Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2278 results
Nuxeo-CVE-2018-16341 preview

Nuxeo-CVE-2018-16341

GitHubcn016/nuxeo-cve-2018-16341
exploitationinformation-gatheringpenetration-testing+2
2 years ago
Path-Traversal-CVE-2024-4956 preview

Path-Traversal-CVE-2024-4956

GitHubumasankar-mg/path-traversal-cve-2024-4956
exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2023-3971 preview

CVE-2023-3971

GitHubashangp923/cve-2023-3971

To find HTML injection and XSS

information-gatheringpenetration-testingvulnerability-analysis+2
2 years ago
cve-2022-42889-check preview

cve-2022-42889-check

GitHubeunomie/cve-2022-42889-check
exploitationinformation-gatheringpenetration-testing+2
3 years ago
save-pixels-updated preview

save-pixels-updated

GitHubknokbak/save-pixels-updated

An updated version of save-pixels that patches the CVE-2020-8175 security issue.

general-purpose-utilitiesvulnerability-analysis
5 years ago
CVE-2025-49132 preview

CVE-2025-49132

GitHubaleewyy/cve-2025-49132

Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

database-securityexploitationinformation-gathering+3
2 months ago
CVE-2025-24071 preview

CVE-2025-24071

GitHubkaiisyms/cve-2025-24071

Microsoft Windows File Explorer Spoofing Vulnerability / NTLM Hash Leak

exploitationinformation-gatheringred-teaming+1
1 year ago
CVE-2025-44203 preview

CVE-2025-44203

GitHubivant7d3/cve-2025-44203

Exploit for CVE-2025-44203 targeting a race condition in HotelDruid 3.0.0/3.0.7 that leaks admin credentials and causes denial of service. Includes a…

exploitationinformation-gatheringpassword-cracking+2
1 month ago
CVE-2024-8856 preview

CVE-2024-8856

GitHubjenderal92/cve-2024-8856

Scans WordPress sites for WP Time Capsule plugin CVE-2024-8856, detecting versions below 1.22.22 and logging vulnerable targets to a file.

information-gatheringreconnaissancevulnerability-analysis+2
22 months ago
xss2shell-check preview

xss2shell-check

GitHubsanaullahamanullah/xss2shell-check

Non-destructive detector for CVE-2026-64638 (XSS2Shell) — WordPress pre-auth XSS reflection primitive

defensive-toolsinformation-gatheringpenetration-testing+4
4 days ago
CVE-2017-7921-EXP preview

CVE-2017-7921-EXP

GitHubblacksheepstudio/cve-2017-7921-exp

Python exploit for CVE-2017-7921 in Hikvision IP cameras, performing unauthenticated user enumeration, snapshot capture, and configuration file…

authenticationexploitationinformation-gathering+3
3 years ago
CVE-2023-48795 preview

CVE-2023-48795

GitHubhav0cx0/cve-2023-48795

Scans SSH servers for Terrapin-affected OpenSSH versions by grabbing banners over port 22, enabling quick internal audits, penetration testing, and…

information-gatheringnetwork-securitypenetration-testing+2
1 year ago
CVE-2023-40000 preview

CVE-2023-40000

GitHubrxerium/cve-2023-40000

LiteSpeed Cache plugin for WordPress that could enable unauthenticated users to escalate their privileges

exploitationinformation-gatheringpenetration-testing+3
710 months ago
cve-2021-21994_POC preview

cve-2021-21994_POC

GitHubmreza-en/cve-2021-21994_poc

Validates and exploits VMware ESXi SFCB authentication bypass (CVE-2021-21994) via a probe/fuzz harness, enabling unauthenticated CIM-XML enumeration.

authenticationexploitationfuzzing+3
6 days ago
CVE-2026-8794 preview

CVE-2026-8794

GitHubh4zaz/cve-2026-8794

Username Enumeration via Authentication Timing Side-Channel in PaperCut NG

authenticationinformation-gatheringpenetration-testing+4
5 days ago
CVE-2023-22047---Oracle-PeopleSoft-LFI preview

CVE-2023-22047---Oracle-PeopleSoft-LFI

GitHub0xterror/cve-2023-22047---oracle-peoplesoft-lfi

CVE-2023-22047 is a critical unauthenticated Local File Inclusion (LFI) vulnerability in Oracle PeopleSoft Enterprise PeopleTools. This exploit…

exploitationinformation-gatheringpenetration-testing+3
5 days ago
Vulnerability Findings Database -- VulnBook-deletion_scheduled-85395299 preview

Vulnerability Findings Database -- VulnBook-deletion_scheduled-85395299

GitLabt-beckett/vulnbook-deletion_scheduled-85395299

Offline-first vulnerability findings tracker that searches 11 CVE databases in parallel, adds EPSS/KEV enrichment, and manages coordinated disclosure…

defensive-toolsinformation-gatheringthreat-feeds-aggregators+2
5 days ago
Livewire2025CVE preview

Livewire2025CVE

GitHube4zyy/livewire2025cve

Fast Python scanner detects vulnerable Laravel Livewire v3 sites (CVE-2025-54068, CVSS 9.2). Separates risky sites into vuln.txt, safe sites into…

information-gatheringvulnerability-analysisvulnerability-scanners+2
37 months ago
Previous1…123124125…127Next