Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
388 results
web2py-e94946d-CVE-2016-3957 preview

web2py-e94946d-CVE-2016-3957

GitHubsj/web2py-e94946d-cve-2016-3957

web2py/web2py @ e94946d

authenticationcode-analysisdatabase-security+3
7 years ago
Joomla-CMS-Full-Lifecycle-Pentest preview

Joomla-CMS-Full-Lifecycle-Pentest

GitHubmarwan651/joomla-cms-full-lifecycle-pentest

A comprehensive full-lifecycle penetration testing project on Joomla 4.2.5 exploiting CVE-2023-23752 inside a Dockerized lab environment

educationexploitationinformation-gathering+7
4 months ago
kubescape preview

kubescape

GitHubkubescape/kubescape

Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

cloud-infrastructure-securitycloud-securityconfiguration-auditing+6
11.8k1 day ago
CVE-2025-68613-POC preview

CVE-2025-68613-POC

GitHubthestingr/cve-2025-68613-poc

Public PoC + Scanner and research for CVE-2025-68613: Critical RCE in n8n Workflow Automation via Expression Injection (CVSS 10.0). Includes…

educationexploitationinformation-gathering+8
299 months ago
CVE-2025-25347 preview

CVE-2025-25347

GitHubyetazyyy/cve-2025-25347

Exploit scanner for CVE-2025-25347, an unauthenticated RCE in QingLong Panel, allowing arbitrary command execution and full server takeover.

educationexploitationpenetration-testing+2
6 months ago
web-check preview

web-check

GitHublissy93/web-check

🕵️‍♂️ All-in-one OSINT tool for analysing any website

dns-analysisemail-harvestinginformation-gathering+10
35.1k3 days ago
wordpress-CVE-2024-10924--exploit preview

wordpress-CVE-2024-10924--exploit

GitHubmaleeshaudan/wordpress-cve-2024-10924--exploit

WordPress CVE-2024-10924 Exploit for Really Simple Security plugin

authentication-authorizationexploitationpenetration-testing+3
11 year ago
GitHacker preview

GitHacker

GitHubwangyihang/githacker

🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.

information-gatheringpenetration-testingreconnaissance+2
1.7k1 month ago
ps-ppl-bypass preview

ps-ppl-bypass

GitHubr41n3rzuf477/ps-ppl-bypass

Process Explorer vulnerable driver PPL Bypass

binary-exploitationdefensive-toolsexploitation+5
258 days ago
CVE-2024-44812-PoC preview

CVE-2024-44812-PoC

GitHubb1u3st0rm/cve-2024-44812-poc

Proof of Concept Exploit for CVE-2024-44812 - SQL Injection Authentication Bypass vulnerability in Online Complaint Site v1.0

authentication-authorizationexploitationpassword-attacks+3
2 years ago
signalops preview

signalops

GitHubemrekybs/signalops

All-source intelligence fusion dashboard — WiFi, cellular, CCTV, ADS-B, orbital & SDR feeds unified into a single tactical map. Security research…

ai-securitycrawlerinformation-gathering+8
32 months ago
CVE-2019-9053 preview

CVE-2019-9053

GitHube-renna/cve-2019-9053

CVE-2019-9053 Exploit for Python 3

exploitationpassword-attackspenetration-testing+2
113 years ago
CVE-2025-10658 preview

CVE-2025-10658

GitHubjfriedli/cve-2025-10658

Python exploit script for CVE-2025-10658: brute-forces 6-digit OTP in WordPress SupportCandy guest login to achieve full account takeover via…

authenticationexploitationpassword-attacks+3
16 months ago
ESFileExplorerOpenPortVuln preview

ESFileExplorerOpenPortVuln

GitHubfs0c131y/esfileexploreropenportvuln

ES File Explorer Open Port Vulnerability - CVE-2019-6447

android-securitydata-exfiltrationexploitation+5
6797 years ago
CVE-2026-55579 preview

CVE-2026-55579

GitHubch4120n/cve-2026-55579

CVE-2026-55579 – Unauthenticated RCE in Pheditor via hardcoded default password "admin". Full Python exploit with file upload & terminal execution.…

educationexploitationlabs-practice+6
12 months ago
CVE-2022-30190-Follina-Lab preview

CVE-2022-30190-Follina-Lab

GitHubu1tr0nex/cve-2022-30190-follina-lab

Full exploit chain lab and Suricata IDS detection for CVE-2022-30190 (Follina) - MSDT RCE

command-and-controleducationexploitation+7
5 months ago
Agentic-SOC-Simulation preview

Agentic-SOC-Simulation

GitHubsafelineman/agentic-soc-simulation

AI 驱动的 SOC 仿真平台

ai-securityeducationforensics+8
1679 months ago
openwrt preview

openwrt

GitHubopenwrt/openwrt

Linux operating system for embedded devices with writable filesystem, package management, and build framework. Enables custom firmware creation for…

educationembedded-systems-securityfirmware-analysis+7
28.7k11 days ago
Previous12…22Next