Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
21 results
s3cXSSer preview

s3cXSSer

GitHubs3c-krd/s3cxsser

This extension will help you to detect GET/POST based XSS vulnerability in any website easily

penetration-testingvulnerability-analysisweb-security+1
245
3 years ago
CVE-2025-0054 preview

CVE-2025-0054

GitHubz3usx01/cve-2025-0054
educationpenetration-testingvulnerability-analysis+2
1 year ago
WordPress-File-Upload-4.24.11---Unauthenticated-Path-Traversal preview

WordPress-File-Upload-4.24.11---Unauthenticated-Path-Traversal

GitHubamirqusairy99/wordpress-file-upload-4.24.11---unauthenticated-path-traversal

CVE-2024-9047

exploitationinformation-gatheringpenetration-testing+2
9 months ago
CVE-2026-3629 preview

CVE-2026-3629

GitHubpysectools/cve-2026-3629

WordPress Privilege Escalation Checker

exploitationpenetration-testingprivilege-escalation+3
93 months ago
0-click-RCE-Exploit-for-CVE-2024-50526 preview

0-click-RCE-Exploit-for-CVE-2024-50526

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-50526

Unauthenticated 0-click RCE exploit for CVE-2024-50526. Exploits an arbitrary file upload vulnerability in a vulnerable WordPress form plugin to…

exploitationpayload-generationpenetration-testing+5
37 months ago
0-click-RCE-Exploit-for-CVE-2024-9932 preview

0-click-RCE-Exploit-for-CVE-2024-9932

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-9932

Unauthenticated 0-click RCE exploit for CVE-2024-9932. Exploits an arbitrary file upload vulnerability in the Wux Blog Editor WordPress plugin to…

code-analysisexploitationpayload-development+5
27 months ago
0-click-RCE-Exploit-for-CVE-2024-50498 preview

0-click-RCE-Exploit-for-CVE-2024-50498

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-50498

Unauthenticated 0-click RCE exploit for CVE-2024-50498. Exploits a code injection vulnerability in the LUBUS WP Query Console plugin to execute…

exploitationpayload-generationpenetration-testing+5
17 months ago
0-click-RCE-Exploit-for-CVE-2024-51791 preview

0-click-RCE-Exploit-for-CVE-2024-51791

GitHubjoshuaprovoste/0-click-rce-exploit-for-cve-2024-51791

Unauthenticated 0-click RCE exploit for CVE-2024-51791. Exploits an arbitrary file upload vulnerability in a vulnerable WordPress forms plugin to…

exploitationpayload-developmentpenetration-testing+3
17 months ago
ExploitVeer preview

ExploitVeer

GitHubcyberleelawat/exploitveer

An advanced, powerful, and easy-to-use tool designed to detect and exploit CVE-2025-5777 (CitrixBleed 2). This script not only identifies the…

exploitationinformation-gatheringpenetration-testing+3
31 year ago
CVE-2024-27198-SOC-Lab preview

CVE-2024-27198-SOC-Lab

GitHubptd200110/cve-2024-27198-soc-lab
educationexploitationids-ips-evasion+7
22 months ago
CVE-2019-1003000_RCE-DETECTION preview

CVE-2019-1003000_RCE-DETECTION

GitHub1nthekut/cve-2019-1003000_rce-detection

A C# module to detect if a Jenkins server is vulnerable to the RCE vulnerability found in CVE-2019-1003000 (chained with CVE-2018-1000861 for…

exploitationinformation-gatheringpenetration-testing+3
47 years ago
CVE-2023-5961 preview

CVE-2023-5961

GitHubhadesscs/cve-2023-5961

moxa ioLogik E1212

educationexploitationinformation-gathering+3
12 years ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubtinashelorenzi/cve-2025-55182
educationexploitationintrusion-detection+6
8 months ago
CVE-2022-39073 preview

CVE-2022-39073

GitHubv0lp3/cve-2022-39073

Proof of concept for the command injection vulnerability affecting the ZTE MF286R router, including an RCE exploit.

command-and-controlexploitationiot-security+3
103 years ago
BugId preview

BugId

GitHubskylined/bugid

Detect, analyze and uniquely identify crashes in Windows applications

binary-analysisdebuggersdynamic-code-analysis+2
5251 year ago
CVE-2024-4577-Nuclei-Template preview

CVE-2024-4577-Nuclei-Template

GitHubhuseyinstif/cve-2024-4577-nuclei-template
exploitationpenetration-testingvulnerability-analysis+3
222 years ago
CVE-2025-53770-Scanner preview

CVE-2025-53770-Scanner

GitHub0xkr1x/cve-2025-53770-scanner

🎯 Vulnerability scanner for SharePoint servers affected by CVE-2025-53770. Detects unsafe deserialization using ToolPane.aspx with a crafted…

exploitationpenetration-testingvulnerability-analysis+3
21 year ago
Open-Redirect-Finder preview

Open-Redirect-Finder

GitHubjenderal92/open-redirect-finder

Open Redirect Finder is an automation tool used to detect open redirect vulnerabilities on a URL.

penetration-testingvulnerability-analysisvulnerability-scanners+2
2 months ago
Previous12Next