Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
241 results
CVE-2022-40348_Intern-Record-System-Cross-site-Scripting-V1.0-Vulnerability-Unauthenticated preview

CVE-2022-40348_Intern-Record-System-Cross-site-Scripting-V1.0-Vulnerability-Unauthenticated

GitHubh4md153v63n/cve-2022-40348_intern-record-system-cross-site-scripting-v1.0-vulnerability-unauthenticated

CVE-2022-40348: Intern Record System - 'name' and 'email' Cross-site Scripting (Unauthenticated)

exploitationpenetration-testingvulnerability-analysis+2
3
2 years ago
CVE-2023-5561-POC-Updated preview

CVE-2023-5561-POC-Updated

GitHubrootxsushant/cve-2023-5561-poc-updated

Updated POC for Unauth Post Author Email Disclosures WordPress CVE-2023-5561

exploitationinformation-gatheringpenetration-testing+2
31 year ago
proofpoint-CVE-2023-0089 preview

proofpoint-CVE-2023-0089

GitHubly1g3/proofpoint-cve-2023-0089

Proofpoint Email Gateway: Low level authenticated user to admin RCE

command-and-controlexploitationpayload-development+3
11 month ago
cisco-CVE-2023-20075 preview

cisco-CVE-2023-20075

GitHubly1g3/cisco-cve-2023-20075

Cisco Email Security Appliance: Local Privilege Escalation and Shell Escape

exploitationpenetration-testingpost-exploitation+3
11 month ago
proofpoint-CVE-2023-0090 preview

proofpoint-CVE-2023-0090

GitHubly1g3/proofpoint-cve-2023-0090

Proofpoint Email Gateway: Unauthenticated RCE

exploitationpenetration-testingremote-access-tool+2
11 month ago
cisco-CVE-2023-20009 preview

cisco-CVE-2023-20009

GitHubly1g3/cisco-cve-2023-20009

Cisco Email Security Appliance: Remote Code Execution - RCE from config file

exploitationpenetration-testingprivilege-escalation+3
11 month ago
CVE-2022-0439 preview

CVE-2022-0439

GitHubrandomrobbiebf/cve-2022-0439

CVE-2022-0439 - Email Subscribers & Newsletters < 5.3.2 - Subscriber+ Blind SQL injection

exploitationpassword-attackspenetration-testing+2
13 years ago
CVE-2019-0708-Tool preview

CVE-2019-0708-Tool

GitHubsqldebugger/cve-2019-0708-tool

50 first stargazers will get get the tool via email

exploitationpenetration-testingred-teaming+2
7 years ago
CVE-2021-24959 preview

CVE-2021-24959

GitHubrandomrobbiebf/cve-2021-24959

WP Email Users <= 1.7.6 - SQL Injection

exploitationinformation-gatheringpenetration-testing+2
11 year ago
Reflected-XSS-in-Vvveb-CMS-v1.0.7.2 preview

Reflected-XSS-in-Vvveb-CMS-v1.0.7.2

GitHubhelloandrewpaul/reflected-xss-in-vvveb-cms-v1.0.7.2

CVE-2025-9728: Reflected XSS in Login Form (Email & Password Fields) Vvveb CMS v1.0.7.2

educationpapers-researchphishing+3
11 months ago
CVE-2025-66956 preview

CVE-2025-66956

GitHubthewoodenbench/cve-2025-66956

Insecure Access Control in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote attackers to access and execute…

exploitationinformation-gatheringreconnaissance+2
6 months ago
CVE-2025-66955 preview

CVE-2025-66955

GitHubthewoodenbench/cve-2025-66955

Local File Inclusion in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote authenticated users to access files on the…

exploitationinformation-gatheringpenetration-testing+2
8 months ago
CVE-2024-4295-Poc preview

CVE-2024-4295-Poc

GitHubtghook/cve-2024-4295-poc

CVE-2024-4295 Email Subscribers by Icegram Express <= 5.7.20 - Unauthenticated SQL Injection via hash

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CMS-Made-Simple-2.2.9-Unauthenticated-SQL-Injection-Exploit-CVE-2019-9053- preview

CMS-Made-Simple-2.2.9-Unauthenticated-SQL-Injection-Exploit-CVE-2019-9053-

GitHubhf3cyber/cms-made-simple-2.2.9-unauthenticated-sql-injection-exploit-cve-2019-9053-

This exploit targets an unauthenticated SQL injection vulnerability in CMS Made Simple <= 2.2.9 (CVE-2019-9053). It uses a time-based blind SQL…

exploitationinformation-gatheringpassword-cracking+3
1 year ago
CVE-2023-49546 preview

CVE-2023-49546

GitHubgeraldoalcantara/cve-2023-49546

Customer Support System 1.0 - SQL Injection Vulnerability in the "email" Parameter During "save_staff" Operation

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2019-11395 preview

CVE-2019-11395

GitHubcaioprince/cve-2019-11395

A exploit for the CVE-2019-11395 vulnerability in the MailCarrier 2.51 email application, enabling remote code execution.

binary-exploitationexploitationpayload-generation+3
2 years ago
CVE-2023-6444-POC preview

CVE-2023-6444-POC

GitHubwayne-ker/cve-2023-6444-poc

Proof of concept on Unauthenticated Administrator Email Disclosure CVE-2023-6444

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2025-25965 preview

CVE-2025-25965

GitHubsudo-sakib/cve-2025-25965

CVE-2025-25965 is a newly discovered CSRF vulnerability in the Phpgurukul Online Banquet Booking System v1.2, allowing remote attackers to change a…

educationpenetration-testingvulnerability-analysis+2
1 year ago
Previous1…456…14Next