Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1225 results
CVE-2018-0802_CVE-2017-11882 preview

CVE-2018-0802_CVE-2017-11882

GitHublikekabin/cve-2018-0802_cve-2017-11882

Proof-of-concept exploit generator for CVE-2017-11882 and CVE-2018-0802, crafting malicious RTF files to execute arbitrary commands on target systems…

exploitationpayload-generationpenetration-testing+2
11
8 years ago
CVE-2018-7600-Drupal-0day-RCE preview

CVE-2018-7600-Drupal-0day-RCE

GitHubdr-iman/cve-2018-7600-drupal-0day-rce

Perl-based remote code execution exploit targeting CVE-2018-7600 in Drupal CMS, enabling payload upload and server compromise.

exploitationpayload-generationpenetration-testing+2
78 years ago
CVE-2022-24500 preview

CVE-2022-24500

GitHub0x7n6/cve-2022-24500

Standalone exploit for CVE-2022-24500 targeting Windows SMB, generating and executing shellcode to deliver a reverse Meterpreter payload.

exploitationpayload-generationpenetration-testing+3
103 years ago
CVE-2023-38831-winrar-expoit-simple-Poc preview

CVE-2023-38831-winrar-expoit-simple-Poc

GitHubahmed-fa7im/cve-2023-38831-winrar-expoit-simple-poc

CVE-2023-38831 winrar exploit generator and get reverse shell

exploitationpayload-generationpenetration-testing+3
113 years ago
CVE-2020-17530-strust2-061 preview

CVE-2020-17530-strust2-061

GitHubfengzihk/cve-2020-17530-strust2-061

Exploit for CVE-2020-17530 (Apache Struts2 S2-061) vulnerability. Provides remote code execution payload generation and testing against vulnerable…

exploitationpayload-generationpenetration-testing+2
75 years ago
CVE-2014-4113 preview

CVE-2014-4113

GitHubjohnjohnsp1/cve-2014-4113

PowerShell-based exploit for CVE-2014-4113 targeting x64 Windows systems with remote payload download and execution.

exploitationpayload-generationpenetration-testing+3
311 years ago
CVE-2024-21546 preview

CVE-2024-21546

GitHubajdumanhug/cve-2024-21546

This Python exploit script targets a vulnerable Laravel Filemanager created by UniSharp, which allows authenticated users to bypass file restrictions…

exploitationpayload-generationpenetration-testing+3
51 year ago
Follina-CVE-2022-30190-POC preview

Follina-CVE-2022-30190-POC

GitHubitsnee/follina-cve-2022-30190-poc

Proof-of-concept exploit for CVE-2022-30190 (Follina) that generates malicious Word documents with remote payload hosting for calc.exe execution.

exploitationpayload-generationpenetration-testing+2
64 years ago
CVE-2018-3191 preview

CVE-2018-3191

GitHubm00zh33/cve-2018-3191

Proof-of-concept exploit for CVE-2018-3191 targeting WebLogic Server via JNDI injection. Delivers a JAR payload to trigger remote code execution…

exploitationpayload-generationpenetration-testing+2
17 years ago
WPS-CVE-2022-24934 preview

WPS-CVE-2022-24934

GitHubmagicpipersec/wps-cve-2022-24934

PoC exploit server for CVE-2022-24934 that delivers a malicious payload via a fake WPS Update Server, targeting the wpsupdate.exe process for…

exploitationpayload-generationpenetration-testing+3
54 years ago
CVE-2024-21762_FortiNet_PoC preview

CVE-2024-21762_FortiNet_PoC

GitHubabrewer251/cve-2024-21762_fortinet_poc

Proof-of-concept scanner targeting CVE-2024-21762 in FortiOS SSL VPN’s /remote/hostcheck_validate endpoint with reverse shell payload delivery.

exploitationpayload-generationpenetration-testing+3
41 year ago
log4j-payload-generator preview

log4j-payload-generator

GitHubyesspider-hacker/log4j-payload-generator

log4j-paylaod generator : A generic payload generator for Apache log4j RCE CVE-2021-44228

exploitationpayload-generationpenetration-testing+2
44 years ago
CVE-2025-64512---pdfminer.six-Remote-Code-Execution-RCE- preview

CVE-2025-64512---pdfminer.six-Remote-Code-Execution-RCE-

GitHubsaadhassan77/cve-2025-64512---pdfminer.six-remote-code-execution-rce-

Exploit PoC for CVE-2025-64512 targeting insecure deserialization in pdfminer.six. Generates malicious pickle payload and produces exploit PDFs for…

exploitationpayload-generationpenetration-testing+2
2 months ago
CVE-2024-53677-Exploit preview

CVE-2024-53677-Exploit

GitHubshishirghimir/cve-2024-53677-exploit

Automated Python exploit script for CVE-2024-53677 with JSP web payload delivery, enabling targeted vulnerability exploitation and penetration…

exploitationpayload-generationpenetration-testing+2
31 year ago
CVE-2021-44228-Apache-Log4j-Rce preview

CVE-2021-44228-Apache-Log4j-Rce

GitHubbyteboycn/cve-2021-44228-apache-log4j-rce

Exploit for CVE-2021-44228 (Log4Shell) with RMI server and payload delivery for remote code execution against vulnerable Apache Log4j instances.

exploitationpayload-generationremote-access-tool+2
24 years ago
SharePoint-CVE-2025-53770-POC preview

SharePoint-CVE-2025-53770-POC

GitHubimmersive-labs-sec/sharepoint-cve-2025-53770-poc

C# tool that builds a GZipped, Base64-encoded .NET DataSet payload using LosFormatter to reproduce the SharePoint deserialization RCE chain…

exploitationpayload-generationpenetration-testing+3
41 year ago
0-click-RCE-Exploit-for-CVE-2024-50526 preview

0-click-RCE-Exploit-for-CVE-2024-50526

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-50526

Unauthenticated 0-click RCE exploit for CVE-2024-50526. Exploits an arbitrary file upload vulnerability in a vulnerable WordPress form plugin to…

exploitationpayload-generationpenetration-testing+5
38 months ago
CVE-2017-11882- preview

CVE-2017-11882-

GitHubshadowshusky/cve-2017-11882-

Exploit generator for CVE-2017-11882, crafting malicious RTF documents that execute arbitrary commands or shellcode via the Equation Editor…

exploitationpayload-generationshellcode+2
28 years ago
Previous123…69Next