Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
84 results
ufonet preview

ufonet

GitHubepsylon/ufonet

UFONet - Denial of Service Toolkit

command-and-controlcryptographyexploitation+6
2.5k2 months ago
XAttacker preview

XAttacker

GitHubmoham3driahi/xattacker

X Attacker Tool ☣ Website Vulnerability Scanner & Auto Exploiter

exploit-frameworksinformation-gatheringpenetration-testing+2
1.8k2 years ago
hackazon preview
Archived

hackazon

GitHubrapid7/hackazon

A modern vulnerable web app

api-security-testingeducationpenetration-testing+3
1.0k5 years ago
CVE-2023-21608 preview

CVE-2023-21608

GitHubhacksysteam/cve-2023-21608

Adobe Acrobat Reader - CVE-2023-21608 - Remote Code Execution Exploit

binary-exploitationexploitationpayload-development+3
2832 years ago
shadow-workers preview

shadow-workers

GitHubshadow-workers/shadow-workers

Shadow Workers is a free and open source C2 and proxy designed for penetration testers to help in the exploitation of XSS and malicious Service…

command-and-controlpenetration-testingpersistence-mechanisms+2
2452 years ago
CVE-2020-0674-Exploit preview

CVE-2020-0674-Exploit

GitHubmaxpl0it/cve-2020-0674-exploit

This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.

binary-exploitationexploitationpayload-generation+3
2226 years ago
CVE-2022-28672 preview

CVE-2022-28672

GitHubhacksysteam/cve-2022-28672

Foxit PDF Reader Remote Code Execution Exploit

binary-exploitationexploitationpayload-development+3
1212 years ago
CVE-2022-21907-http.sys preview

CVE-2022-21907-http.sys

GitHubp0dalirius/cve-2022-21907-http.sys

Proof of concept of CVE-2022-21907 Double Free in http.sys driver, triggering a kernel crash on IIS servers

binary-exploitationexploitationpenetration-testing+2
832 years ago
vulnhawk preview

vulnhawk

GitHubmomenbasel/vulnhawk

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

ai-securityapi-security-testingcloud-security+8
812 months ago
CVE-2025-30397---Windows-Server-2025-JScript-RCE-Use-After-Free- preview

CVE-2025-30397---Windows-Server-2025-JScript-RCE-Use-After-Free-

GitHubmbanyamer/cve-2025-30397---windows-server-2025-jscript-rce-use-after-free-

Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397)

binary-exploitationexploitationpayload-generation+3
671 year ago
CVE-2018-18500 preview

CVE-2018-18500

GitHubsophoslabs/cve-2018-18500

PoC for CVE-2018-18500 - Firefox Use-After-Free

binary-exploitationeducationexploitation+2
617 years ago
CVE-2026-23918 preview

CVE-2026-23918

GitHubstriga-ai/cve-2026-23918

Double-free in Apache httpd mod_http2 stream cleanup leading to pre-auth RCE.

binary-exploitationeducationexploitation+3
323 months ago
follina preview

follina

GitHubnoxtal/follina

All about CVE-2022-30190, aka follina, that is a RCE vulnerability that affects Microsoft Support Diagnostic Tools (MSDT) on Office apps such as…

command-and-controlexploitationpayload-generation+3
214 years ago
CVE-2025-49132 preview

CVE-2025-49132

GitHubzen-kun04/cve-2025-49132

A script that gives you the credentials of a Pterodactyl panel vulnerable to CVE-2025-49132

exploitationinformation-gatheringpassword-attacks+3
171 year ago
CVE-2021-30573-PoC-Google-Chrome preview

CVE-2021-30573-PoC-Google-Chrome

GitHubs4eio/cve-2021-30573-poc-google-chrome

Google Chrome Use After Free vulnerability reported by S4E Team

educationexploitationvulnerability-analysis+1
145 years ago
Firefox-CVE-2024-9680 preview

Firefox-CVE-2024-9680

GitHubtdonaworth/firefox-cve-2024-9680
binary-exploitationeducationexploitation+3
111 year ago
CVE-2019-7216 preview

CVE-2019-7216

GitHubekultek/cve-2019-7216

Filechucker filter bypass Proof Of Concept

exploitationpenetration-testingreconnaissance+2
107 years ago
CVE-2021-30573 preview

CVE-2021-30573

GitHuborangmuda/cve-2021-30573

Google Chrome Vulnerabilities CVE-2021-30573

educationexploitationpapers-research+2
104 years ago
Previous12345Next