Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
11 results
CVE-2025-6218_WinRAR preview

CVE-2025-6218_WinRAR

GitHubspeinador/cve-2025-6218_winrar

Educational lab demonstrating CVE-2025-6218 path traversal in WinRAR. Includes a malicious RAR file and step-by-step guide to observe file overwrite…

binary-exploitationeducationexploitation+3
16
1 year ago
Job-Manager-Disclosure preview

Job-Manager-Disclosure

GitHubnotrustedx/job-manager-disclosure

CVE-2015-6668, relacionada con el plugin WP Job Manager para WordPress (versiones ≤ 0.7.25).

crawlereducationexploitation+3
1 year ago
analise-vulnerabilidades-zabbix-notebooklm preview

analise-vulnerabilidades-zabbix-notebooklm

GitHubrichjj98/analise-vulnerabilidades-zabbix-notebooklm

Caderno Temático NotebookLM: análise de vulnerabilidades SQL Injection (CVE-2024-42327, CVE-2026-23921) no Zabbix, com engenharia de prompts, cadeia…

educationpenetration-testingvulnerability-analysis+1
13 months ago
CVE-2024-32002-Reverse-Shell preview

CVE-2024-32002-Reverse-Shell

GitHubyukafake/cve-2024-32002-reverse-shell

Este script demuestra cómo explotar la vulnerabilidad CVE-2024-32002 para obtener una reverse shell, proporcionando acceso remoto al sistema…

educationexploitationpayload-generation+3
62 years ago
CVE-2026-3854 preview

CVE-2026-3854

GitHub5kr1pt/cve-2026-3854

Technical breakdown of CVE-2026-3854, a GitHub RCE via header injection in git push, explaining the vulnerability, exploitation technique, and…

educationexploitationpapers-research+2
5 months ago
WSO2RCE preview

WSO2RCE

GitHubpasch0/wso2rce

CVE-2022-29464 Exploit

exploitationpayload-generationpenetration-testing+3
12 years ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubfernandobortotti/cve-2024-24919

Automated exploit for CVE-2024-24919 with API-based vulnerable IP discovery and LFI brute-force using custom wordlists. Designed for educational…

educationexploitationinformation-gathering+3
12 years ago
CVE-2023-30253-exploit preview

CVE-2023-30253-exploit

GitHubjeanback1/cve-2023-30253-exploit

CVE-2023-30253 — Dolibarr ERP/CRM 17.0.0 RCE via PHP code injection (exploit educativo)

code-analysiseducationexploitation+4
4 months ago
CVE-2023-44487-HTTP-2-Rapid-Reset-Attack preview

CVE-2023-44487-HTTP-2-Rapid-Reset-Attack

GitHubmoften/cve-2023-44487-http-2-rapid-reset-attack

HTTP/2 Rapid Reset Exploit PoC

educationexploitationpenetration-testing+2
210 months ago
CVE-2025-8110 preview

CVE-2025-8110

GitHubxdezen/cve-2025-8110

Python proof-of-concept for CVE-2025-8110, demonstrating arbitrary file write to RCE in Gogs via symlink and API, with educational lab usage.

educationexploitationlabs-practice+3
2 months ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubjavaamo/cve-2021-41773

Fixed shell exploit for Apache HTTP Server 2.4.49 CVE-2021-41773 path traversal and remote code execution vulnerability. Reads arbitrary files and…

exploitationpenetration-testingremote-access-tool+2
1 year ago