Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
439 results
GoEnumerator preview

GoEnumerator

GitLabrek2/goenumerator

A personal tool in GO for my usual first enumeration steps on a target

exploit-frameworksinformation-gatheringpenetration-testing+3
17 years ago
CVE-2021-43008-AdminerRead preview

CVE-2021-43008-AdminerRead

GitHubp0dalirius/cve-2021-43008-adminerread

Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability

exploitationinformation-gatheringpenetration-testing+3
852 years ago
Log4j-Exploit-CVE-2021-44228 preview

Log4j-Exploit-CVE-2021-44228

GitHubwillian-2-0-0-1/log4j-exploit-cve-2021-44228

Exploit tool for CVE-2021-44228 (Log4Shell) that sets up a malicious LDAP server and delivers a Java payload to achieve remote code execution on…

command-and-controlexploitationpayload-generation+3
4 years ago
CVE-2026-41940 preview

CVE-2026-41940

GitHubasdasddqwdq29-a11y/cve-2026-41940

Redacted cPanel/WHM authentication bypass analysis and authorized checker

authentication-authorizationeducationexploitation+3
4 months ago
YellowKey-BitLocker-CVE-2026-45585 preview

YellowKey-BitLocker-CVE-2026-45585

GitHubyellowkeybitlocker-cve/yellowkey-bitlocker-cve-2026-45585

YellowKey BitLocker recovery audits CVE-2026-45585: yellowkey github, TPM, recovery key backup. Windows 10/11 CLI GUI, portable audit tool for…

configuration-auditingdata-recoverydefensive-tools+5
29 days ago
sudowp-adminer preview

sudowp-adminer

GitHubsudo-wp/sudowp-adminer

A secure, zero-trust database management tool for WordPress. Fixes critical SSRF vulnerabilities (CVE-2021-21311) by enforcing local connections only.

authentication-authorizationcloud-securitydatabase-security+3
16 months ago
CVE-2024-39722 preview

CVE-2024-39722

GitHubsrcx404/cve-2024-39722

Exploit tool for CVE-2024-39722, a model existence disclosure vulnerability in Ollama. Performs version checks, crawls official model library, and…

crawlerexploitationinformation-gathering+3
1 year ago
RRAS-VULNERABILITY-CVE-2026-25172-CVE-2026-25173-CVE-2026--26111 preview

RRAS-VULNERABILITY-CVE-2026-25172-CVE-2026-25173-CVE-2026--26111

GitHubdhananjayasj/rras-vulnerability-cve-2026-25172-cve-2026-25173-cve-2026--26111

Isolated lab environment to simulate and study integer overflow vulnerabilities (CVE-2026-25172, CVE-2026-25173, CVE-2026-26111) in Windows RRAS…

educationexploitationlabs-practice+2
4 months ago
CVE-2025-15368-Exploit preview

CVE-2025-15368-Exploit

GitHubkazehere4you/cve-2025-15368-exploit

Exploit tool for SportsPress Plugin LFI & RCE (CVE-2025-15368) - Proof of Concept

educationexploitationpayload-generation+3
7 months ago
Bryobio preview

Bryobio

GitHubemrekybs/bryobio

It was developed to speed up the processes of SOC Analysts during analysis

forensicsinformation-gatheringnetwork-forensics+3
486 months ago
btrfs_fixes preview

btrfs_fixes

GitHubmsedek/btrfs_fixes

Custom BTRFS repair tools for severe extent tree corruption where btrfs check --repair fails (segfault, loop, or deadlock)

data-recoveryeducationforensics+2
116 months ago
CVE-2019-19871-AuditGuide preview

CVE-2019-19871-AuditGuide

GitHubvdisec/cve-2019-19871-auditguide

Audit Guide for the Citrix ADC Vulnerability CVE-2019-19871. Collected from multiple sources and threat assessments. Will be updated as new methods…

curated-resourceseducationforensics+3
26 years ago
UPnP-Pentest-Toolkit preview

UPnP-Pentest-Toolkit

GitHubnccgroup/upnp-pentest-toolkit

UPnP Pentest Toolkit for Windows

exploitationhardware-iot-securitynetwork-security+5
26111 years ago
CVE-2025-32433-PoC-Analysis preview

CVE-2025-32433-PoC-Analysis

GitHubliam-worsley/cve-2025-32433-poc-analysis

This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

authentication-authorizationeducationexploitation+4
1 month ago
CVE-2026-94609 preview

CVE-2026-94609

GitHubanthonyk2923/cve-2026-94609

Write-up and proof-of-concept for CVE-2026-94609, an authentik privilege-escalation flaw letting users with add_user_to_group join superuser groups…

api-securityauthentication-authorizationeducation+6
12 days ago
CVE-2025-60787 preview

CVE-2025-60787

GitHubgunzf0x/cve-2025-60787

Automated PoC for CVE-2025-60787 providing authenticated remote code execution against motionEye servers up to 0.43.1b4, with reverse shell and…

exploitationpenetration-testingred-teaming+3
107 months ago
CVE-2026-1555 preview

CVE-2026-1555

GitHubnxploited/cve-2026-1555

WebStack <= 1.2024 - Unauthenticated Arbitrary File Upload

exploitationpenetration-testingremote-access-tool+2
95 months ago
physmem preview

physmem

GitHubbazad/physmem

Local privilege escalation through macOS 10.12.1 via CVE-2016-1825 or CVE-2016-7617.

binary-exploitationexploitationprivilege-escalation+1
669 years ago
Previous12…25Next