Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
50 results
Project-CVE-2026-33017 preview

Project-CVE-2026-33017

GitHube4zyy/project-cve-2026-33017

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

command-and-controlexploitationpayload-development+6
1
9 days ago
CVE-2026-20841 preview

CVE-2026-20841

GitHubrajauzairabdullah/cve-2026-20841

Proof-of-concept exploit for CVE-2026-20841, a remote code execution vulnerability in Windows Notepad, demonstrating file-based trigger and execution…

binary-exploitationexploitationmalware-analysis+2
6 months ago
CVE-2025-1094-Lab-Setup preview

CVE-2025-1094-Lab-Setup

GitHubpinkarmor/cve-2025-1094-lab-setup

Hands-on lab to exploit CVE-2025-1094, a PostgreSQL psql SQL injection leading to RCE via COPY TO PROGRAM, with Docker setup and reverse shell…

educationexploitationlabs-practice+3
10 months ago
CVE-2026-17566 preview

CVE-2026-17566

GitHubhackspeak/cve-2026-17566

pgAdmin 4 Import/Export RCE (CVE-2026-17566) PoC - TO PROGRAM injection via backslash-escape mismatch

exploitationpayload-generationpenetration-testing+3
11 month ago
CVE-2025-9223 preview

CVE-2025-9223

GitHubnetworkkiller/cve-2025-9223

POC CVE-2025-9223

command-and-controldata-exfiltrationeducation+4
29 months ago
CVE-2026-16475-PoC preview

CVE-2026-16475-PoC

GitHubafertar/cve-2026-16475-poc

This is the official repo with the PoC of the CVE-2026-16475, LFI in OCSinventory 2.12.4.

exploitationinformation-gatheringpenetration-testing+2
1 month ago
CVE-2014-0094-test-program-for-struts1 preview

CVE-2014-0094-test-program-for-struts1

GitHubhasegawatadamitsu/cve-2014-0094-test-program-for-struts1

CVE-2014-0094 test program for struts1

educationexploitationpenetration-testing+3
18 years ago
vulnerable-PDF preview

vulnerable-PDF

GitHubnu11secur1ty/vulnerable-pdf

Educational PDF files demonstrating client-side exploitation techniques, including calculator execution and directory browsing, for security testing…

educationlabs-practicepayload-generation+3
112 years ago
CVE-2022-41828 preview

CVE-2022-41828

GitHubmurataydemir/cve-2022-41828

[CVE-2022-41828] Amazon AWS Redshift JDBC Driver Remote Code Execution (RCE)

cloud-securitydatabase-securityeducation+3
43 years ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubz3n70/cve-2020-5902

BIGIP CVE-2020-5902 Exploit POC and automation scanning vulnerability

exploitationpenetration-testingvulnerability-analysis+1
24 years ago
CVE-2021-41277 preview

CVE-2021-41277

GitHubz3n70/cve-2021-41277

simple program for exploit metabase

exploitationinformation-gatheringpenetration-testing+2
54 years ago
CVE-2021-43798 preview

CVE-2021-43798

GitHubz3n70/cve-2021-43798

Simple program for exploit grafana

exploitationinformation-gatheringpenetration-testing+2
54 years ago
WPS-CVE-2022-24934 preview

WPS-CVE-2022-24934

GitHubmagicpipersec/wps-cve-2022-24934

PoC exploit server for CVE-2022-24934 that delivers a malicious payload via a fake WPS Update Server, targeting the wpsupdate.exe process for…

exploitationpayload-generationpenetration-testing+3
54 years ago
wordpress-really-simple-security-authn-bypass-exploit preview

wordpress-really-simple-security-authn-bypass-exploit

GitHubm3ssap0/wordpress-really-simple-security-authn-bypass-exploit

Python exploit for CVE-2024-10924 authentication bypass in Really Simple Security < 9.1.2. Enables unauthenticated login as any existing WordPress…

authentication-authorizationexploitationpenetration-testing+3
191 year ago
wordpress-jetpack-broken-access-control-exploit preview

wordpress-jetpack-broken-access-control-exploit

GitHubm3ssap0/wordpress-jetpack-broken-access-control-exploit

Python exploit for Jetpack < 13.9.1 broken access control (CVE-2024-9926). Allows authenticated users to read visitor-submitted forms on WordPress…

exploitationinformation-gatheringpenetration-testing+3
31 year ago
spring-break_cve-2017-8046 preview

spring-break_cve-2017-8046

GitHubm3ssap0/spring-break_cve-2017-8046

This is a Java program that exploits Spring Break vulnerability (CVE-2017-8046).

exploitationpenetration-testingred-teaming+3
175 years ago
PS-2018-002---CVE-2018-14442 preview

PS-2018-002---CVE-2018-14442

GitHubsandi-go/ps-2018-002---cve-2018-14442

Proof-of-concept exploit for CVE-2018-14442, a use-after-free vulnerability in Foxit Reader and PhantomPDF, enabling remote code execution via a…

binary-exploitationexploitationpenetration-testing+2
6 years ago
Mass-CVE-2025-29306 preview

Mass-CVE-2025-29306

GitHubmantanhacker/mass-cve-2025-29306

Mass Exploit for CVE-2025-29306

command-and-controlexploitationpenetration-testing+3
18 months ago
Previous123Next