Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
34 results
CVE-2026-76461 preview

CVE-2026-76461

GitHub0xblackash/cve-2026-76461

Research repository for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway leading to root RCE, with detection rules, mitigation…

educationemail-securityexploitation+7
2
20 days ago
CVE-2026-41089-Netlogon preview

CVE-2026-41089-Netlogon

GitHubzerodayvpn/cve-2026-41089-netlogon

🛡️ Official AI Security Tool diagnostic module for CVE-2026-41089 (Windows Netlogon Stack Buffer Overflow RCE). Features technical writeup, attack…

defensive-toolseducationexploitation+5
56 days ago
aethel_core preview

aethel_core

GitHublokinpendawa/aethel_core

Next-gen logical WAF engine built in SWI-Prolog. Features an inductive learning brain running at 2M+ LIPS with an integrated recursive decoder to…

ai-securityanomaly-detectionthreat-intelligence+3
620 days ago
log4j preview

log4j

GitHubdariusiakabos/log4j

Curated OSINT compilation on Log4Shell (CVE-2021-44228) covering detection methods, attack surface, mitigation steps, and indicators of compromise…

curated-resourceseducationincident-response+2
64 years ago
cve-2023-23397-detection-lab preview

cve-2023-23397-detection-lab

GitHubzhoucc-cpu/cve-2023-23397-detection-lab

Detection and mitigation research lab for CVE-2023-23397 using network and endpoint security telemetry.

educationincident-responsenetwork-security+2
24 days ago
CVE-2026-21510-CVSS-8.8-Important-Windows-Shell-security-feature-bypass preview

CVE-2026-21510-CVSS-8.8-Important-Windows-Shell-security-feature-bypass

GitHubandreassudo/cve-2026-21510-cvss-8.8-important-windows-shell-security-feature-bypass

Detailed analysis of CVE-2026-21510, a Windows Shell security feature bypass allowing silent code execution via malicious links or shortcuts.…

curated-resourceseducationexploitation+2
77 months ago
CVE-2026-24858 preview

CVE-2026-24858

GitHubm0d0ri205/cve-2026-24858

Detailed analysis of Fortinet FortiCloud SSO authentication bypass (CVE-2026-24858) including technical breakdown, attack scenarios, detection…

authenticationexploitationincident-response+4
8 months ago
CVE-2026-22812 preview

CVE-2026-22812

GitHub0xblackash/cve-2026-22812

CVE-2026-22812

educationexploitationincident-response+3
16 months ago
LetsDefend-CVE-2022-41082-Exploitation-Attempt preview

LetsDefend-CVE-2022-41082-Exploitation-Attempt

GitHubcyprianatsyor/letsdefend-cve-2022-41082-exploitation-attempt

Detailed incident report and educational analysis of CVE-2022-41082 (ProxyNotShell) exploitation attempt on Microsoft Exchange Server, including…

educationexploitationincident-response+5
1 year ago
letsdefend-cve2024-3400-case-study preview

letsdefend-cve2024-3400-case-study

GitHubcyprianatsyor/letsdefend-cve2024-3400-case-study

Detection, analysis, and response strategies for CVE-2024-3400 exploitation attempts targeting Palo Alto PAN-OS GlobalProtect portals. Includes IOCs,…

command-and-controldigital-forensicseducation+8
1 year ago
miniplasma-advisory preview

miniplasma-advisory

GitHubrfranca777/miniplasma-advisory

MiniPlasma CVE-2020-17103 mitigation advisory

educationincident-responsethreat-intelligence+1
4 months ago
Enterprise-Information-Security-Risk-Assessment-Oracle-E-Business-Suite-Case-Study preview

Enterprise-Information-Security-Risk-Assessment-Oracle-E-Business-Suite-Case-Study

GitHubsid-203/enterprise-information-security-risk-assessment-oracle-e-business-suite-case-study

Real-world information security risk assessment based on the Oracle E-Business Suite zero-day (CVE-2025-61882). Analyses attacker methods, enterprise…

curated-resourceseducationincident-response+3
7 months ago
Detailed-Analysis-and-Mitigation-Strategies-for-CVE-2024-38124-and-CVE-2024-43468 preview

Detailed-Analysis-and-Mitigation-Strategies-for-CVE-2024-38124-and-CVE-2024-43468

GitHubtadash10/detailed-analysis-and-mitigation-strategies-for-cve-2024-38124-and-cve-2024-43468

In-depth analysis and mitigation strategies for CVE-2024-38124 (Windows Netlogon) and CVE-2024-43468 (Microsoft Configuration Manager), including…

educationexploitationincident-response+4
1 year ago
CVE-2025-492026 preview

CVE-2025-492026

GitHubimthecopilotnow/cve-2025-492026

Security advisory detailing CVE-2025-492026: a hyperlink injection vulnerability in Copilot AI causing unintended navigation. Includes CWE-451…

educationpapers-researchthreat-intelligence+2
1 year ago
CVE-2024-3094 preview

CVE-2024-3094

GitHubhorizon-software-development/cve-2024-3094

Advisory and analysis repository for CVE-2024-3094, detailing a critical backdoor in Linux SSH library with mitigation steps for servers and Android…

curated-resourceseducationinformation-gathering+2
22 years ago
quantum-security-project preview

quantum-security-project

GitHubowasp/quantum-security-project

Vendor-neutral OWASP project mapping quantum-era security risks with a Top 10 risk list, mitigation guidance, and threat models for post-quantum…

cloud-securitycryptographycurated-resources+8
11828 days ago
CVE-2025-55182-Researching-process preview

CVE-2025-55182-Researching-process

GitHuborgito1015/cve-2025-55182-researching-process

Defensive research repository for CVE-2025-55182 (Pre-Auth RCE in React Server Components/Next.js). Includes vulnerability analysis, detection rules…

educationexploitationincident-response+6
15 months ago
CVE-2025-61155 preview

CVE-2025-61155

GitHubsf0rzin/cve-2025-61155

CVE-2025-61155 — arbitrary process termination in GameDriverX64.sys (Tower of Fantasy anti-cheat). Original IDA Pro teardown, PoC, YARA, IOCs,…

binary-analysiseducationexploitation+7
33 months ago
Previous12Next