Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
78 results
CVE-2019-12086 preview

CVE-2019-12086

GitHubal1ex/cve-2019-12086

jackson unserialize

database-securityexploitationpayload-generation+2
1
2 months ago
CVE-2025-6254 preview

CVE-2025-6254

GitHubxxconi/cve-2025-6254

Python exploit for CVE-2025-6254 targeting unauthenticated privilege escalation in Doctreat Core <= 1.6.8. Supports single URL and multi-target…

exploitationpenetration-testingprivilege-escalation+2
3 months ago
cve-2013-4660_PoC preview

cve-2013-4660_PoC

GitHubleehunkoo/cve-2013-4660_poc

Proof-of-concept exploit for CVE-2013-4660 demonstrating YAML deserialization remote code execution in a Dockerized Node.js environment with…

cloud-securitycontainer-securityexploitation+3
3 months ago
CVE-2026-23918-Apache-HTTP-Server-DoubleFree-PoC preview

CVE-2026-23918-Apache-HTTP-Server-DoubleFree-PoC

GitHubcyfare/cve-2026-23918-apache-http-server-doublefree-poc

Proof-of-concept exploit for CVE-2026-23918, a double-free vulnerability in Apache HTTP Server, demonstrating remote crash via crafted requests.

exploitationpenetration-testingvulnerability-analysis+2
4 months ago
CVE-2024-22120-RCE-with-gopher preview

CVE-2024-22120-RCE-with-gopher

GitHubdarkbytehunter/cve-2024-22120-rce-with-gopher

Proof-of-concept exploit for CVE-2024-22120 that leverages time-based SQL injection and gopher-based SSRF to achieve remote code execution on…

educationexploitationpenetration-testing+2
14 months ago
copy-fail-cve-2026-31431 preview

copy-fail-cve-2026-31431

GitHubeffiesec/copy-fail-cve-2026-31431

Passive Linux host scanner that classifies exposure to CVE-2026-31431 via kernel version, distro changelog, module status, and AF_ALG reachability,…

configuration-auditingvulnerability-analysisvulnerability-scanners
4 months ago
CVE-2020-1938 preview

CVE-2020-1938

GitHubwith-fate/cve-2020-1938

Python script to verify Apache Tomcat CVE-2020-1938 vulnerability by sending crafted requests to the AJP port, allowing file read and potential code…

exploitationinformation-gatheringpenetration-testing+2
15 months ago
CVE-2026-24061 preview

CVE-2026-24061

GitHublucaspdiniz/cve-2026-24061

Vulnerability in GNU InetUtils telnetd Enables Remote Root Access

authenticationexploitationpenetration-testing+2
7 months ago
CVE-2025-2502 preview

CVE-2025-2502

GitHubihk-one/cve-2025-2502

Step-by-step demonstration of a local privilege escalation vulnerability in Lenovo PC Manager, exploiting weak file permissions on a system service…

educationexploitationlabs-practice+2
51 year ago
CVE-2009-2265 preview

CVE-2009-2265

GitHubh3x0v3rl0rd/cve-2009-2265

Exploit for CVE-2009-2265 targeting ColdFusion 8.0.1 with JSP reverse shell payload generation and automated upload.

exploitationpayload-generationpenetration-testing+2
11 year ago
CVE-2024-0012-poc preview

CVE-2024-0012-poc

GitHubisee857/cve-2024-0012-poc

CVE-2024-0012批量检测脚本

exploitationpenetration-testingreconnaissance+2
21 year ago
CVE-2024-50379-PoC preview

CVE-2024-50379-PoC

GitHubisee857/cve-2024-50379-poc

Batch detection script for Apache Tomcat CVE-2024-50379 race condition remote code execution vulnerability. Supports single and mass scanning via…

exploitationpenetration-testingvulnerability-analysis+3
241 year ago
CVE-2024-9047-PoC preview

CVE-2024-9047-PoC

GitHubisee857/cve-2024-9047-poc

WordPress File Upload插件任意文件读取漏洞(CVE-2024-9047)批量检测脚本

exploitationinformation-gatheringpenetration-testing+3
51 year ago
Cleo-CVE-2024-50623-PoC preview

Cleo-CVE-2024-50623-PoC

GitHubisee857/cleo-cve-2024-50623-poc

Cleo 远程代码执行漏洞批量检测脚本(CVE-2024-50623)

exploitationpenetration-testingremote-access-tool+2
51 year ago
CVE-2025-0108-PoC preview

CVE-2025-0108-PoC

GitHubisee857/cve-2025-0108-poc

Palo Alto Networks PAN-OS 身份验证绕过漏洞批量检测脚本(CVE-2025-0108)

authentication-authorizationexploitationids-ips-evasion+3
321 year ago
CVE-2025-29927 preview

CVE-2025-29927

GitHubisee857/cve-2025-29927

Python-based proof-of-concept exploit for CVE-2025-29927, a Next.js privilege bypass vulnerability. Supports single-target and batch scanning with…

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubzulloper/cve-2025-1974

CVE-2025-1974 PoC 코드

cloud-securitycontainer-securityexploitation+3
1 year ago
CVE-2025-26319 preview

CVE-2025-26319

GitHubredpack-kr/cve-2025-26319

Exploit for CVE-2025-26319 targeting Flowise's /api/v1/attachments endpoint, enabling unauthenticated arbitrary file upload and webshell generation…

exploitationpayload-generationpenetration-testing+3
1 year ago
Previous12345Next