Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
118 results
WordPress-HT-Contact-CVE-2025-7340-RCE preview

WordPress-HT-Contact-CVE-2025-7340-RCE

GitHubkai-one001/wordpress-ht-contact-cve-2025-7340-rce

Python exploit for CVE-2025-7340, an unauthenticated file upload vulnerability in the WordPress HT Contact Form widget, enabling remote code…

exploitationpayload-generationpenetration-testing+3
1 year ago
cve-2018-9948-9958-exp preview

cve-2018-9948-9958-exp

GitHuborangepirate/cve-2018-9948-9958-exp

a exp for cve-2018-9948/9958 , current shellcode called win-calc

exploitationpayload-generationshellcode+3
8 years ago
CVE-2009-2265 preview

CVE-2009-2265

GitHubmatesz44/cve-2009-2265

posix sh poc for CVE-2009-2265 (deps: curl,msfvenom,uuidgen,tr)

exploitationpayload-generationpenetration-testing+2
9 months ago
CVE-2024-25600-mass preview

CVE-2024-25600-mass

GitHubsvchostmm/cve-2024-25600-mass

Mass exploit for CVE-2024-25600, uploading webshells to vulnerable WordPress sites via a list of targets.

exploitationpayload-generationshellcode+2
2 years ago
CVE-2025-48827 preview

CVE-2025-48827

GitHubwiseep/cve-2025-48827

Vbullettin RCE - CVE-2025-48827

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2022-46169 preview

CVE-2022-46169

GitHubbkreisel/cve-2022-46169

🐍 Python Exploit for CVE-2022-46169

exploitationpayload-generationpenetration-testing+3
3 years ago
CVE-2024-23692 preview

CVE-2024-23692

GitHubmr-r00t11/cve-2024-23692

Rejetto HFS (HTTP File Server) is a simple web file server that facilitates file sharing over a network or the internet.

exploitationpayload-generationpenetration-testing+4
2 years ago
CVE-2022-41544 preview

CVE-2022-41544

GitHubh3x0v3rl0rd/cve-2022-41544

Python exploit script for CVE-2022-41544 in GetSimple CMS. Automates API key leakage, CSRF token extraction, PHP shell upload, and reverse shell…

exploitationpayload-generationpenetration-testing+3
1 year ago
WonderCMS-4.3.2-XSS-to-RCE-Exploits-CVE-2023-41425 preview

WonderCMS-4.3.2-XSS-to-RCE-Exploits-CVE-2023-41425

GitHub0xdtc/wondercms-4.3.2-xss-to-rce-exploits-cve-2023-41425

CVE-2023-41425 Refurbish

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2011-2523 preview

CVE-2011-2523

GitHubgr4ykt/cve-2011-2523

https://www.exploit-db.com/exploits/49757

exploitationpayload-generationpenetration-testing+3
5 years ago
chamilo-lms-unauthenticated-rce-poc preview

chamilo-lms-unauthenticated-rce-poc

GitHubcharchit-subedi/chamilo-lms-unauthenticated-rce-poc

This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220

exploitationpayload-generationpenetration-testing+3
2 years ago
cve-2022-29464 preview

cve-2022-29464

GitHublowkey0808/cve-2022-29464

Python exploit for CVE-2022-29464 targeting WSO2 web servers with automated webshell upload and command execution capabilities.

exploitationpayload-generationpenetration-testing+3
4 years ago
Flangvik preview

Flangvik

GitHub1342486672/flangvik

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode in…

exploitationpayload-generationpenetration-testing+2
4 years ago
CVE-2019-11447_reverse_shell_upload preview

CVE-2019-11447_reverse_shell_upload

GitHubsubsting/cve-2019-11447_reverse_shell_upload

Python exploit for CVE-2019-11447 that uploads a PHP reverse shell to CuteNews 2.1.2, enabling remote command execution on vulnerable web…

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2023-4220 preview

CVE-2023-4220

GitHubh4cking4all/cve-2023-4220

CVE-2023-4220 Chamilo Exploit

exploitationpayload-generationremote-access-tool+3
1 year ago
CVE-2024-23741 preview

CVE-2024-23741

GitHubgiovannipajeu1/cve-2024-23741

Automated exploit for CVE-2024-23741 targeting Hyper on macOS. Validates vulnerability and injects code to spawn a remote shell via RunAsNode and…

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2025-32433-Remote-Shell preview

CVE-2025-32433-Remote-Shell

GitHubmeloppeitreet/cve-2025-32433-remote-shell

Go-based exploit for CVE-2025-32433

exploitationpayload-generationpenetration-testing+3
1 year ago
-CVE-2024-52010- preview

-CVE-2024-52010-

GitHubiuds/-cve-2024-52010-

Automated exploit tool targeting CVE-2024-52010 for penetration testing and vulnerability validation.

exploitationpayload-generationpenetration-testing+2
1 year ago
Previous1234567Next