Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
118 results
CVE-2025-14783-POC preview

CVE-2025-14783-POC

GitHubzeroethical/cve-2025-14783-poc

🧨 CVE-2025-14783: Easy Digital Downloads Account Takeover PoC

educationexploitationpapers-research+4
2
7 months ago
CVE-2025-6218-WinRAR-RCE-POC preview

CVE-2025-6218-WinRAR-RCE-POC

GitHubchrxstxqn/cve-2025-6218-winrar-rce-poc

Comprehensive analysis and proof-of-concept for CVE-2025-6218 - WinRAR path traversal RCE vulnerability affecting versions 7.11 and earlier

binary-exploitationeducationexploitation+6
28 months ago
SuiteCRM-RCE preview

SuiteCRM-RCE

GitHubmcorybillington/suitecrm-rce

Writeup on CVE-2020-28328: SuiteCRM Log File Remote Code Execution plus some bonus Cross-Site Scripting

educationexploitationpapers-research+4
25 years ago
CVE-2026-48849-Roundcube-Webmail-Stored-XSS preview

CVE-2026-48849-Roundcube-Webmail-Stored-XSS

GitHubanandjogawade/cve-2026-48849-roundcube-webmail-stored-xss

This repository documents CVE-2026-48849, a Stored Cross-Site Scripting (XSS), HTML Injection, and CSS Injection vulnerability discovered in…

educationexploitationpapers-research+3
12 months ago
CVE-2021-22873-EXPLOIT preview

CVE-2021-22873-EXPLOIT

GitHubk3ystr0k3r/cve-2021-22873-exploit

A PoC exploit for CVE-2021-22873 - Revive Adserver Open Redirect Vulnerability.

educationexploitationpenetration-testing+3
23 years ago
CVE-2020-7247-POC preview

CVE-2020-7247-POC

GitHubsimonschoeni/cve-2020-7247-poc

Proof of concept for CVE-2020-7247 for educational purposes.

educationemail-securityexploitation+3
24 years ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubshndnth/cve-2022-30190

Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.

command-and-controleducationexploitation+8
4 months ago
CVE-2020-0601 preview

CVE-2020-0601

GitHubblueteamsteve/cve-2020-0601

Curated list of CVE-2020-0601 resources

cryptographycurated-resourceseducation+3
16 years ago
CVE-2025-52204 preview

CVE-2025-52204

GitHubj0qq3r/cve-2025-52204

CVE-2025-52204: Reflected XSS / HTML Injection in Znuny OTRS

educationpapers-researchvulnerability-analysis+2
4 months ago
HTB-Mailing-A-Complete-Walkthrough preview

HTB-Mailing-A-Complete-Walkthrough

GitHubthemursalin/htb-mailing-a-complete-walkthrough

If you've been grinding through HackTheBox machines, Mailing is one of those boxes that genuinely teaches you something. It's rated Easy, runs on…

ctfeducationexploitation+8
4 months ago
CVE-2026-24415 preview

CVE-2026-24415

GitHublukasz-rybak/cve-2026-24415

CVE-2026-24415 - OpenSTAManager Affected by XSS in modifica_iva.php via righe parameter

educationexploitationpenetration-testing+3
4 months ago
LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-21298 preview

LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-21298

GitHubc-g-creator/letsdefend-soc336-windows-ole-zero-click-rce-exploitation-detected-cve-2025-21298

LetsDefend SOC336 case study on CVE-2025-21298

ctfeducationemail-security+6
3 months ago
wordpress-rce-vapt-cve-2020-25213 preview

wordpress-rce-vapt-cve-2020-25213

GitHubcmadhushanka/wordpress-rce-vapt-cve-2020-25213

Educational cybersecurity project demonstrating exploitation and mitigation of CVE-2020-25213 (WordPress File Manager Plugin RCE). Includes malware…

educationexploitationlabs-practice+6
3 months ago
Estudo-de-Caso-CVE-2024-21413 preview

Estudo-de-Caso-CVE-2024-21413

GitHubpedro-lucas-melo/estudo-de-caso-cve-2024-21413

Um estudo de caso do CVE-2024-21413. Usado como parâmetro a sala do TryHackMe Moniker Link (CVE-2024-21413). Feito edições com claude code no exploit.

ctfeducationemail-security+6
4 months ago
Moniker-Link-Lab-Setup preview

Moniker-Link-Lab-Setup

GitHube-m-e-k-a/moniker-link-lab-setup

Penetration testing lab demonstrating CVE-2024-21413 moniker link exploitation for NTLM credential theft, including attack execution, hash cracking,…

authenticationeducationexploitation+6
5 months ago
Winrar-Exploit-CVE-2023-38831 preview

Winrar-Exploit-CVE-2023-38831

GitHublightningspeed221/winrar-exploit-cve-2023-38831

Winrar Exploit CVE-2023-38831

binary-exploitationeducationexploitation+3
3 months ago
CVE-2023-37190 preview

CVE-2023-37190

GitHubsahiloj/cve-2023-37190

A Stored Cross-Site Scripting (XSS) vulnerability exists in Issabel-PBX version 4.0.0-6. The application fails to properly sanitize and encode…

educationexploitationpapers-research+3
16 months ago
CVE-2023-33731 preview

CVE-2023-33731

GitHubsahiloj/cve-2023-33731

A Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the eScan Management Console (version 14.0.1400.2281) developed by Microworld…

educationpapers-researchpenetration-testing+3
16 months ago
Previous1234567Next