Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
271 results
CVE-2017-7494_SambaCry preview

CVE-2017-7494_SambaCry

GitHubd3fudd/cve-2017-7494_sambacry

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

exploitationpayload-developmentpenetration-testing+3
7
3 years ago
CVE-2018-4878 preview

CVE-2018-4878

GitHubkathoden/cve-2018-4878

Exploit generation script for CVE-2018-4878 (Flash Player zero-day) with Metasploit shellcode integration, producing SWF and HTML attack pages for…

exploitationpayload-generationpenetration-testing+3
8 years ago
ms09-050_CVE-2009-3103 preview

ms09-050_CVE-2009-3103

GitHubsec13b/ms09-050_cve-2009-3103

Exploit for CVE-2009-3103 (MS09-050) targeting Windows SMB2, with integrated Metasploit payload generation and meterpreter reverse shell delivery.

exploitationpayload-generationpenetration-testing+2
2 years ago
CVE-2018-20250 preview

CVE-2018-20250

GitHubtannlh/cve-2018-20250

Exploit for CVE-2018-20250 (WinRAR ACE path traversal) with automated payload generation and Metasploit reverse shell integration for penetration…

command-and-controlexploitationpayload-generation+3
2 years ago
SharpZipRunner preview

SharpZipRunner

GitHubjfmaes/sharpziprunner

Executes position independent shellcode from an encrypted zip

exploitationpayload-developmentpayload-generation+3
3035 years ago
CVE-2004-1561 preview

CVE-2004-1561

GitHubivanitlearning/cve-2004-1561

Icecast Header Overwrite buffer overflow RCE < 2.0.1 (Win32)

exploitationpayload-generationpenetration-testing+3
76 years ago
zaphoxx-coldfusion preview

zaphoxx-coldfusion

GitHubzaphoxx/zaphoxx-coldfusion

Python exploit for ColdFusion CVE-2009-2265 with msfvenom payload upload and reverse shell execution against target web servers.

exploitationpayload-generationpenetration-testing+3
25 years ago
Shellcode-Hide preview

Shellcode-Hide

GitHubsaadahla/shellcode-hide

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

cryptographyencryption-decryption-toolsids-ips-evasion+4
4413 years ago
TinyLoad preview

TinyLoad

GitHubiamsopotatoe-coder/tinyload

Open source Windows x64 PE packer and crypter. Compresses and encrypts executables with a custom virtual machine into a self extracting stub.

binary-analysisencryption-decryption-toolsexploitation+5
1854 days ago
CustomC2ChannelTemplate preview

CustomC2ChannelTemplate

GitHubcodextf2/customc2channeltemplate

template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.

command-and-controlexploit-frameworkspayload-development+3
1077 months ago
CVE-2024-0311 preview

CVE-2024-0311

GitHubcalligraf0/cve-2024-0311

Proof-of-concept exploit for CVE-2024-0311 bypassing Skyhigh Client Proxy policy via process injection and named pipe manipulation, with custom…

binary-exploitationexploitationids-ips-evasion+4
91 year ago
CVE-2025-50165-x64-Exploit preview

CVE-2025-50165-x64-Exploit

GitHubencrypter15/cve-2025-50165-x64-exploit

Generates weaponized JPEG files exploiting CVE-2025-50165 (Windows Graphics RCE) with custom x64 shellcode, heap spray, ROP chain, and AV/EDR evasion…

binary-exploitationexploitationids-ips-evasion+5
78 months ago
copyfail-deconstructed preview

copyfail-deconstructed

GitHubbootsareme/copyfail-deconstructed

Educational deconstruction of CVE-2026-31431 privilege escalation exploit, providing readable Python and C implementations with custom shellcode…

binary-exploitationeducationexploitation+3
33 months ago
Dirty-Pipe preview

Dirty-Pipe

GitHubrabomen/dirty-pipe

C exploit for CVE-2022-0847 (Dirty Pipe) enabling privilege escalation via overwriting read-only files and SUID binaries with custom shellcode.

binary-exploitationexploitationpayload-development+3
24 years ago
CVE-2017-14980_syncbreeze_10.0.28_bof preview

CVE-2017-14980_syncbreeze_10.0.28_bof

GitHublipeozyy/cve-2017-14980_syncbreeze_10.0.28_bof

Proof-of-concept buffer overflow exploit for Sync Breeze Enterprise v10.0.28 (CVE-2017-14980). Sends crafted HTTP POST payload to overwrite EIP and…

binary-exploitationexploitationpayload-generation+4
21 year ago
CVE-2018-19323 preview

CVE-2018-19323

GitHubblueisbeautiful/cve-2018-19323

Modular kernel exploitation framework for CVE-2018-19323 (GIGABYTE GDrv) achieving privilege escalation to SYSTEM with multi-architecture support,…

binary-exploitationexploit-frameworkspayload-development+5
0 years ago
Exploit_MS08-067 preview

Exploit_MS08-067

GitHubnotrustedx/exploit_ms08-067

Python exploit for MS08-067 (CVE-2008-4250) targeting Windows XP/2000/2003 via SMB. Supports custom shellcode, multiple OS versions, and port…

exploitationpayload-generationpenetration-testing+3
11 year ago
derpyc0w preview

derpyc0w

GitHubxpcmdshell/derpyc0w

C-based exploit for CVE-2016-5195 (Dirty COW) using a race condition to overwrite a read-only SUID executable with a custom ELF payload that elevates…

binary-exploitationexploitationpayload-development+3
8 years ago
Previous12…16Next