Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
-CVE-2024-52010- preview

-CVE-2024-52010-

GitHubiuds/-cve-2024-52010-

Automated exploit tool targeting CVE-2024-52010 for penetration testing and vulnerability validation.

exploitationpayload-generationpenetration-testing+2
1 year ago
metasploit-framework preview

metasploit-framework

GitHubrapid7/metasploit-framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

command-and-controldatabase-securitydata-exfiltration+20
38.9k1 day ago
CVE-2024-10914-Exploit preview

CVE-2024-10914-Exploit

GitHubtamirido30/cve-2024-10914-exploit

CVE-2024-10914 Shell Exploit

command-and-controlexploitationpayload-generation+5
1 year ago
Graffiti preview

Graffiti

GitHubekultek/graffiti

A tool to generate obfuscated one liners to aid in penetration testing

payload-developmentpayload-generationpenetration-testing+1
1807 years ago
DuplexSpyCS preview

DuplexSpyCS

GitHubiss4cf0ng/duplexspycs

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

command-and-controleducationpayload-development+5
2216 months ago
wshlient preview

wshlient

GitHubgildasio/wshlient

A simple tool to interact with web shells and command injection vulnerabilities

command-and-controlpenetration-testingshellcode+1
371 year ago
CVE-2017-7494_SambaCry preview

CVE-2017-7494_SambaCry

GitHubd3fudd/cve-2017-7494_sambacry

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

exploitationpayload-developmentpenetration-testing+3
73 years ago
CVE-2019-0708 preview

CVE-2019-0708

GitHubinfenet/cve-2019-0708

Proof-of-concept exploit for CVE-2019-0708 (BlueKeep) targeting Windows RDP, with shellcode for x86 systems. Intended for authorized security testing…

exploitationpayload-developmentpenetration-testing+3
27 years ago
EXPLOIT-CVE-2026-8832- preview

EXPLOIT-CVE-2026-8832-

GitHubfunixone/exploit-cve-2026-8832-

Automated RCE exploit for WordPress WPCode Lite v2.3.5. Executes 6-step exploitation chain via XML-RPC bypass with 8 built-in PHP payloads, including…

code-analysisexploitationpayload-development+5
3 months ago
r2rs preview

r2rs

GitHubhakkuri01/r2rs

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

command-and-controlexploitationpenetration-testing+3
13 months ago
w48crash preview

w48crash

GitHubthecybermind/w48crash

PoC code for vulnerability in webmod v0.48. Originally written in 2007, assigned CVE-2007-1260.

binary-exploitationexploitationpenetration-testing+3
11 year ago
CVE-2025-55182-POC preview

CVE-2025-55182-POC

GitHubluoqichen/cve-2025-55182-poc

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

command-and-controlexploitationpayload-development+5
6 months ago
Exploit-CVE-2024-23897 preview

Exploit-CVE-2024-23897

GitHubaadi0258/exploit-cve-2024-23897

Exploit for CVE-2024-23897 in Jenkins, enabling file read and remote code execution via crafted requests. Includes Docker setup and Groovy scripts…

exploitationpenetration-testingremote-access-tool+3
10 months ago
CVE-2007-2447 preview

CVE-2007-2447

GitHub0xkn/cve-2007-2447

Python exploit for Samba CVE-2007-2447 username map script remote command execution, delivering a reverse shell payload to a configurable remote…

command-and-controlexploitationpenetration-testing+3
5 years ago
CVE-2021-41773-Apache-2.4.49- preview

CVE-2021-41773-Apache-2.4.49-

GitHubkhaidtraivch/cve-2021-41773-apache-2.4.49-

Exploit scripts for CVE-2021-41773 (Apache 2.4.49) enabling path traversal and remote code execution via CGI, including a reverse shell payload.

exploitationpenetration-testingremote-access-tool+3
1 year ago
Chankro preview

Chankro

GitHubtarlogicsecurity/chankro

Herramienta para evadir disable_functions y open_basedir

exploitationpayload-developmentpenetration-testing+3
4957 years ago
cve-2019-0708_bluekeep_rce preview

cve-2019-0708_bluekeep_rce

GitHubcoolboy4me/cve-2019-0708_bluekeep_rce

it works on xp (all version sp2 sp3)

exploitationpayload-developmentpenetration-testing+3
756 years ago
cve-2020-7247 preview

cve-2020-7247

GitHubsuperzerosec/cve-2020-7247

OpenSMTPD version 6.6.2 remote code execution exploit

exploitationpayload-developmentpenetration-testing+3
44 years ago
Previous12Next