Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2216 results
CVE-2021-43008-AdminerRead preview

CVE-2021-43008-AdminerRead

GitHubp0dalirius/cve-2021-43008-adminerread

Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability

exploitationinformation-gatheringpenetration-testing+3
85
2 years ago
Follina-CVE-2022-30190-POC preview

Follina-CVE-2022-30190-POC

GitHubitsnee/follina-cve-2022-30190-poc

Proof-of-concept exploit for CVE-2022-30190 (Follina) that generates malicious Word documents with remote payload hosting for calc.exe execution.

exploitationpayload-generationpenetration-testing+2
64 years ago
CVE-2026-7537 preview

CVE-2026-7537

GitHubd0n601/cve-2026-7537

MDJM Event Management <= 1.7.8.3 - Authenticated (Administrator+) Arbitrary File Upload via 'mdjm_email_upload_file' Parameter

exploitationpenetration-testingvulnerability-analysis+1
4 months ago
CVE-2025-13374 preview

CVE-2025-13374

GitHubd0n601/cve-2025-13374

Kalrav AI Agent <= 2.3.3 - Unauthenticated Arbitrary File Upload via kalrav_upload_file AJAX Action

code-analysisexploitationpayload-generation+3
9 months ago
CVE-2017-7921 preview

CVE-2017-7921

GitHubmverschu/cve-2017-7921

HikVision Auth Bypass CVE, tool is able to extract credentials, and take snapshots based on magic cookie or supplied credentials.

authenticationexploitationinformation-gathering+5
6 months ago
CVE-2023-30226 preview

CVE-2023-30226

GitHubifygecko/cve-2023-30226

Documentation of a denial-of-service vulnerability in the Rizin reverse engineering framework's ELF parser, caused by a forged DT_VERNEEDNUM value…

binary-analysisexploitationfuzzing+2
3 years ago
OutlookNTLM_CVE-2023-23397 preview

OutlookNTLM_CVE-2023-23397

GitHubmuhammad-ali007/outlookntlm_cve-2023-23397

Exploit for CVE-2023-23397 Outlook NTLM hash leak via malicious calendar invitations. Includes PowerShell weaponization, Responder integration, and…

exploitationids-ips-evasionincident-response+4
223 years ago
CVE-2025-24071-PoC preview

CVE-2025-24071-PoC

GitHublooky243/cve-2025-24071-poc

CVE-2025-24071 Proof Of Concept

data-exfiltrationexploitationinformation-gathering+3
31 year ago
CVE-2025-8081-Elementor preview

CVE-2025-8081-Elementor

GitHublyesh4ck/cve-2025-8081-elementor

Proof-of-concept exploit for CVE-2025-8081, an arbitrary file read in Elementor WordPress plugin, allowing authenticated admins to read sensitive…

educationexploitationpenetration-testing+2
10 months ago
CVE-2008-2992 preview

CVE-2008-2992

GitHubjonas-holmberg/cve-2008-2992

Writeup och POC för CVE-2008-2992

educationexploitationlabs-practice+3
4 months ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubviszsec/cve-2024-23897

Jenkins POC of Arbitrary file read vulnerability through the CLI can lead to RCE

code-analysisexploitationinformation-gathering+3
52 years ago
printix-CVE-2022-29553 preview

printix-CVE-2022-29553

GitHubcomparedarray/printix-cve-2022-29553

A "Exposed Dangerous Method or Function" or "Use of Hard-coded, Security-relevant Constants" vulnerability in PrintixService.exe, in Kofax Printix's…

exploitationpenetration-testingprivilege-escalation+2
4 years ago
CVE-2020-29607 preview

CVE-2020-29607

GitHubalienfader/cve-2020-29607

Python exploit for CVE-2020-29607 that bypasses file upload restrictions in Pluck CMS to upload a PHP webshell, enabling remote command execution on…

educationexploitationpenetration-testing+2
1 year ago
CVE-2023-38831_Exploit preview

CVE-2023-38831_Exploit

GitHubvictoriousknight/cve-2023-38831_exploit

Python script that generates a malicious RAR file exploiting CVE-2023-38831 to execute a reverse shell payload, intended for educational and ethical…

binary-exploitationeducationexploitation+3
1 year ago
CVE-2023-36025 preview

CVE-2023-36025

GitHubka7ana/cve-2023-36025

Quick test for CVE-2023-26025 behaviours

exploitationpayload-generationpenetration-testing+2
132 years ago
CVE-2022-2588 preview

CVE-2022-2588

GitHubbassamgraini/cve-2022-2588

Educational exploit for CVE-2022-2588, a Linux kernel race condition leading to privilege escalation. Includes Vagrant setup for a vulnerable machine…

binary-exploitationeducationexploitation+3
123 years ago
CVE-2007-4559 preview

CVE-2007-4559

GitHubdepers-rus/cve-2007-4559

Proof-of-concept demonstrating CVE-2007-4559 path traversal in Python's tarfile module, allowing arbitrary file overwrite via malicious TAR archives.

code-analysiseducationexploitation+2
11 year ago
CVE-2022-44877 preview

CVE-2022-44877

GitHubdkstar11q/cve-2022-44877

Bash script to detect and exploit CVE-2022-44877 command injection vulnerability in CentOS Web Panel, supporting single URL scanning, exploitation,…

command-and-controleducationexploitation+3
3 years ago
Previous1…101112…100Next