Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2216 results
CVE-2026-56291_PoC preview

CVE-2026-56291_PoC

GitHubchiefyoru/cve-2026-56291_poc

The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full…

exploitationpayload-generationpenetration-testing+2
1 month ago
CVE-2026-56290_PoC preview

CVE-2026-56290_PoC

GitHubchiefyoru/cve-2026-56290_poc

The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to…

exploitationpayload-generationpenetration-testing+2
1 month ago
CVE-2025-24071 preview

CVE-2025-24071

GitHubabdelrahman0sayed/cve-2025-24071

This is a python PoC scripts for CVE-2025-24071 which is a vulnerability in Windows File Explorer that allows unauthorized access to sensitive…

exploitationinformation-gatheringpassword-cracking+4
18 months ago
WordPress-File-Upload-4.24.11---Unauthenticated-Path-Traversal preview

WordPress-File-Upload-4.24.11---Unauthenticated-Path-Traversal

GitHubamirqusairy99/wordpress-file-upload-4.24.11---unauthenticated-path-traversal

Python-based tool to detect and exploit arbitrary file read vulnerability in WordPress WP File Upload plugin (<=4.24.11), enabling unauthenticated…

exploitationinformation-gatheringpenetration-testing+2
10 months ago
CVE-2020-16938 preview

CVE-2020-16938

GitHubioncodes/cve-2020-16938

Bypassing NTFS permissions to read any files as unprivileged user.

data-exfiltrationexploitationforensics+2
1925 years ago
CVE-2025-505050 preview

CVE-2025-505050

GitHubaljoharasubaie/cve-2025-505050

An issue was discovered in machpanel 8 allowing attackers to execute arbitrary commands via the ticket text box.

exploitationinformation-gatheringpenetration-testing+2
8 months ago
CVE-2025-32579 preview

CVE-2025-32579

GitHubnxploited/cve-2025-32579

WordPress Sync Posts Plugin <= 1.0 is vulnerable to Arbitrary File Upload

exploitationpayload-generationpenetration-testing+3
11 year ago
CVE-2024-43044-jenkins preview

CVE-2024-43044-jenkins

GitHubconvisolabs/cve-2024-43044-jenkins

Exploit for the vulnerability CVE-2024-43044 in Jenkins

exploitationpayload-developmentpenetration-testing+3
1852 years ago
CVE-2025-56383-Proof-of-Concept preview

CVE-2025-56383-Proof-of-Concept

GitHubzer0t0/cve-2025-56383-proof-of-concept

CVE-2025-56383-Proof-of-Concept

binary-exploitationexploitationmalware-analysis+2
5511 months ago
CVE-2018-2628-MultiThreading preview

CVE-2018-2628-MultiThreading

GitHubaedoo/cve-2018-2628-multithreading

WebLogic WLS核心组件反序列化漏洞多线程批量检测脚本 CVE-2018-2628-MultiThreading

exploitationinformation-gatheringpenetration-testing+3
158 years ago
panrapidcheck preview

panrapidcheck

GitHubhackinglz/panrapidcheck

Extract useful information from PANOS support file for CVE-2024-3400

forensicsincident-responseioc-management+3
21 year ago
CVE-2025-46157 preview

CVE-2025-46157

GitHubmorphine009/cve-2025-46157

Proof-of-concept exploit for CVE-2025-46157: Remote code execution via insecure file upload in Timetrax V1 Attendance module, with EfsPotato-based…

educationexploitationpayload-development+4
11 year ago
CVE-2025-27581 preview

CVE-2025-27581

GitHubhenryisnotavailable/cve-2025-27581

Exploit scripts for CVE-2025-27581

binary-exploitationexploitationpenetration-testing+2
1 year ago
CVE-2022-47952 preview

CVE-2022-47952

GitHubmaherazzouzi/cve-2022-47952

LXC Information Disclosure vulnerability.

container-securityexploitationinformation-gathering+2
3 years ago
CVE-2023-44767_RiteCMS-File-Upload--XSS---Filemanager preview

CVE-2023-44767_RiteCMS-File-Upload--XSS---Filemanager

GitHubsromanhu/cve-2023-44767_ritecms-file-upload--xss---filemanager

RiteCMS 3.0 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will…

exploitationpenetration-testingphishing-tools+3
2 years ago
CockpitCMS-Arbitrary-File-Upload--XSS---Assets preview

CockpitCMS-Arbitrary-File-Upload--XSS---Assets

GitHubsromanhu/cockpitcms-arbitrary-file-upload--xss---assets

Cockpit CMS 2.7.0 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will…

exploitationvulnerability-analysisweb-application-exploitation
2 years ago
CVE-2017-1000117 preview

CVE-2017-1000117

GitHubsiling2017/cve-2017-1000117

Proof-of-concept exploit for CVE-2017-1000117 (Git SSH command injection) that writes command output to a web-accessible file. Part of VulApps…

educationexploitationlabs-practice+2
8 years ago
CVE-2024-10586-Poc preview

CVE-2024-10586-Poc

GitHubnxploited/cve-2024-10586-poc

Proof-of-concept exploit for CVE-2024-10586 targeting WordPress Debug Tool plugin. Automates arbitrary file upload leading to remote code execution…

educationexploitationpayload-generation+3
1 year ago
Previous1…91011…100Next