Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
147 results
external_libexif_AOSP10_r33_CVE-2020-0198 preview

external_libexif_AOSP10_r33_CVE-2020-0198

GitHubtrinadh465/external_libexif_aosp10_r33_cve-2020-0198

C library for parsing, editing, and saving EXIF metadata, with a focus on addressing CVE-2020-0198 in AOSP10.

binary-analysiscode-analysisexploitation+3
4 years ago
ESAPI__esapi-java-legacy_CVE-2022-24891_2-2-3-1 preview

ESAPI__esapi-java-legacy_CVE-2022-24891_2-2-3-1

GitHubshoucheng3/esapi__esapi-java-legacy_cve-2022-24891_2-2-3-1

OWASP Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input…

api-securityauthentication-authorizationcode-analysis+5
1 year ago
external_expat_2.1.0_CVE-2022-43680 preview

external_expat_2.1.0_CVE-2022-43680

GitHubnidhihcl/external_expat_2.1.0_cve-2022-43680

C library for stream-oriented XML parsing with a focus on vulnerability analysis and exploitation of CVE-2022-43680, enabling fuzzing and…

binary-analysiscode-analysisexploitation+3
3 years ago
external_expat-2.1.0_CVE-2022-43680 preview

external_expat-2.1.0_CVE-2022-43680

GitHubtrinadh465/external_expat-2.1.0_cve-2022-43680

Source code repository for Expat 2.1.0, a stream-oriented XML parser library, with focus on analyzing and addressing CVE-2022-43680.

binary-analysiscode-analysisexploitation+3
3 years ago
external_libexif_AOSP10_r33_CVE-2020-0181 preview

external_libexif_AOSP10_r33_CVE-2020-0181

GitHubtrinadh465/external_libexif_aosp10_r33_cve-2020-0181

C library for parsing, editing, and saving EXIF data, patched for CVE-2020-0181 to prevent heap buffer overflow in EXIF tag parsing.

binary-analysiscode-analysisexploitation+3
4 years ago
webp_Android10_r33_CVE-2023-1999 preview

webp_Android10_r33_CVE-2023-1999

GitHubpazhanivelmani/webp_android10_r33_cve-2023-1999

Proof-of-concept exploit for CVE-2023-1999 targeting the WebP codec library on Android 10 (r33). Demonstrates a heap buffer overflow vulnerability in…

binary-analysiscode-analysisexploitation+3
1 year ago
apache__sling-org-apache-sling-xss_CVE-2016-5394_1-0-8 preview

apache__sling-org-apache-sling-xss_CVE-2016-5394_1-0-8

GitHubshoucheng3/apache__sling-org-apache-sling-xss_cve-2016-5394_1-0-8

Java library providing XSS escaping and filtering services (XSSAPI, XSSFilter) to sanitize user-submitted content and prevent cross-site scripting…

api-securitycode-analysisstatic-analysis+2
1 year ago
openjpeg-2.3.0_CVE-2020-27824 preview

openjpeg-2.3.0_CVE-2020-27824

GitHubpazhanivel07/openjpeg-2.3.0_cve-2020-27824

CVE-2020-27824 exploit reproduction environment for OpenJPEG JPEG 2000 codec, enabling vulnerability analysis, fuzzing, and binary exploitation…

binary-analysiscode-analysisexploitation+3
4 years ago
CVE-2024-36886 preview

CVE-2024-36886

GitHubabubakar-shahid/cve-2024-36886

Academic research on N-Day Linux kernel vulnerabilities, analyzing CVE-2024-36886 in the TIPC networking subsystem, lifecycle, impact, and mitigation…

dynamic-code-analysiseducationexploitation+5
1 year ago
external_libexif_AOSP10_CVE-2020-0452 preview

external_libexif_AOSP10_CVE-2020-0452

GitHubshaikusaf/external_libexif_aosp10_cve-2020-0452

C library for parsing, editing, and saving EXIF data, with a focus on addressing CVE-2020-0452 in AOSP10. Provides API for metadata extraction and…

binary-analysiscode-analysisexploitation+3
4 years ago
nahsra__antisamy_CVE-2017-14735_1-5-6 preview

nahsra__antisamy_CVE-2017-14735_1-5-6

GitHubshoucheng3/nahsra__antisamy_cve-2017-14735_1-5-6

Java library for fast, configurable HTML sanitization from untrusted sources. Uses policy-driven scanning to remove malicious JavaScript and CSS,…

api-securitycode-analysismisconfiguration+3
10 months ago
expat_2_1_0_CVE-2024-28757 preview

expat_2_1_0_CVE-2024-28757

GitHubsaurabh2088/expat_2_1_0_cve-2024-28757

C library for stream-oriented XML parsing, with a focus on analyzing and reproducing CVE-2024-28757 vulnerability in Expat 2.1.0.

binary-analysiscode-analysisexploitation+3
2 years ago
external_expat_AOSP10_r33_CVE-2022-23852 preview

external_expat_AOSP10_r33_CVE-2022-23852

GitHubsatheesh575555/external_expat_aosp10_r33_cve-2022-23852

C library for parsing XML, patched for CVE-2022-23852, providing stream-oriented XML parsing with handlers for efficient document processing.

code-analysiseducationfuzzing+3
4 years ago
expat_CVE-2024-28757 preview

expat_CVE-2024-28757

GitHubrenukaselvar/expat_cve-2024-28757

C library for stream-oriented XML parsing with handler registration, supporting UTF-8/UTF-16 encoding, and autoconf-based build system. Includes…

code-analysisdynamic-analysis-sandboxingexploitation+3
2 years ago
hapifhir__org_hl7_fhir_core_CVE-2023-28465_5-6-1055 preview

hapifhir__org_hl7_fhir_core_CVE-2023-28465_5-6-1055

GitHubshoucheng3/hapifhir__org_hl7_fhir_core_cve-2023-28465_5-6-1055

Java core library for FHIR specification with validator, version converters, and object models for R2 through R5, used in HAPI servers and HL7…

api-securitycode-analysiseducation+3
1 year ago
jenkinsci__script-security-plugin_CVE-2023-24422_1228.vd93135a_2fb_25 preview

jenkinsci__script-security-plugin_CVE-2023-24422_1228.vd93135a_2fb_25

GitHubshoucheng3/jenkinsci__script-security-plugin_cve-2023-24422_1228.vd93135a_2fb_25

Jenkins plugin providing script approval workflows and Groovy sandboxing to enforce secure script execution, with ACL-aware permission checks and…

api-securityauthentication-authorizationcode-analysis+5
7 months ago
pngcheck-vulns preview

pngcheck-vulns

GitHub13m0n4de/pngcheck-vulns

A repository of proof-of-concept files demonstrating disclosed and patched vulnerabilities in pngcheck (2.4.0 - 3.0.1), including CVE-2020-27818,…

binary-analysiseducationexploitation+4
1 year ago
external_expat_AOSP10_r33_CVE-2022-25236 preview

external_expat_AOSP10_r33_CVE-2022-25236

GitHubsatheesh575555/external_expat_aosp10_r33_cve-2022-25236

Patched version of Expat XML parser for AOSP10, addressing CVE-2022-25236. Provides source code for vulnerability analysis and educational review of…

code-analysisexploitationfuzzing+3
4 years ago
Previous1…6789Next