Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
884 results
CVE-2025-68664-LangGrinch-PoC preview

CVE-2025-68664-LangGrinch-PoC

GitHubak-cybe/cve-2025-68664-langgrinch-poc

A testing framework to identify and demonstrate deserialization vulnerabilities in LangChain Core (<0.3.81). Educational use only

ai-securitycode-analysiseducation+6
3
8 months ago
CVE-2025-48595-Android-Framework-Integer-Overflow- preview

CVE-2025-48595-Android-Framework-Integer-Overflow-

GitHubfevar54/cve-2025-48595-android-framework-integer-overflow-

PoC de CVE-2025-48595: desbordamiento de entero en multiples ubicaciones del Framework de Android.

android-securitybinary-exploitationexploitation+3
13 months ago
VQ-RefluxCore preview

VQ-RefluxCore

GitHubvulnquest58/vq-refluxcore

is an advanced security research framework designed to model, analyze, and demonstrate Local Privilege Escalation (LPE) mechanics associated with…

binary-exploitationctfeducation+5
1 month ago
CVE-2024-41570-Havoc-C2-RCE preview

CVE-2024-41570-Havoc-C2-RCE

GitHubleo-mitch/cve-2024-41570-havoc-c2-rce

This is a Chained RCE in the Havoc C2 framework using github.com/chebuya and github.com/IncludeSecurity pocs

command-and-controlexploitationpenetration-testing+3
31 year ago
vsftpd-cve-2011-2523-lab preview

vsftpd-cve-2011-2523-lab

GitHubindiquarks/vsftpd-cve-2011-2523-lab

Pen Tesing Lab exploiting VSFTPD 2.3.4 backdoor via Metasploit Framework

educationexploitationexploit-frameworks+5
2 months ago
CVE-2025-29972 preview

CVE-2025-29972

GitHubthemehackers/cve-2025-29972

CVE-2025-29927 is a critical security vulnerability affecting Next.js, a popular React framework for building full-stack web applications. This flaw…

authentication-authorizationexploitationpenetration-testing+2
21 year ago
FUCKER preview

FUCKER

GitHubrazureink/fucker

Penetration testing framework with AI-driven decision engine

command-and-controlexploitationlateral-movement+7
1 month ago
CVE-2026-21628_PoC preview

CVE-2026-21628_PoC

GitHubchiefyoru/cve-2026-21628_poc

Unauthenticated Remote Code Execution in Astroid Framework 2.0.0 - 3.3.10 for Joomla

exploitationpenetration-testingremote-access-tool+2
2 months ago
cve-2024-38819-lab preview

cve-2024-38819-lab

GitHubtrevorputbrese/cve-2024-38819-lab

Hands-on lab demonstrating CVE-2024-38819 Spring Framework path traversal vulnerability with vulnerable and patched Spring Boot deployments for…

educationlabs-practicemisconfiguration+3
3 months ago
spring4shell-local-verification-lab preview

spring4shell-local-verification-lab

GitHubmeng-security/spring4shell-local-verification-lab

Spring Framework CVE-2022-22965 本地影响条件验证、版本升级修复与复测项目

code-analysiseducationexploitation+3
2 months ago
CVE-2026-8206 preview

CVE-2026-8206

GitHubdungsocool/cve-2026-8206

CVE-2026-8206: Kirki Customizer Framework - Unauthenticated Account Takeover (CVSS 9.8)

authenticationeducationexploitation+6
11 month ago
CVE-2023-32692-CodeIgniter4 preview

CVE-2023-32692-CodeIgniter4

GitHubmogwailabs/cve-2023-32692-codeigniter4

Example application, vulnerable to CVE-2023-32692 (Validation Rule Injection in the PHP Framework CodeIgniter)

code-analysiseducationlabs-practice+3
24 months ago
frameworks_base_AOSP10_r33_CVE-2022-20007 preview

frameworks_base_AOSP10_r33_CVE-2022-20007

GitHubtrinadh465/frameworks_base_aosp10_r33_cve-2022-20007

Android framework patch for CVE-2022-20007, addressing a security vulnerability in AOSP 10. Provides source code changes to mitigate the issue.

android-securitybinary-exploitationexploitation+2
14 years ago
delirium-ai-safety-benchmark preview

delirium-ai-safety-benchmark

GitLabtoxy4ny/delirium-ai-safety-benchmark

A diagnostic framework for measuring LLM vulnerability to Affective Contextual Erosion (ACE) and related liminal attack vectors. **Delirium** is not…

adversarial-attackai-securityeducation+2
11 month ago
irule-cve-2022-22965 preview

irule-cve-2022-22965

GitHubirgoncalves/irule-cve-2022-22965

F5 BIG-IP iRule providing mitigation against CVE-2022-22965 (Spring4Shell) remote code execution vulnerability in Java Spring Framework. Tested on…

exploitationids-ips-evasionmisconfiguration+3
24 years ago
supahunter preview

supahunter

GitHubproxydom/supahunter

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…

cloud-securitydatabase-securitydata-exfiltration+8
27 months ago
Quiksand-CVE-2023-24012 preview

Quiksand-CVE-2023-24012

GitHubsafelock-d2e/quiksand-cve-2023-24012

Proof-of-concept demonstrating a permission bypass in ROS 2 SROS2 security framework, allowing unauthorized topic subscription via modified…

embedded-systems-securityexploitationiot-security+3
26 months ago
SpringExploitGUI preview

SpringExploitGUI

GitHubsuperneilcn/springexploitgui

一款Spring综合漏洞的利用工具,工具目前支持Spring Cloud Gateway RCE(CVE-2022-22947)、Spring Framework RCE (CVE-2022-22965) 的检测以及利用

command-and-controlexploitationpayload-generation+3
2 years ago
Previous1…383940…50Next