Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
86 results
CVE-2022-44877 preview

CVE-2022-44877

GitHubdkstar11q/cve-2022-44877

Bash script to detect and exploit CVE-2022-44877 command injection vulnerability in CentOS Web Panel, supporting single URL scanning, exploitation,…

command-and-controleducationexploitation+3
3 years ago
CVE-2025-4380 preview

CVE-2025-4380

GitHubr0otk3r/cve-2025-4380

Python exploit for CVE-2025-4380, a Local File Inclusion vulnerability in the Ads Pro WordPress plugin. Supports single and mass target scanning with…

educationexploitationinformation-gathering+3
1 year ago
CVE-2024-34102 preview

CVE-2024-34102

GitHubkento-sec/cve-2024-34102

Go-based exploit for CVE-2024-34102, an XXE vulnerability in Adobe Commerce leading to remote code execution. Supports single and batch URL scanning…

educationexploitationpenetration-testing+2
1 year ago
offensive-security-lab-1 preview

offensive-security-lab-1

GitHubmafiosohack/offensive-security-lab-1

A hands-on vulnerability assessment and exploitation of a Windows 7 VM using the EternalBlue (CVE-2017-0143) exploit. Includes scanning, exploitation…

educationexploitationexploit-frameworks+4
1 year ago
Shellshock-CVE-2014-6271-Exploitation-and-Analysis preview

Shellshock-CVE-2014-6271-Exploitation-and-Analysis

GitHubrajmadhusankha/shellshock-cve-2014-6271-exploitation-and-analysis

Educational lab demonstrating Shellshock (CVE-2014-6271) exploitation using Metasploit against Metasploitable 2, including scanning, exploitation,…

educationexploitationlabs-practice+3
1 year ago
CVE-2024-51378 preview

CVE-2024-51378

GitHubqnole000/cve-2024-51378

Exploit scripts and nuclei templates for CVE-2024-51378 (CyberPanel vulnerability). Includes single/multi-threaded Python scanners for vulnerable…

educationexploitationpenetration-testing+3
10 months ago
CVE-2021-3773 preview

CVE-2021-3773

GitHubd0rb/cve-2021-3773

Exploit script for CVE-2021-3773 (Port Shadow) targeting OpenVPN servers using Netfilter NAT. Performs deanonymization and man-in-the-middle attacks…

educationexploitationnetwork-security+2
2 years ago
cve-2021-42013 preview

cve-2021-42013

GitHubmightysai1997/cve-2021-42013

Python script to detect and exploit CVE-2021-42013 path traversal and remote code execution in Apache 2.4.50, with bulk scanning and a Docker lab for…

educationexploitationlabs-practice+3
3 years ago
CVE-2021-42694 preview

CVE-2021-42694

GitHubk271266/cve-2021-42694

Static analysis tool to detect homoglyph substitution attacks in source code, scanning Python identifiers for visually similar Unicode characters to…

code-analysiseducationstatic-analysis+2
1 year ago
CVE-2026-5615 preview

CVE-2026-5615

GitHubsahmsec/cve-2026-5615

Python proof-of-concept for CVE-2026-5615, a stored XSS in VvvebJs, demonstrating SVG upload exploitation with multi-threaded scanning and validation.

educationexploitationpenetration-testing+3
3 months ago
My-Exploits preview

My-Exploits

GitHubm4xsec/my-exploits

Metasploit modules, Python PoCs and throwaway Docker labs for four platform CVEs: Keycloak (CVE-2026-18963), Apache NiFi (CVE-2026-39816), HashiCorp…

cloud-securitycontainer-securityeducation+7
11 day ago
CVE-2026-22785 preview

CVE-2026-22785

GitHublangbyyi/cve-2026-22785

Exploit tool for CVE-2026-22785, a critical code injection in orval < 7.18.0. Provides shell command execution and file scanning to demonstrate the…

code-analysiseducationexploitation+2
17 months ago
CVE-2021-41773-exercise preview

CVE-2021-41773-exercise

GitHubm96dg/cve-2021-41773-exercise

Hands-on lab to exploit Apache 2.4.49 path traversal (CVE-2021-41773) using Docker, Nmap scanning, and curl to retrieve a flag.

educationexploitationlabs-practice+3
4 years ago
Detect-CVE-2017-15361-TPM preview
Archived

Detect-CVE-2017-15361-TPM

GitHubnsacyber/detect-cve-2017-15361-tpm

Detects Windows and Linux systems with enabled Trusted Platform Modules (TPM) vulnerable to CVE-2017-15361. #nsacyber

configuration-auditingcryptographyforensics+3
637 years ago
CVE-2026-8181 preview

CVE-2026-8181

GitHubjenderal92/cve-2026-8181

CVE-2026-8181: Burst Statistics Auth Bypass → REST API takeover & admin creation. Python 2.7. Educational use only.

authenticationeducationexploitation+3
3 months ago
CVE-2026-53264 preview

CVE-2026-53264

GitHubhorkimhab/cve-2026-53264

CVE-2026-53264 - Draft

binary-exploitationeducationexploitation+2
31 month ago
CVE-2026-64600 preview

CVE-2026-64600

GitHubhorkimhab/cve-2026-64600

CVE-2026-64600 - Draft - Check todo

ctfeducationexploitation+3
8 days ago
CVE-2026-53413 preview

CVE-2026-53413

GitHubhorkimhab/cve-2026-53413

Educational CVE proof-of-concept repository with setup guidance for authorized vulnerability research using virtual machines, Docker, and isolated…

educationexploitationlabs-practice+2
19 days ago
Previous12345Next