Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1972 results
CVE-2024-49699 preview

CVE-2024-49699

GitHubrandomrobbiebf/cve-2024-49699

ARPrice <= 4.0.3 - Authenticated (Subscriber+) PHP Object Injection

code-analysisexploitationpayload-generation+2
1 year ago
CVE-2024-12877 preview

CVE-2024-12877

GitHubrandomrobbiebf/cve-2024-12877

GiveWP – Donation Plugin and Fundraising Platform <= 3.19.2 - Unauthenticated PHP Object Injection

code-analysisexploitationpayload-generation+4
1 year ago
CVE-2024-50510 preview

CVE-2024-50510

GitHubrandomrobbiebf/cve-2024-50510

AR For Woocommerce <= 6.2 - Unauthenticated Arbitrary File Upload

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2025-2807 preview

CVE-2025-2807

GitHubnxploited/cve-2025-2807

Wordpress - Motors Plugin <= 1.4.64 - Arbitrary Plugin Installation Vulnerability

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2021-32160 preview

CVE-2021-32160

GitHubmesh3l911/cve-2021-32160

Exploiting a Reflected Cross-Site Scripting (XSS) attack to create a privileged user through the Webmin's add users feature then getting a reverse…

exploitationpayload-developmentpenetration-testing+3
5 years ago
vsftpd-backdoor preview

vsftpd-backdoor

GitHublychi3/vsftpd-backdoor

Exploit hecho en python para vsftpd 2.3.4 | CVE-2011-2523

command-and-controlexploitationpayload-generation+3
1 year ago
cve-2023-4220-poc preview

cve-2023-4220-poc

GitHubho4xxx/cve-2023-4220-poc

PoC for CVE-2023-4220 - Chamilo LMS - Unauthenticated File Upload in BigUpload

exploitationpayload-generationpenetration-testing+2
2 years ago
-CVE-2014-6271-Shellshock-Remote-Command-Injection- preview

-CVE-2014-6271-Shellshock-Remote-Command-Injection-

GitHubfilipstudeny/-cve-2014-6271-shellshock-remote-command-injection-

[CVE-2014-6271] Apache Shellshock Remote Command Injection tool for quick reverse shell and file browsing

exploitationpayload-generationpenetration-testing+3
3 years ago
CVE-2021-25094 preview

CVE-2021-25094

GitHubxdx57/cve-2021-25094

Tatsu Plugin ZIP File add_custom_font unrestricted upload

exploitationpayload-generationpenetration-testing+2
4 years ago
CVE-2024-50986 preview

CVE-2024-50986

GitHubriftsandroses/cve-2024-50986

An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file (DLL Hijacking)

binary-exploitationexploitationpayload-generation+4
1 year ago
CVE-2021-43798-Exploit-for-Windows-and-Linux preview

CVE-2021-43798-Exploit-for-Windows-and-Linux

GitHubravi5hanka/cve-2021-43798-exploit-for-windows-and-linux

Modified exploit for CVE-2021-43798 compatible with both Windows and Linux hosts.

exploitationpayload-generationpenetration-testing+2
1 year ago
CVE-2019-11447 preview

CVE-2019-11447

GitHubmt-code/cve-2019-11447

Exploits CuteNews 2.1.2 via poor file upload checks used when uploading an avatar image leading to RCE.

exploitationpayload-generationpenetration-testing+2
5 years ago
CVE-2025-1639 preview

CVE-2025-1639

GitHubnxploited/cve-2025-1639

Animation Addons for Elementor Pro <= 1.6 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation/Activation

authenticationexploitationpayload-generation+3
1 year ago
CVE-2024-31114 preview

CVE-2024-31114

GitHubnxploited/cve-2024-31114

Shortcode Addons <= 3.2.5 - Authenticated (Admin+) Arbitrary File Upload

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2022-34919 preview

CVE-2022-34919

GitHubahajnik/cve-2022-34919

Proof-of-concept exploit for CVE-2022-34919, demonstrating unauthenticated arbitrary file upload and RCE in Contensis CMS Classic interface via…

exploitationpayload-generationpenetration-testing+3
4 years ago
CVE-2024-32002 preview

CVE-2024-32002

GitHubdaemon-reconfig/cve-2024-32002

Generates reverse shell payloads targeting the GitLab-shell vulnerability CVE-2024-32002 for exploitation testing.

exploitationpayload-generationpenetration-testing+2
2 years ago
CVE-2024-32002 preview

CVE-2024-32002

GitHubspyciokon/cve-2024-32002

Just small script to exploit CVE-2024-32002

exploitationpayload-generationpenetration-testing+3
2 years ago
better-poc-for-CVE-2018-15133 preview

better-poc-for-CVE-2018-15133

GitHubalienx2001/better-poc-for-cve-2018-15133

An automated PoC for CVE 2018-15133

exploitationpayload-generationpenetration-testing+2
5 years ago
Previous1…99100Next