Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
19 results
CVE-2025-10951 preview

CVE-2025-10951

GitHub1amunvalid/cve-2025-10951
data-exfiltrationexploitationinformation-gathering+3
12 days ago
CVE-2026-60004 preview

CVE-2026-60004

GitHubshinthink/cve-2026-60004

CVE-2026-60004 — Gitea/Forgejo Diffpatch Git Hook RCE. Bare clone → post-index-change hook injection. CVSS 9.8 | CWE-94 | Gitea < 1.27.1

data-exfiltrationexploitationpenetration-testing+4
20 days ago
CVE-2026-57517 preview

CVE-2026-57517

GitHubshinthink/cve-2026-57517

💉 Blind SQL Injection → RCE exploit for Control Web Panel (CWP) ≤ 0.9.8.1224 — userRes POST → INTO DUMPFILE → cwpsvc shell

exploitationpayload-developmentpenetration-testing+4
11 month ago
Automated-scanner-CVE-2026-41940 preview

Automated-scanner-CVE-2026-41940

GitHubsardine-web/automated-scanner-cve-2026-41940

Automated scanner & post-exploitation toolkit for CVE-2026-41940 — cPanel & WHM root authentication bypass via session-file CRLF injection

authentication-authorizationcommand-and-controlexploitation+8
13 months ago
CVE-2025-55182_RCE_Exploit preview

CVE-2025-55182_RCE_Exploit

GitHubnexxp90/cve-2025-55182_rce_exploit

REC Exploit is a Python-based security testing tool that automates detection of potential RCE conditions in web applications under authorized…

exploitationpayload-generationpenetration-testing+2
5 months ago
metasploitable-penetration-testing-lab preview

metasploitable-penetration-testing-lab

GitHubyagnikkrish/metasploitable-penetration-testing-lab

Controlled penetration testing lab demonstrating CVE-2011-2523 exploitation and mitigation techniques.

defensive-toolseducationexploitation+8
5 months ago
Next.js-RCE-Scanner-BurpSuite-Extension- preview

Next.js-RCE-Scanner-BurpSuite-Extension-

GitHubcr4at0r/next.js-rce-scanner-burpsuite-extension-

使用burp自动检测CVE-2025-55182 Next.js RCE 漏洞

command-and-controlexploitationpayload-generation+3
268 months ago
CVE-2025-55575 preview

CVE-2025-55575

GitHubaether-0/cve-2025-55575
exploitationpenetration-testingvulnerability-analysis+3
0 years ago
watchTowr-vs-FortiSIEM-CVE-2025-25256 preview

watchTowr-vs-FortiSIEM-CVE-2025-25256

GitHubwatchtowrlabs/watchtowr-vs-fortisiem-cve-2025-25256
command-and-controlexploitationpenetration-testing+3
191 year ago
CVE-2025-53770-Vulnerable-Scanner preview

CVE-2025-53770-Vulnerable-Scanner

GitHubimbas007/cve-2025-53770-vulnerable-scanner
exploitationinformation-gatheringpenetration-testing+3
11 year ago
watchTowr-vs-FortiWeb-CVE-2025-25257 preview

watchTowr-vs-FortiWeb-CVE-2025-25257

GitHubwatchtowrlabs/watchtowr-vs-fortiweb-cve-2025-25257
exploitationpayload-generationpenetration-testing+3
1001 year ago
kubesploit preview

kubesploit

GitHubcyberark/kubesploit

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

command-and-controlcontainer-escapecontainer-security+5
1.2k1 year ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubgeniuszly/cve-2024-24919

PoC script for CVE-2024-24919 vulnerability. It scans a list of target URLs to identify security issues by sending HTTP POST requests and analyzing…

exploitationpayload-generationpenetration-testing+3
61 year ago
UPGer preview

UPGer

GitHubim-hanzou/upger

Automatic Mass Tool for checking vulnerability in CVE-2022-4060 - WordPress Plugin : User Post Gallery <= 2.19 - Unauthenticated RCE

exploitationpenetration-testingvulnerability-scanners+1
82 years ago
SiteCore-RCE-Detection preview

SiteCore-RCE-Detection

GitHubcrankyyash/sitecore-rce-detection

For detection of sitecore RCE - CVE-2021-42237

exploitationpenetration-testingreconnaissance+2
3 years ago
Log4J-Scanner preview

Log4J-Scanner

GitHub0xdexter0us/log4j-scanner

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.

exploitationpenetration-testingvulnerability-scanners+3
1014 years ago
log4jcheck preview

log4jcheck

GitHubolafhaalstra/log4jcheck

Check list of URLs against Log4j vulnerability CVE-2021-44228

exploitationinformation-gatheringpenetration-testing+3
54 years ago
CVE-2021-22005 preview

CVE-2021-22005

GitHub1zrr4h/cve-2021-22005
exploitationpenetration-testingreconnaissance+2
84 years ago
Previous12Next