Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
3022 results
Apache-Struts preview

Apache-Struts

GitHubc002/apache-struts

Python-based exploit for Apache Struts CVE-2017-5638 with single URL and batch scanning modes, vulnerability checking, and Nmap reconnaissance…

command-and-controlexploitationpenetration-testing+3
9 years ago
CVE-2023-36643 preview

CVE-2023-36643

GitHubcaffeinated-labs/cve-2023-36643

Proof-of-concept for CVE-2023-36643: an incorrect access control vulnerability in ITB-GmbH TradePro v9.5 that allows remote attackers to enumerate…

information-gatheringmisconfigurationpenetration-testing+2
2 years ago
PoC-CVE-2021-41773 preview

PoC-CVE-2021-41773

GitHubblu3ming/poc-cve-2021-41773

Python exploit for CVE-2021-41773 - Apache HTTP Server 2.4.49 Path Traversal vulnerability

exploitationinformation-gatheringpenetration-testing+3
1 year ago
emby_ssrf preview

emby_ssrf

GitHubbtnz-k/emby_ssrf

Metasploit auxiliary module that identifies Emby Media Server version and exploits CVE-2020-26948 SSRF vulnerability to scan internal network…

exploitationnetwork-mappingreconnaissance+3
5 years ago
CVE-2017-7529- preview

CVE-2017-7529-

GitHubyoungmin0104/cve-2017-7529-

Docker-based reproduction environment for CVE-2017-7529 Nginx integer overflow vulnerability, demonstrating information disclosure via crafted Range…

educationexploitationinformation-gathering+3
1 year ago
Telnet-TestVuln-CVE-2026-24061 preview

Telnet-TestVuln-CVE-2026-24061

GitHubbrainbob/telnet-testvuln-cve-2026-24061

Dockerized vulnerable Telnet service for testing CVE-2026-24061, providing a controlled environment for vulnerability validation and security…

container-securityexploitationpenetration-testing+2
8 months ago
CVE-2025-53770 preview

CVE-2025-53770

GitHubr3xbugbounty/cve-2025-53770

Proof-of-concept exploit for CVE-2025-53770, demonstrating exploitation of a web application vulnerability for security testing and validation.

exploitationpenetration-testingreconnaissance+2
1 year ago
CVE-2021-21974_vuln_dectection preview

CVE-2021-21974_vuln_dectection

GitHubabirasecurity/cve-2021-21974_vuln_dectection

CVE-2021-21974 Vulnerability Detection Tool Safe PoC that identifies vulnerable SLP implementations without exploitation

exploitationinformation-gatheringnetwork-security+3
1 year ago
CVE-2025-4380 preview

CVE-2025-4380

GitHubr0otk3r/cve-2025-4380

Python exploit for CVE-2025-4380, a Local File Inclusion vulnerability in the Ads Pro WordPress plugin. Supports single and mass target scanning with…

educationexploitationinformation-gathering+3
1 year ago
CVE-2025-48384-submodule preview

CVE-2025-48384-submodule

GitHubjacobholtz/cve-2025-48384-submodule

Proof-of-concept exploit for CVE-2025-48384, demonstrating the vulnerability and providing a template for security testing and verification.

exploitationpenetration-testingreconnaissance+2
1 year ago
cve-2025-1716 preview

cve-2025-1716

GitHubdanigil/cve-2025-1716

Proof-of-concept exploit for CVE-2025-1716, demonstrating the vulnerability and providing a working exploitation script for security testing and…

exploitationinformation-gatheringpenetration-testing+2
7 months ago
cve-2018-7600 preview

cve-2018-7600

GitHubcved-sources/cve-2018-7600

Docker container for CVE-2018-7600 (Drupalgeddon2) vulnerability exploitation, part of the Cved framework for managing vulnerable Docker environments…

container-securityeducationexploitation+3
5 years ago
cve-2015-3306 preview

cve-2015-3306

GitHubhackarada/cve-2015-3306

Dockerized exploit environment for CVE-2015-3306 (ProFTPD copy_file_range) with FTP and HTTP services for penetration testing and vulnerability…

container-securityexploitationpenetration-testing+2
3 years ago
CVE-2024-27954 preview

CVE-2024-27954

GitHubbabydessy/cve-2024-27954

Nuclei template and detection queries for CVE-2024-27954, a path traversal and SSRF vulnerability in the WP Automatic WordPress plugin up to version…

exploitationinformation-gatheringpenetration-testing+5
1 year ago
x-stream__xstream_CVE-2021-21345_1-4-15 preview

x-stream__xstream_CVE-2021-21345_1-4-15

GitHubshoucheng3/x-stream__xstream_cve-2021-21345_1-4-15

Java XML serialization library with a focus on CVE-2021-21345 exploit analysis and deserialization vulnerability testing for web applications.

code-analysisdynamic-code-analysisexploitation+3
1 year ago
CVE-2024-20767 preview

CVE-2024-20767

GitHubalm6no5/cve-2024-20767

Exploit for CVE-2024-20767, a vulnerability in Adobe ColdFusion, providing proof-of-concept code for security testing and research.

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2022-46169 preview

CVE-2022-46169

GitHubimjdl/cve-2022-46169

Python exploit script for CVE-2022-46169 targeting a specific web application vulnerability. Designed for penetration testers to verify and…

exploitationpenetration-testingreconnaissance+2
3 years ago
CVE-2022-44877 preview

CVE-2022-44877

GitHubdkstar11q/cve-2022-44877

Bash script to detect and exploit CVE-2022-44877 command injection vulnerability in CentOS Web Panel, supporting single URL scanning, exploitation,…

command-and-controleducationexploitation+3
3 years ago
Previous1…99100Next