Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
200 results
privacy-parser preview

privacy-parser

GitHubchiefautism/privacy-parser

Reverse of OpenAI Privacy Filter: same 1.5B model, returns PII as structured spans instead of masking.

data-exfiltrationinformation-gatheringmachine-learning+5
402
4 months ago
CVE-2020-16938 preview

CVE-2020-16938

GitHubioncodes/cve-2020-16938

Bypassing NTFS permissions to read any files as unprivileged user.

data-exfiltrationexploitationforensics+2
1925 years ago
CVE-2026-15409 preview

CVE-2026-15409

GitHubch4120n/cve-2026-15409

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…

data-exfiltrationexploitationpenetration-testing+4
320 days ago
CVE-2026-24849 preview

CVE-2026-24849

GitHubdoany1/cve-2026-24849

Proof-of-concept exploit for CVE-2026-24849, an authenticated path-traversal / arbitrary file read in OpenEMR's Fax/SMS (EtherFax) module. Any…

data-exfiltrationexploitationinformation-gathering+3
2 months ago
libreoffice-remote-arbitrary-file-disclosure preview

libreoffice-remote-arbitrary-file-disclosure

GitHubjollheef/libreoffice-remote-arbitrary-file-disclosure

Proof of concept of LibreOffice remote arbitrary file disclosure vulnerability

data-exfiltrationexploitationinformation-gathering+1
968 years ago
CVE-2025-24104 preview

CVE-2025-24104

GitHubifpdz/cve-2025-24104
binary-exploitationdata-exfiltrationexploitation+4
521 year ago
CVE-2021-45067 preview

CVE-2021-45067

GitHubhacksysteam/cve-2021-45067

Adobe Reader DC Information Leak Exploit

binary-exploitationdata-exfiltrationexploitation+3
233 years ago
Apache-OFBiz-Directory-Traversal-exploit preview

Apache-OFBiz-Directory-Traversal-exploit

GitHubabsholi7ly/apache-ofbiz-directory-traversal-exploit
data-exfiltrationexploitationpenetration-testing+3
162 years ago
CVE-2017-18345-COM_JOOMANAGER-ARBITRARY-FILE-DOWNLOAD preview

CVE-2017-18345-COM_JOOMANAGER-ARBITRARY-FILE-DOWNLOAD

GitHubluth1er/cve-2017-18345-com_joomanager-arbitrary-file-download

The Joomanager component through 2.0.0 for Joomla! has an Arbitrary File Download issue, resulting in exposing the Credentials of the DataBase.

data-exfiltrationexploitationinformation-gathering+3
77 years ago
mailorder preview

mailorder

GitHubmonoxgas/mailorder

Nalpeiron Licensing Service (NLSSRV32) arbitrary disk read [CVE-2019-19315]

binary-exploitationdata-exfiltrationexploitation+2
46 years ago
cve-2026-54316-lab preview

cve-2026-54316-lab

GitHubinertfluid/cve-2026-54316-lab

Reproduction lab for CVE-2026-54316 (Claude Code WebFetch huggingface.co bare-hostname permission bypass / exfiltration)

ctfdata-exfiltrationeducation+5
2 months ago
node-ipc-malware-protestware-CVE-2022-23812 preview

node-ipc-malware-protestware-CVE-2022-23812

GitHubscriptzteam/node-ipc-malware-protestware-cve-2022-23812

node-ipc is malware / protestware!

data-exfiltrationeducationincident-response+3
14 years ago
CVE-2021-44228-docker-example preview

CVE-2021-44228-docker-example

GitHubdicanio/cve-2021-44228-docker-example
data-exfiltrationeducationexploitation+3
14 years ago
SMB-PenTest-Exploiting-CVE-2007-2447-on-Metasploitable-2 preview

SMB-PenTest-Exploiting-CVE-2007-2447-on-Metasploitable-2

GitHubdevinliggins14/smb-pentest-exploiting-cve-2007-2447-on-metasploitable-2
command-and-controldata-exfiltrationeducation+6
1 year ago
MAL-014 preview

MAL-014

GitHubmbadanoiu/mal-014

MAL-014: Authenticated Arbitrary File Read in VMware vCenter Server

data-exfiltrationexploitationpenetration-testing+2
1 year ago
CVE-2026-42527 preview

CVE-2026-42527

GitHuboscerd/cve-2026-42527

Reproducer for CVE-2026-42527 — Apache Camel permissive default ObjectInputFilter admits java.net.URL, enabling a DNS-based out-of-band side channel

data-exfiltrationdns-analysisexploitation+3
1 month ago
CVE-2026-7070-RDP-Clipboard-Hijacking-via-Virtual-Channel-Injection preview

CVE-2026-7070-RDP-Clipboard-Hijacking-via-Virtual-Channel-Injection

GitHubgeorge0papasotiriou/cve-2026-7070-rdp-clipboard-hijacking-via-virtual-channel-injection
adversarial-attackdata-exfiltrationexploitation+3
21 days ago
pyWhat preview

pyWhat

GitHubbee-san/pywhat

🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it…

data-exfiltrationeducationforensics+7
7.3k3 years ago
Previous12…12Next