Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
531 results
CVE-2023-30212-POC-DOCKER-FILE preview

CVE-2023-30212-POC-DOCKER-FILE

GitHubrishipatidar/cve-2023-30212-poc-docker-file

This repository provides a Docker container for simulating the CVE-2023-30212 vulnerability, allowing you to practice and understand its impact. It…

educationexploitationlabs-practice+3
1
3 years ago
CVE-2019-15813 preview

CVE-2019-15813

GitHubwolf1892/cve-2019-15813

This container was made to explain and demonstrate how CVE-2019-15813 (Sentrifugo works)

educationexploitationlabs-practice+3
15 years ago
coolify-cve-2025-66209-66213 preview

coolify-cve-2025-66209-66213

GitHub0xrakan/coolify-cve-2025-66209-66213

Public security advisory for CVE-2025-66209, CVE-2025-66210, CVE-2025-66211, CVE-2025-66212, and CVE-2025-66213

cloud-securitycommand-and-controlcontainer-escape+3
18 months ago
CVE-2025-23266 preview

CVE-2025-23266

GitHubmrk336/cve-2025-23266

CVE-2025-23266 targets FastAPI’s parse_request() function, where oversized HTTP headers cause a buffer overflow and remote code execution. The…

container-escapeeducationexploitation+3
111 months ago
Holistic-Deconstruction-of-CVE-2019-5736- preview

Holistic-Deconstruction-of-CVE-2019-5736-

GitHubsastraadiwiguna-purpleeliteteaming/holistic-deconstruction-of-cve-2019-5736-

This repository provides a high-fidelity technical deconstruction and production-ready exploitation suite for CVE-2019-5736. It demonstrates how a…

container-escapeeducationexploitation+6
7 months ago
CVE-2019-5736-Custom-Runtime preview

CVE-2019-5736-Custom-Runtime

GitHubgiverofgifts/cve-2019-5736-custom-runtime

CVE-2019-5736 implemented in a self-written container runtime to understand the exploit.

binary-exploitationcontainer-escapeeducation+3
16 years ago
vulhub-struts2 preview

vulhub-struts2

GitHubsoufiane-benchahyd/vulhub-struts2

A practical lab demonstrating the exploitation of a critical Remote Code Execution (RCE) vulnerability in Apache Struts2 (CVE-2017-5638) using Vulhub…

educationexploitationlabs-practice+2
6 months ago
CVE-2026-53365 preview

CVE-2026-53365

GitHubhorkimhab/cve-2026-53365

Proof-of-concept CVE exploit and lab scripts for sandbox/VM isolation, targeting authorized environments such as Docker and virtual machines for…

binary-exploitationcontainer-escapeeducation+4
7 days ago
vex8s preview

vex8s

GitHubalegrey91/vex8s

Suppress vulnerabilities applying Kubernetes context to scans

cloud-infrastructure-securitycloud-securityconfiguration-auditing+7
201 month ago
bidi_char_detector preview
Archived

bidi_char_detector

GitHubmaweil/bidi_char_detector

Checks your files for existence of Unicode BIDI characters which can be misused for supply chain attacks. See CVE-2021-42574

code-analysismisconfigurationsecret-detection+3
63 years ago
Shadowbroker preview

Shadowbroker

GitHubbigbodycobain/shadowbroker

Real-time geospatial OSINT platform aggregating 60+ public telemetry feeds (ADS-B, AIS, satellites, CCTV) into a unified map with server-side recon…

command-and-controlcrawlerdns-analysis+7
10.9k16h 31m ago
CVE-2025-49113 preview

CVE-2025-49113

GitHubfearsoff-org/cve-2025-49113
educationexploitationpayload-generation+3
1091 year ago
Re2Pcap preview

Re2Pcap

GitHubcisco-talos/re2pcap
ids-ips-evasionnetwork-securitypacket-sniffing-analysis+1
595 years ago
efcf-framework preview

efcf-framework

GitHubuni-due-syssec/efcf-framework

EF/CF - Extremely Fast smart Contract Fuzzing

binary-analysisexploitationfuzzing+1
703 years ago
CVE-2018-11788 preview

CVE-2018-11788

GitHubbrianwrf/cve-2018-11788

Apache Karaf XXE Vulnerability (CVE-2018-11788)

code-analysiseducationexploitation+3
377 years ago
Startup-SBOM preview

Startup-SBOM

GitHubmorpheuslord/startup-sbom

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

cloud-securityconfiguration-auditingcontainer-security+4
174 months ago
CVE-2019-5736 preview

CVE-2019-5736

GitHubjas502n/cve-2019-5736

runc容器逃逸漏洞预警

cloud-infrastructure-securitycloud-securitycontainer-escape+3
147 years ago
CVE-2021-35042 preview

CVE-2021-35042

GitHubyougina/cve-2021-35042

SQL injection via unsanitized QuerySet.order_by() input

educationlabs-practicepenetration-testing+2
135 years ago
Previous1…252627…30Next