Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
CVE-2022-30190-Analysis-With-LetsDefends-Lab preview

CVE-2022-30190-Analysis-With-LetsDefends-Lab

GitHubabdibimantara/cve-2022-30190-analysis-with-letsdefends-lab

this is my simple article about CVE 2022-30190 (Follina) analysis. I use the lab from Letsdefend.

ctfeducationexploitation+3
4 years ago
windows-smb-vulnerability-framework-cve-2025-33073 preview

windows-smb-vulnerability-framework-cve-2025-33073

GitHubsfrdevelopment/windows-smb-vulnerability-framework-cve-2025-33073

Research framework for CVE-2025-33073, a Windows SMB Client privilege escalation vulnerability. Provides malicious SMB server and client exploit…

exploitationexploit-frameworkspenetration-testing+2
610 months ago
CVE-2020-8597 preview

CVE-2020-8597

GitHubwinmin/cve-2020-8597

CVE-2020-8597 pppd buffer overflow poc

binary-exploitationexploitationfuzzing+3
486 years ago
CVE-2024-22120-RCE-with-gopher preview

CVE-2024-22120-RCE-with-gopher

GitHubg4nkd/cve-2024-22120-rce-with-gopher

This exploit was created to exploit an XXE (XML External Entity). Through it, I read the backend code of the web service and found an endpoint where…

exploitationpenetration-testingreconnaissance+3
32 years ago
DoSTool preview

DoSTool

GitHubparallelvisions/dostool

DDoS Tool which exploits vulnerability CVE-2004-2449 from vendor GameSpy (now known as OpenSpy). User is prompted for input IP address, and port.…

exploitationpenetration-testingred-teaming+1
23 years ago
CVE-2020-0688-Python3 preview

CVE-2020-0688-Python3

GitHub1337-llama/cve-2020-0688-python3

Exploit updated to use Python 3.

exploitationpayload-generationpenetration-testing+2
22 years ago
CVE-2025-36911-Wisper_Pair_Target_Finder preview

CVE-2025-36911-Wisper_Pair_Target_Finder

GitHubsteampunk424/cve-2025-36911-wisper_pair_target_finder

This is not an exploit for CVE-2025-36911!!! This is a detector for finding potentially vulnerable devices! Only use on your own devices! I am not…

bluetooth-securityhardware-securityinformation-gathering+3
27 months ago
JailedCement preview

JailedCement

GitHubiswaxan/jailedcement

Simple iOS bootlooper using CVE-2022-46689. Desguised as onlyfans

exploitationios-securitymobile-security+2
3 years ago
CVE-2017-5638 preview

CVE-2017-5638

GitHubjongmartinez/cve-2017-5638

PoC for CVE: 2017-5638 - Apache Struts2 S2-045

exploitationpayload-generationpenetration-testing+2
15 years ago
CVE-2017-1000486 preview

CVE-2017-1000486

GitHubpimps/cve-2017-1000486

Primefaces <= 5.2.21, 5.3.8 or 6.0 - Remote Code Execution Exploit

exploitationpayload-generationpenetration-testing+3
952 years ago
CVE-2019-9053 preview

CVE-2019-9053

GitHubbjarneverschorre/cve-2019-9053

Python script that exploits CVE-2019-9053, a SQL injection vulnerability in CMS Made Simple, to extract data from the database.

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2020-9273 preview

CVE-2020-9273

GitHubdukptkey/cve-2020-9273

Analysis and exploitation of an use-after-free in ProFTPd

binary-exploitationexploitationfuzzing+2
143 years ago
CVE-2022-41099-Fix preview

CVE-2022-41099-Fix

GitHubo0matte0o/cve-2022-41099-fix

Update WINRE.WIM file to fix CVE-2022-41099

configuration-auditinggeneral-purpose-utilitiesscripting-automation+2
33 years ago
CVE-2023-51385- preview

CVE-2023-51385-

GitHubthinkliving2020/cve-2023-51385-

CVE-2023-51385

command-and-controleducationexploitation+3
2 years ago
CVE-2020-8165 preview

CVE-2020-8165

GitHubtaipansec/cve-2020-8165

Automated Python exploit script for CVE-2020-8165, eliminating manual Burp and Curl usage during web application vulnerability testing.

exploitationpenetration-testingscripting-automation+2
5 years ago