Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

NewestRelevanceMost popularRecently updated
127 results
apkprobe preview

apkprobe

GitHubwadingporque/apkprobe

APK decompiler & secrets scanner for Android security research! Extract leaked API keys, hardcoded credentials, endpoints from APK files. apk2url,…

android-securityinformation-gatheringmobile-security+5
49 months ago
EXPLOIT-CVE-2026-9198 preview

EXPLOIT-CVE-2026-9198

GitHubjoaovicdev/exploit-cve-2026-9198

Proof-of-concept exploit for CVE-2026-9198, an unauthenticated RCE in IBM Langflow OSS, chaining auto_login and validate/code endpoints. Includes a…

educationexploitationlabs-practice+4
4 days ago
fastjson-cve preview

fastjson-cve

GitHubipisav/fastjson-cve

Reproduction project for CVE-2026-16723, a critical RCE in fastjson 1.2.68-1.2.83. Demonstrates AutoType bypass, JNDI injection, and TemplatesImpl…

educationexploitationpapers-research+2
6 days ago
CVE-2026-76904 preview

CVE-2026-76904

GitHubbickzero93/cve-2026-76904

Python scripts for inventorying GeoServer WFS endpoints and verifying time-based SQL injection vulnerabilities in PostGIS/GeoTools, with a dedicated…

exploitationinformation-gatheringpenetration-testing+2
6 days ago
CVE-2026-32662 preview

CVE-2026-32662

GitHubxf-secops/cve-2026-32662

Advisory detailing active debug code in production Gardyn Home Kit cloud API, exposing development endpoints and embedded credentials, with…

cloud-securityconfiguration-auditingiot-security+3
4 months ago
CVE-2026-33439-OpenAM preview

CVE-2026-33439-OpenAM

GitHubshreyas-malhotra/cve-2026-33439-openam

Vulnerable endpoint description for CVE-2026-33439 in OpenAM

exploitationpenetration-testingvulnerability-analysis+1
4 months ago
CVE-2021-41277_SSRF preview

CVE-2021-41277_SSRF

GitHubsasukeourad/cve-2021-41277_ssrf

Proof-of-concept demonstrating SSRF and LFI in Metabase versions < 0.40.5 (CVE-2021-41277), including internal network scanning and access to cloud…

exploitationinformation-gatheringpenetration-testing+3
44 years ago
CVE-2026-29598 preview

CVE-2026-29598

GitHubpadayali-jd/cve-2026-29598

Proof-of-concept for a stored XSS vulnerability in cm3 Acora CMS 10.7.1, demonstrating script injection via user management endpoints.

exploitationpenetration-testingvulnerability-analysis+2
5 months ago
CVE-2026-3395-MaxSite-CMS-Unauthenticated-RCE preview

CVE-2026-3395-MaxSite-CMS-Unauthenticated-RCE

GitHubmbanyamer/cve-2026-3395-maxsite-cms-unauthenticated-rce

Proof-of-concept exploit for unauthenticated remote code execution in MaxSite CMS <= 109.1 via MarkItUp editor AJAX endpoints, with detection and…

educationexploitationpenetration-testing+3
56 months ago
CVE-2026-26235-JUNG-Smart-Visu-Server-Unauthenticated-Reboot-Shutdown preview

CVE-2026-26235-JUNG-Smart-Visu-Server-Unauthenticated-Reboot-Shutdown

GitHubmbanyamer/cve-2026-26235-jung-smart-visu-server-unauthenticated-reboot-shutdown

Proof-of-concept exploit for CVE-2026-26235, an unauthenticated denial-of-service vulnerability in JUNG Smart Visu Server <=1.1.1050, allowing remote…

exploitationiot-securitypenetration-testing+2
6 months ago
CVE-2026-29000---pac4j-jwt-Authentication-Bypass-PoC preview

CVE-2026-29000---pac4j-jwt-Authentication-Bypass-PoC

GitHubmanbahadurthapa1248/cve-2026-29000---pac4j-jwt-authentication-bypass-poc

Proof-of-concept exploit for CVE-2026-29000, an authentication bypass in pac4j-jwt. Forges JWT tokens to gain admin access to protected endpoints.

authentication-authorizationexploitationpenetration-testing+2
15 months ago
CVE-2026-23744-POC preview

CVE-2026-23744-POC

GitHubfcjaviergarcia/cve-2026-23744-poc

Proof of Concept (PoC) exploit for CVE-2026-23744, a vulnerability affecting MCPJam Inspector that allows remote command execution (RCE) through…

exploitationpenetration-testingremote-access-tool+2
5 months ago
cPanel-WHM-AuthBypass-Session-Checker preview

cPanel-WHM-AuthBypass-Session-Checker

GitHubdebugactiveprocess/cpanel-whm-authbypass-session-checker

Validates injected sessions from the CVE-2026-41940 cPanel/WHM authentication bypass exploit, testing endpoints to distinguish patched servers from…

authenticationexploitationpenetration-testing+3
74 months ago
CVE-2026-26418 preview

CVE-2026-26418

GitHubaksalsalimi/cve-2026-26418

Documentation of CVE-2026-26418, a missing authentication and authorization vulnerability in TCS Cognix Recon Client v3.0 Web API, including affected…

authentication-authorizationcurated-resourceseducation+2
6 months ago
CVE-2026-0709 preview

CVE-2026-0709

GitHubsnipersmaster/cve-2026-0709

Python proof-of-concept for authenticated command injection in Hikvision wireless APs, enabling remote code execution testing with customizable…

command-and-controlexploitationpenetration-testing+3
5 months ago
CVE-2026-35616 preview

CVE-2026-35616

GitHubwa6n3r/cve-2026-35616

Exploit script for CVE-2026-35616 that bypasses certificate chain verification in Fortinet API by discovering valid CNs, generating a forged client…

api-securityexploitationpenetration-testing+2
14 months ago
Apache-Dubbo-Hessian2-CVE-2021-43297 preview

Apache-Dubbo-Hessian2-CVE-2021-43297

GitHublongofo/apache-dubbo-hessian2-cve-2021-43297

Demonstrates a proof-of-concept exploit for CVE-2021-43297, a deserialization vulnerability in Apache Dubbo's Hessian2 protocol, with provider and…

binary-exploitationexploitationexploit-frameworks+2
464 years ago
CVE-2025-60423 preview

CVE-2025-60423

GitHubzephyr1ng/cve-2025-60423

Analyzes CVE-2025-60423, an authentication bypass in JEECG versions 7.2.8 and 7.2.9, detailing path traversal and URL encoding techniques to bypass…

exploitationpenetration-testingvulnerability-analysis+2
110 months ago
Previous12…8Next