Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
419 results
CVE-2026-48611-phpBB preview

CVE-2026-48611-phpBB

GitHubwanmywan/cve-2026-48611-phpbb

Bypass Authentication

authenticationeducationexploitation+3
2 months ago
cve-scanner preview

cve-scanner

GitHubhargabyte/cve-scanner

Local CVE scanner for OpenClaw that checks versions against 522+ known vulnerabilities, displays recent HIGH-severity CVEs, and recommends upgrades.…

configuration-auditingdefensive-toolsdevsecops+3
36 months ago
Check-AAD-Connect-for-CVE-2021-36949-vulnerability preview

Check-AAD-Connect-for-CVE-2021-36949-vulnerability

GitHubmaxwitat/check-aad-connect-for-cve-2021-36949-vulnerability

check if Azure AD Connect is affected by the vulnerability described in CVE-2021-36949

authenticationcloud-securitymisconfiguration+2
35 years ago
CVE-2024-10793 preview

CVE-2024-10793

GitHubmahajian/cve-2024-10793

Proof-of-concept exploit for CVE-2024-10793 targeting WordPress wp-security-audit-log plugin. Demonstrates account takeover, privileged user…

exploitationpayload-developmentprivilege-escalation+3
21 year ago
YellowKey-Bitlocker-CVE-2026-45585 preview

YellowKey-Bitlocker-CVE-2026-45585

GitHubneccie/yellowkey-bitlocker-cve-2026-45585

Manage BitLocker recovery keys, unlock encrypted drives, and monitor encryption status with this lightweight Windows utility.

data-recoverydigital-forensicsencryption-decryption-tools+1
1 month ago
cve-2022-1040 preview

cve-2022-1040

GitHubkeith-amateur/cve-2022-1040

Save the trouble to open the burpsuite...

exploitationpenetration-testingvulnerability-analysis+2
33 years ago
mcp-server preview

mcp-server

GitHuboffensive360/mcp-server

MCP server that runs SAST scans on local codebases and returns findings with severity and fixes, enabling AI assistants to perform security analysis…

api-security-testingcloud-securitycode-analysis+3
1 month ago
dirtypipe preview

dirtypipe

GitHubmhanief/dirtypipe

Dirty Pipe Vulnerability Detection Script - RHSB-2022-002 Dirty Pipe - kernel arbitrary file manipulation - (CVE-2022-0847)

binary-exploitationexploitationprivilege-escalation+1
24 years ago
CVE-2021-38666-poc preview

CVE-2021-38666-poc

GitHubdarksprings/cve-2021-38666-poc

Proof-of-concept exploit for CVE-2021-38666, a Windows Remote Code Execution vulnerability. Demonstrates exploitation techniques for security testing…

exploitationpayload-developmentpenetration-testing+2
24 years ago
ai-code-review preview

ai-code-review

GitHubjaydendancer12/ai-code-review

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…

ai-securitycode-analysisdevsecops+5
37 months ago
CVE-2019-5420.rb preview

CVE-2019-5420.rb

GitHubscumdestroy/cve-2019-5420.rb

POC Exploit written in Ruby

exploitationpayload-generationpenetration-testing+2
34 years ago
cve-2018-11776-docker preview

cve-2018-11776-docker

GitHubtuxotron/cve-2018-11776-docker

Dockerized proof-of-concept exploit for CVE-2018-11776 (Apache Struts2) with a Go-based command execution payload for penetration testing and…

container-securityexploitationpayload-development+3
38 years ago
CVE-2018-1932X preview

CVE-2018-1932X

GitHubbkreisel/cve-2018-1932x

Rust POC for CVE-2018-1932X kernel driver vulnerabilities

binary-exploitationexploitationpayload-development+3
34 years ago
CVE-2021-21300 preview

CVE-2021-21300

GitHubmaskhe/cve-2021-21300

Proof-of-concept exploit for CVE-2021-21300, a Git vulnerability that triggers remote code execution via a crafted repository clone.

exploitationpayload-generationpenetration-testing+2
15 years ago
CVE-2026-35031 preview

CVE-2026-35031

GitHubkeraattin/cve-2026-35031

Critical path traversal to RCE vulnerability in Jellyfin Media Server (CVSS 9.9). Includes proof-of-concept exploit, technical analysis, and…

educationexploitationpapers-research+5
25 months ago
CVE-2026-48172 preview

CVE-2026-48172

GitHubhorkimhab/cve-2026-48172

CVE-2026-48172

educationexploitationlabs-practice+3
24 months ago
CVE-2004-1561-Notes preview

CVE-2004-1561-Notes

GitHubthel1nus/cve-2004-1561-notes

My notes for CVE-2004-1561 IceCast exploitation

curated-resourceseducationexploitation+2
35 years ago
CVE-2014-3566-poodle-cookbook preview

CVE-2014-3566-poodle-cookbook

GitHubmikesplain/cve-2014-3566-poodle-cookbook

Chef cookbook that detects and fails runs on servers vulnerable to CVE-2014-3566 (POODLE) by scanning specified SSL ports, serving as both a security…

configuration-auditingdevsecopseducation+2
311 years ago
Previous1…151617…24Next