Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
139 results
CVE-2020-1472 preview

CVE-2020-1472

GitHubdr4g0n23/cve-2020-1472

Exploit script for CVE-2020-1472 (ZeroLogon) with automated privilege escalation, credential dumping via secretsdump, and lateral movement using…

exploitationlateral-movementpenetration-testing+3
3 years ago
R7000_httpd_BOF_CVE-2020-15416 preview

R7000_httpd_BOF_CVE-2020-15416

GitHubk3vinlusec/r7000_httpd_bof_cve-2020-15416

Walkthrough of CVE-2020-15416 buffer overflow exploit for Netgear R7000 router, including QEMU user-mode debugging environment setup and detailed…

binary-exploitationeducationembedded-systems-security+5
5 years ago
CVE-2024-49368 preview

CVE-2024-49368

GitHubaashay221999/cve-2024-49368

Explorations of CVE-2024-49368 + Exploit Development

command-and-controleducationexploitation+3
1 year ago
CVE-2024-43919 preview

CVE-2024-43919

GitHubrandomrobbiebf/cve-2024-43919

YARPP <= 5.30.10 - Missing Authorization

exploitationmisconfigurationpenetration-testing+3
1 year ago
PoC-CVE-2022-4939- preview

PoC-CVE-2022-4939-

GitHubbaconcricri/poc-cve-2022-4939-

Proof-of-concept exploit for CVE-2022-4939, a WordPress plugin vulnerability allowing privilege escalation to administrator via crafted AJAX request.

exploitationpenetration-testingprivilege-escalation+2
3 years ago
CVE-2021-44228---detection-with-PowerShell preview

CVE-2021-44228---detection-with-PowerShell

GitHubintel-xeon/cve-2021-44228---detection-with-powershell

PowerShell-based scanner to detect Log4j CVE-2021-44228 vulnerability by searching directories and log files for exploitation indicators.

information-gatheringlog-analysisscripting-automation+2
4 years ago
CVE-2015-1855 preview

CVE-2015-1855

GitHubvpereira/cve-2015-1855

poc for CVE-2015-1855

code-analysiseducationexploitation+2
9 years ago
CVE-2025-25749-Weak-Password-Policy-in-HotelDruid-3.0.7 preview

CVE-2025-25749-Weak-Password-Policy-in-HotelDruid-3.0.7

GitHubhuyvo2910/cve-2025-25749-weak-password-policy-in-hoteldruid-3.0.7

Proof-of-concept for CVE-2025-25749 demonstrating weak password policy in HotelDruid 3.0.7, with automated test scripts and mitigation…

authenticationeducationpassword-attacks+3
1 year ago
CVE-2022-37201 preview

CVE-2022-37201

GitHubagainstthelight/cve-2022-37201

CVE-2022-37201 POC

exploitationpenetration-testingvulnerability-analysis+1
4 years ago
Detect-CVE-2019-19781 preview

Detect-CVE-2019-19781

GitHubcastaldio86/detect-cve-2019-19781

Detects if a server is vulnerable to CVE-2019-19781 by checking a specified IP address, providing a quick security assessment for this known…

information-gatheringnetwork-securityreconnaissance+2
6 years ago
CVE-2021-34824 preview

CVE-2021-34824

GitHubrsalmond/cve-2021-34824

reproducing an old istio bug

cloud-securityeducationlabs-practice+2
3 years ago
BrokenType preview
Archived

BrokenType

GitHubgoogleprojectzero/brokentype

TrueType and OpenType font fuzzing toolset

binary-analysisexploitationfuzzing+1
4357 years ago
CVE-2026-100740 preview

CVE-2026-100740

GitHubmurrez/cve-2026-100740

Python PoC for CVE-2026-100740, an L2TP Host Name AVP out-of-bounds write in D-Link DIR-895L A1_102b07 tunnel_set_params. Fingerprints the device and…

embedded-systems-securityexploitationfirmware-analysis+6
110 days ago
Previous1…78Next