Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
223 results
CVE-2024-4577-RCE preview

CVE-2024-4577-RCE

GitHubl0n3m4n/cve-2024-4577-rce

PoC - PHP CGI Argument Injection CVE-2024-4577 (Scanner and Exploit)

exploitationpayload-developmentpenetration-testing+3
7
2 years ago
CVE-2026-89274 preview

CVE-2026-89274

GitHubmurrez/cve-2026-89274

Python PoC scanner and exploit for CVE-2026-89274, an unauthenticated arbitrary shortcode execution flaw in WP Recipe Maker <=10.8.1 via recipe…

exploitationpenetration-testingscripting-automation+4
210 days ago
CVE-2025-34085 preview

CVE-2025-34085

GitHubyukinime/cve-2025-34085

Automated scanner and exploit for CVE-2025-34085, an unauthenticated RCE in the WordPress Simple File List plugin. Supports multi-target scanning,…

exploitationpayload-generationpenetration-testing+3
71 year ago
JBWPer preview

JBWPer

GitHubim-hanzou/jbwper

Automatic Mass Tool for check and exploiting vulnerability in CVE-2022-4061 - JobBoardWP < 1.2.2 - Unauthenticated Arbitrary File Upload

exploitationpayload-generationshellcode+2
53 years ago
CVE-2025-55182 preview

CVE-2025-55182

GitHubzzhorc/cve-2025-55182

CVE-2025-55182复现环境及RCE回显poc

exploitationpayload-generationpenetration-testing+4
89 months ago
CVE-2025-55182-React2shell preview

CVE-2025-55182-React2shell

GitHubjenderal92/cve-2025-55182-react2shell

CVE-2025-55182 Exploit Tool – Python 2.7 exploit for Next.js prototype pollution leading to RCE

exploitationpayload-generationpenetration-testing+3
64 months ago
RCE-CVE-2025-32710 preview

RCE-CVE-2025-32710

GitHubsincan2/rce-cve-2025-32710

Windows Remote Desktop Services Vulnerability Allows Remote Code Execution

exploitationpayload-generationpenetration-testing+6
51 year ago
CVE-2026-12793 preview

CVE-2026-12793

GitHubrootxn/cve-2026-12793

Python PoC for CVE-2026-12793 in JetFormBuilder <= 3.6.2: unauthenticated privilege escalation leading to plugin upload and remote code execution,…

exploitationpayload-generationpenetration-testing+5
13 days ago
Project-CVE-2026-50751 preview

Project-CVE-2026-50751

GitHube4zyy/project-cve-2026-50751

IKEv1 VPN scanners, attempts a Check Point authentication-bypass exploit, and includes internal network scanning and reverse-shell features.

exploitationnetwork-securitypayload-development+3
1 month ago
Exploit-CVE-2026-56705 preview

Exploit-CVE-2026-56705

GitHubchiefyoru/exploit-cve-2026-56705

CVE-2026-56705 — Adminer < 5.4.3 Unauthenticated RCE via MSSQL PDO DSN Injection

exploitationpayload-generationpenetration-testing+3
1 month ago
CVE-2024-21546 preview

CVE-2024-21546

GitHubdigitalsurgn/cve-2024-21546

Automated exploit toolkit and detection template for CVE-2024-21546, an unauthenticated RCE in UniSharp Laravel Filemanager, with WAF evasion and…

code-analysisexploitationpayload-development+4
27 days ago
ActiveMQ-cve-2026-42588-scanner-gui preview

ActiveMQ-cve-2026-42588-scanner-gui

GitHubstrivepan/activemq-cve-2026-42588-scanner-gui

GUI-based scanner and exploit tool for CVE-2026-42588 (ActiveMQ RCE). Supports VPS payload delivery and DNSLog-based vulnerability verification with…

command-and-controlexploitationpayload-generation+3
93 months ago
cve-2026-41940-PoC preview

cve-2026-41940-PoC

GitHubyasouxken/cve-2026-41940-poc

Python PoC exploiting CVE-2026-41940, a cPanel & WHM authentication bypass enabling unauthenticated root-level WHM access, with scanning and…

authenticationcommand-and-controlexploitation+7
8 days ago
FREAK-Attack-CVE-2015-0204-Testing-Script preview

FREAK-Attack-CVE-2015-0204-Testing-Script

GitHubabhishekghosh/freak-attack-cve-2015-0204-testing-script

Basic BASH Script to Automate OpenSSL based testing for FREAK Attack (CVE-2015-0204) as advised by Akamai.

network-securitypenetration-testingscripting-automation+1
511 years ago
G0BurpSQLmaPI preview

G0BurpSQLmaPI

GitHubnu11secur1ty/g0burpsqlmapi

CLI tool for generating SQL injection PoC requests, automating sqlmap attacks, and managing modular exploit scripts with interactive menu and…

exploitationpayload-generationpenetration-testing+2
32 months ago
CVE-2022-22954 preview

CVE-2022-22954

GitHubmlx15/cve-2022-22954

CVE-2022-22954 VMware Workspace ONE Access free marker SSTI

command-and-controlexploitationpayload-generation+3
44 years ago
CVE-2024-4577 preview

CVE-2024-4577

GitHublonghoangth18/cve-2024-4577

Scanner and exploit for CVE-2024-4577 PHP CGI argument injection vulnerability. Detects susceptible PHP applications and executes arbitrary code via…

exploitationpayload-generationpenetration-testing+3
51 year ago
CVE-2026-57811 preview

CVE-2026-57811

GitHub0xcyp1337/cve-2026-57811

Exploits CVE-2026-57811, an unauthenticated RCE in Realtyna Organic IDX + WPL Real Estate WordPress plugin, enabling shell upload and command…

exploitationpayload-developmentpenetration-testing+2
222 days ago
Previous1…678…13Next