Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
45 results
thm-ice-icecast-rce-privesc preview

thm-ice-icecast-rce-privesc

GitHubmonseigneurpatas/thm-ice-icecast-rce-privesc

Full compromise of TryHackMe's Ice machine — Icecast 2.0.1 RCE (CVE-2004-1561) via buffer overflow, followed by Windows privilege escalation through…

binary-exploitationctfeducation+5
2 months ago
CVE-2020-0728 preview

CVE-2020-0728

GitHubirsl/cve-2020-0728

Proof-of-concept exploit for CVE-2020-0728 demonstrating local privilege escalation via Windows TrustedInstaller COM service abuse to bypass file…

binary-exploitationexploitationpost-exploitation+2
466 years ago
CVE-2015-6132 preview

CVE-2015-6132

GitHubhexx0r/cve-2015-6132

Microsoft Office / COM Object DLL Planting

binary-exploitationexploitationpayload-development+2
1510 years ago
analise-vulnerabilidades-zabbix-notebooklm preview

analise-vulnerabilidades-zabbix-notebooklm

GitHubrichjj98/analise-vulnerabilidades-zabbix-notebooklm

Caderno Temático NotebookLM: análise de vulnerabilidades SQL Injection (CVE-2024-42327, CVE-2026-23921) no Zabbix, com engenharia de prompts, cadeia…

educationpenetration-testingvulnerability-analysis+1
2 months ago
poc-CVE-2019-9053 preview

poc-CVE-2019-9053

GitHubrideckszz/poc-cve-2019-9053

PoC didático em Python 3 para a CVE-2019-9053, uma SQL Injection time-based blind no CMS Made Simple <= 2.2.9. Esta versão foi adaptada para uso em…

ctfeducationlabs-practice+3
12 months ago
Scanner_CVE_OpenSSH preview

Scanner_CVE_OpenSSH

GitHuboseasfr/scanner_cve_openssh

Scanner para identificação de servidores com softwares SSH possivelmente vulnerável às CVEs CVE-2024-6387 e CVE-2023-48795.

information-gatheringnetwork-securitypenetration-testing+3
13 months ago
Estudo-de-Caso-CVE-2024-21413 preview

Estudo-de-Caso-CVE-2024-21413

GitHubpedro-lucas-melo/estudo-de-caso-cve-2024-21413

Um estudo de caso do CVE-2024-21413. Usado como parâmetro a sala do TryHackMe Moniker Link (CVE-2024-21413). Feito edições com claude code no exploit.

ctfeducationemail-security+6
5 months ago
cve-2021-3156-sudo-lab preview

cve-2021-3156-sudo-lab

GitHubvilmartuminskii/cve-2021-3156-sudo-lab

Projeto educacional desenvolvido em Python com foco na análise da vulnerabilidade CVE-2021-3156 (Baron Samedit), uma falha crítica no sudo que…

educationexploitationpenetration-testing+3
8 months ago
CVE-2017-0213 preview

CVE-2017-0213

GitHubanonymous-family/cve-2017-0213

Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows…

binary-exploitationexploitationprivilege-escalation+1
4 years ago
iot-vuln-lab-cve-2017-17761 preview

iot-vuln-lab-cve-2017-17761

GitHubmirellesilvajs/iot-vuln-lab-cve-2017-17761

Simulação educacional de exploração de falha em dispositivos IoT com base no CVE-2017-17761

educationembedded-systems-securityexploitation+3
1 year ago
Zulu preview

Zulu

GitHubnccgroup/zulu

The Zulu fuzzer

dynamic-analysis-sandboxingfuzzingvulnerability-analysis
1258 years ago
CVE-2021-23132 preview

CVE-2021-23132

GitHubhoangkien1020/cve-2021-23132

com_media allowed paths that are not intended for image uploads to RCE

educationexploitationpenetration-testing+2
715 years ago
FrisbeeLite preview

FrisbeeLite

GitHubnccgroup/frisbeelite

A GUI-based USB device fuzzer

dynamic-analysis-sandboxingembedded-systems-securityfuzzing+2
658 years ago
CVE-2026-66804-CrossDevice-Service-EoP preview

CVE-2026-66804-CrossDevice-Service-EoP

GitHubrat5ak/cve-2026-66804-crossdevice-service-eop

CVE-2026-66804 Windows Cross Device virtual camera EoP - Standard user to SYSTEM

educationexploitationpenetration-testing+3
2421 days ago
ncccodenavi preview

ncccodenavi

GitHubnccgroup/ncccodenavi

NCC Code Navigator

code-analysisinformation-gatheringstatic-code-analysis+2
5410 years ago
CVE-2025-10184_PoC preview

CVE-2025-10184_PoC

GitHubpeople-11/cve-2025-10184_poc

Android APK proof-of-concept for CVE-2025-10184, demonstrating SMS read permission bypass in OPPO/OnePlus telephony providers. Includes source code,…

android-securityexploitationmobile-security+3
5411 months ago
CVE-2026-48909 preview

CVE-2026-48909

GitHubis4yev/cve-2026-48909

Proof-of-concept exploit for CVE-2026-48909: unauthenticated remote code execution via PHP object injection in JoomShaper SP LMS. Includes detection,…

code-analysiseducationexploitation+4
231 month ago
EDIDFuzzer preview

EDIDFuzzer

GitHubnccgroup/edidfuzzer

EDID (Enhanced Display Identification Data) Fuzzer

binary-analysisembedded-systems-securityfuzzing+2
1912 years ago
Previous123Next