview

w48crash

GitHubthecybermind/w48crash

PoC code for vulnerability in webmod v0.48. Originally written in 2007, assigned CVE-2007-1260.

binary-exploitationexploitationpenetration-testing+3
11 year ago
CVE-2025-47917 preview

CVE-2025-47917

GitHubbytereaper77/cve-2025-47917

PoC exploit for CVE-2025-47917: Use-After-Free in mbedTLS leading to remote code execution.

binary-exploitationexploitationpayload-development+3
11 year ago
CVE-2022-1609 preview

CVE-2022-1609

GitHub0xsojalsec/cve-2022-1609

Bash poc for CVE-2022-1609 WordPress Weblizar Backdoor

command-and-controlexploitationpenetration-testing+3
4 years ago
CVE-2018-6574 preview

CVE-2018-6574

GitHubpaulogmota/cve-2018-6574

Golang cgo exploit for CVE-2018-6574

binary-exploitationexploitationpayload-development+3
1 year ago
UnrealIRCd-3.2.8.1-Backdoor-Command-Execution preview

UnrealIRCd-3.2.8.1-Backdoor-Command-Execution

GitHubchancej715/unrealircd-3.2.8.1-backdoor-command-execution

Python exploit for UnrealIRCd 3.2.8.1 backdoor (CVE-2010-2075) delivering a reverse shell via Netcat listener.

command-and-controlexploitationpayload-development+3
3 years ago
copyFail-CVE-2026-31431-workaround-bash preview

copyFail-CVE-2026-31431-workaround-bash

GitHubsomecorp/copyfail-cve-2026-31431-workaround-bash

Provides a bash workaround script to mitigate CVE-2026-31431, preventing remote code execution via copy.fail exploit. Includes usage instructions for…

exploitationpayload-developmentpenetration-testing+3
4 months ago
CVE-2007-2447 preview

CVE-2007-2447

GitHub0xkn/cve-2007-2447

Python exploit for Samba CVE-2007-2447 username map script remote command execution, delivering a reverse shell payload to a configurable remote…

command-and-controlexploitationpenetration-testing+3
5 years ago
CloudMe-Sync-1.10.9---Buffer-Overflow-SEH-DEP-Bypass preview

CloudMe-Sync-1.10.9---Buffer-Overflow-SEH-DEP-Bypass

GitHubmanojcode/cloudme-sync-1.10.9---buffer-overflow-seh-dep-bypass

My version - CloudMe-Sync-1.10.9---Buffer-Overflow-SEH-DEP-Bypass on Win7 x64 CVE-2018-6892

binary-exploitationexploitationpayload-development+3
8 years ago
Exploit_Sync_Breeze_v10.0.28_CVE-2017-14980 preview

Exploit_Sync_Breeze_v10.0.28_CVE-2017-14980

GitHubxn0kkx/exploit_sync_breeze_v10.0.28_cve-2017-14980

Buffer overflow in Sync Breeze Enterprise 10.0.28 allows remote attackers to have unspecified impact via a long username parameter to /login.

binary-exploitationexploitationpayload-development+3
1 year ago
CVE-2004-2271-MiniShare-1.4.1-BOF preview

CVE-2004-2271-MiniShare-1.4.1-BOF

GitHubpwncone/cve-2004-2271-minishare-1.4.1-bof

A python implementation of CVE-2004-2271 targeting MiniShare 1.4.1.

binary-exploitationexploitationpayload-development+3
6 years ago
Flangvik preview

Flangvik

GitHubyaoxiaoangry3/flangvik

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode in…

exploitationpenetration-testingshellcode+2
4 years ago
CVE-2015-7547-Research preview

CVE-2015-7547-Research

GitHubstick-u235/cve-2015-7547-research

CVE-2015-7547 initial research.

binary-exploitationexploitationpayload-development+3
3 years ago
Previous1…5678Next