Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
518 results
cve-2023-1671 preview

cve-2023-1671

GitHubcsffs/cve-2023-1671

Python-based exploit for CVE-2023-1671 with test and exploitation functions. Tests vulnerability via DNS ping, then executes arbitrary commands on…

command-and-controleducationexploitation+3
3 years ago
CVE-2020-9470 preview

CVE-2020-9470

GitHubal1ex/cve-2020-9470

Wing FTP Server 6.2.5 - Privilege Escalation

exploitationpenetration-testingprivilege-escalation+3
5 years ago
CVE-2025-25705 preview

CVE-2025-25705

GitHubcotherm/cve-2025-25705

Proof-of-concept exploit for authenticated remote code execution via command injection in ProApps Enterprise Appliance ping functionality, with…

command-and-controlexploitationpayload-development+5
1 year ago
cve-2015-3636 preview

cve-2015-3636

GitHubludongxu/cve-2015-3636

Proof-of-concept exploit for CVE-2015-3636, a Linux kernel ping socket vulnerability enabling local privilege escalation.

binary-exploitationexploitationpenetration-testing+2
11 years ago
CVE-2025-25706 preview

CVE-2025-25706

GitHubcotherm/cve-2025-25706

Detailed CVE-2025-25706 proof-of-concept demonstrating authenticated remote code execution via command injection in ProApps ping functionality,…

command-and-controlexploitationpayload-development+3
1 year ago
CVE-2025-26466-msf preview

CVE-2025-26466-msf

GitHubmrowkoob/cve-2025-26466-msf

CVE-2025-26466 - SSH Ping DoS Ruby module for Metasploit Framework

educationexploit-frameworksnetwork-security+2
1 year ago
CVE-2025-7795 preview
Archived

CVE-2025-7795

GitHubbytereaper77/cve-2025-7795

Proof-of-concept exploit for a buffer overflow vulnerability in Tenda routers. Sends crafted unauthenticated POST requests to trigger a crash and…

binary-exploitationembedded-systems-securityexploitation+3
21 year ago
sitedorks preview

sitedorks

GitHubzarcolio/sitedorks

Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.

dns-subdomain-enumerationinformation-gatheringosint+3
1.1k1 month ago
Presentations preview

Presentations

GitHubstar-sg/presentations

Curated collection of offensive security conference slide decks covering kernel and mobile exploitation, VM/container escapes, and…

binary-exploitationcontainer-securitycurated-resources+6
1373 months ago
goodoldsearch-oss preview

goodoldsearch-oss

GitHubmrtdlgc/goodoldsearch-oss

Local static query builder for precise search across web engines, Shodan, crt.sh, and Wayback Machine. Supports Google dorks, filetype filters, date…

curated-resourcesdns-subdomain-enumerationeducation+6
194 months ago
DsArk64 preview

DsArk64

GitHubgmh5225/dsark64

BYOVD proof-of-concept abusing the WHQL-signed DsArk64.sys driver for ring-0 process termination and kernel read/write via encrypted IOCTLs and…

binary-exploitationdefensive-toolsexploitation+6
125 months ago
CVE-2021-25646 preview

CVE-2021-25646

GitHubj2ekim/cve-2021-25646

Python exploit for Apache Druid remote code execution vulnerability CVE-2021-25646, enabling command injection via crafted HTTP requests.

exploitationpenetration-testingremote-access-tool+2
44 years ago
GoCD_PoC_Supply_Chain_Attack preview

GoCD_PoC_Supply_Chain_Attack

GitHubhigorgabrieldcf/gocd_poc_supply_chain_attack

CVE-2021-43287 CVE-2021-43288 CVE-2021-43289 CVE-2021-43290

educationexploitationpayload-generation+7
212 days ago
CVE-2026-1281-Ivanti-EPMM-RCE preview

CVE-2026-1281-Ivanti-EPMM-RCE

GitHubmehdiledeaut/cve-2026-1281-ivanti-epmm-rce

Proof of Concept for CVE-2026-1281 & CVE-2026-1340 - Ivanti EPMM Pre-Auth RCE via Bash Arithmetic Expansion

exploitationpayload-developmentpenetration-testing+3
67 months ago
CVE-2021-3899_PoC preview

CVE-2021-3899_PoC

GitHubliumuqing/cve-2021-3899_poc

race condition in apport lead to Local Privilege Escalation on Ubuntu

exploitationpenetration-testingprivilege-escalation+1
34 years ago
cve-2022-22963 preview

cve-2022-22963

GitHubtwseptian/cve-2022-22963

Spring Cloud Function SpEL - cve-2022-22963

exploitationpayload-developmentpenetration-testing+2
24 years ago
CVE-2025-47812 preview

CVE-2025-47812

GitHubshadowgit30/cve-2025-47812

CVE-2025-47812 POC

exploitationpayload-developmentpenetration-testing+3
27 months ago
CVE-2026-8838-RCE preview

CVE-2026-8838-RCE

GitHubmaxime288/cve-2026-8838-rce

Educational PoC for CVE-2026-8838, a critical RCE vulnerability in Amazon Redshift Python Driver via unsafe eval() in vector_in(). Includes technical…

binary-exploitationctfeducation+3
4 months ago
Previous1…272829Next