Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
103 results
gitlab-cve-2026-85706-ioc preview

gitlab-cve-2026-85706-ioc

GitHubjithinkrishnanrs/gitlab-cve-2026-85706-ioc

CVE-2026-85706 — GitLab Path Traversal IOC Scanner & Detection Toolkit. Detect and hunt for exploitation of the critical unauthenticated GitLab CE/EE…

defensive-toolsincident-responseinformation-gathering+8
1
23 days ago
LeakLooker preview
Archived

LeakLooker

GitHubwoj-ciech/leaklooker

Find open databases - Powered by Binaryedge.io

cloud-securitydatabase-securityinformation-gathering+5
1.5k6 years ago
malicious-devfile-registry preview

malicious-devfile-registry

GitHubdoyensec/malicious-devfile-registry

CVE-2024-0402 exploit for GitLab Workspaces using a malicious Devfile Registry with path-traversal archive to overwrite authorized_keys and gain SSH…

exploitationpenetration-testingred-teaming+3
151 year ago
gitlab-cve-2026-19478-lab preview

gitlab-cve-2026-19478-lab

GitHubdinosn/gitlab-cve-2026-19478-lab

Reproducible A/B lab + safe PoC for GitLab CVE-2026-19478 / CVE-2026-19650 (GraphQL @gl_introduced)

api-security-testingexploitationlabs-practice+4
111 month ago
GitLab-CVE-2021-22205- preview

GitLab-CVE-2021-22205-

GitHubrunsel/gitlab-cve-2021-22205-

Exploit for GitLab CVE-2021-22205 Unauthenticated Remote Code Execution

exploitationpenetration-testingremote-access-tool+2
34 years ago
CVE-2020-10977 preview

CVE-2020-10977

GitHubkooroshrz/cve-2020-10977

Exploit for "GitLab Instance" Arbitrary server file read vulnerability

exploitationinformation-gatheringpenetration-testing+2
46 years ago
CVE-2023-7028 preview

CVE-2023-7028

GitHubthanhlam-attt/cve-2023-7028

Exploit for GitLab account takeover via CVE-2023-7028, demonstrating password reset bypass by injecting attacker email to receive reset token.

authenticationexploitationpenetration-testing+2
22 years ago
gitlab-exploit preview

gitlab-exploit

GitHubhackeremmen/gitlab-exploit

Exploit for GitLab CVE-2023-7028: password reset bypass via dual email verification, allowing unauthorized account takeover. Includes affected…

authenticationexploitationpassword-attacks+3
12 years ago
cve-2021-22205-GitLab-13.10.2---Remote-Code-Execution-RCE-Unauthenticated- preview

cve-2021-22205-GitLab-13.10.2---Remote-Code-Execution-RCE-Unauthenticated-

GitHubmomika233/cve-2021-22205-gitlab-13.10.2---remote-code-execution-rce-unauthenticated-

Unauthenticated remote code execution exploit for GitLab 13.10.2 targeting CVE-2021-22205, enabling arbitrary command execution on vulnerable…

exploitationpenetration-testingred-teaming+2
14 years ago
CVE-2022-1175 preview

CVE-2022-1175

GitHubgreenwolf/cve-2022-1175

Proof-of-concept exploit for GitLab stored XSS (CVE-2022-1175) enabling personal access token theft and account takeover via malicious issue comments.

exploitationinformation-gatheringpenetration-testing+3
14 years ago
CVE-2020-10977.py preview

CVE-2020-10977.py

GitHubjustmichi/cve-2020-10977.py

authenticated arbitrary file read for Gitlab (CVE-2020-10977)

exploitationinformation-gatheringpenetration-testing+2
5 years ago
Gitlab-CVE-2021-22205 preview

Gitlab-CVE-2021-22205

GitHubmr-r3bot/gitlab-cve-2021-22205

Unauthenticated remote code execution exploit for GitLab versions < 13.10.3, leveraging ExifTool DjVu annotation parsing to execute arbitrary…

educationexploitationpenetration-testing+2
1814 years ago
sast-rules preview

sast-rules

GitLabgitlab-org/security-products/sast-rules

Curated Semgrep rule repository for GitLab SAST, providing static analysis patterns to detect security vulnerabilities across multiple programming…

code-analysisdevsecopseducation+2
3015 days ago
CVE-2024-32002 preview

CVE-2024-32002

GitHubdaemon-reconfig/cve-2024-32002

Generates reverse shell payloads targeting the GitLab-shell vulnerability CVE-2024-32002 for exploitation testing.

exploitationpayload-generationpenetration-testing+2
2 years ago
GitLab-preauth-RCE_CVE-2021-22205 preview

GitLab-preauth-RCE_CVE-2021-22205

GitHubfindneo/gitlab-preauth-rce_cve-2021-22205

PoC in single line bash

exploitationpayload-generationpenetration-testing+3
24 years ago
CVE-2021-22205 preview

CVE-2021-22205

GitHubkeven1z/cve-2021-22205

Python exploit script for CVE-2021-22205 (GitLab RCE) with command execution and reverse shell capabilities. Supports one-click getshell for…

command-and-controlexploitationpayload-generation+3
124 years ago
CVE-2026-85706-PoC-Toolkit preview

CVE-2026-85706-PoC-Toolkit

GitHubtc4dy/cve-2026-85706-poc-toolkit

Python toolkit for CVE-2026-85706 GitLab unauth file read: weaponized exploit with loot, shell, mass scan, plus non-intrusive SafeChecker audit and…

defensive-toolsexploitationinformation-gathering+7
118 days ago
cve-2026-19478 preview

cve-2026-19478

GitHubn0xdaemon/cve-2026-19478

Provides PoC exploits and root-cause analysis for two GitLab GraphQL `@gl_introduced` directive vulnerabilities: unauthenticated method execution and…

api-security-testingexploitationvulnerability-analysis+2
1 month ago
Previous123456Next