Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
18 results
cve-2022-42889-text4shell preview

cve-2022-42889-text4shell

GitHubdimamend/cve-2022-42889-text4shell

Docker-based lab environment to reproduce and test CVE-2022-42889 (Text4Shell) remote code execution vulnerability in Apache Commons Text.

educationexploitationlabs-practice+3
14 days ago
CVE-2024-5082 preview

CVE-2024-5082

GitHubh4mr3r/cve-2024-5082

Proof-of-concept exploit for CVE-2024-5082, a remote code execution vulnerability in Sonatype Nexus Repository Manager 2 via crafted Maven artifacts…

exploitationpayload-developmentpenetration-testing+3
1 month ago
Java-Example preview

Java-Example

GitHubseal-sec-demo-2/java-example

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration

code-analysisdevsecopseducation+3
1 month ago
mvn_pwn preview

mvn_pwn

GitHubmbadanoiu/mvn_pwn

Malicious Maven pom.xml that uses "groovy-maven-plugin" to get RCE

educationexploitationpayload-development+3
2 months ago
java-vulnerable preview

java-vulnerable

GitHubdannyendortest/java-vulnerable

EXPOSURE demo target: Tomcat (CVE-2016-0714) + Apache Rave (CVE-2013-1814) + Java filter-padding deps

educationlabs-practicemisconfiguration+3
3 months ago
CVE-2026-21962_Java_GUI_Exploit_Tool preview

CVE-2026-21962_Java_GUI_Exploit_Tool

GitHubnaozibuhao/cve-2026-21962_java_gui_exploit_tool

Java GUI tool for exploiting CVE-2026-21962, an unauthenticated RCE in Oracle WebLogic Proxy Plug-In, enabling multi-target command execution via…

command-and-controlexploitationpenetration-testing+3
25 months ago
cve-2022-42889-text4shell-docker preview

cve-2022-42889-text4shell-docker

GitHubreachabilityorg/cve-2022-42889-text4shell-docker

Dockerized vulnerable Java application demonstrating CVE-2022-42889 (Text4Shell) remote code execution via Apache Commons Text string lookups, for…

container-securityeducationexploitation+3
9 months ago
RuoYI-4.2-Shiro-721-Docker-PoC preview

RuoYI-4.2-Shiro-721-Docker-PoC

GitHubbaihliu/ruoyi-4.2-shiro-721-docker-poc

若依4.2 (Shiro 1.4.1) Shiro-721 (CVE-2019-12422)漏洞复现环境

educationexploitationlabs-practice+3
11 year ago
cve-2022-42889-text4shell preview

cve-2022-42889-text4shell

GitHubjoshbnewton31080/cve-2022-42889-text4shell

Docker-based lab environment to reproduce and test the Text4Shell (CVE-2022-42889) remote code execution vulnerability in Apache Commons Text.

educationexploitationlabs-practice+3
2 years ago
text4shell-docker preview

text4shell-docker

GitHubaaronm-sysdig/text4shell-docker

Dockerized POC for CVE-2022-42889 Text4Shell

container-securityexploitationpayload-development+3
2 years ago
cve-2022-42889-text4shell preview

cve-2022-42889-text4shell

GitHubdima2021/cve-2022-42889-text4shell

Docker-based lab environment to demonstrate and test the CVE-2022-42889 (Text4Shell) remote code execution vulnerability in Apache Commons Text.

container-securityeducationexploitation+3
3 years ago
cve-2022-42889-text4shell-docker preview

cve-2022-42889-text4shell-docker

GitHubkarthikuj/cve-2022-42889-text4shell-docker

Dockerized proof-of-concept for CVE-2022-42889 (Text4Shell) with script, DNS, and URL lookup-based RCE payloads for security testing and education.

container-securityeducationexploitation+3
753 years ago
log4j-spring-vuln-poc preview

log4j-spring-vuln-poc

GitHubmn-io/log4j-spring-vuln-poc

POC for CVE-2021-44228 within Springboot

educationexploitationlabs-practice+2
14 years ago
CVE-2021-44228 preview

CVE-2021-44228

GitHubb1tm0n3r/cve-2021-44228

CVE-2021-44228 demo webapp

educationexploitationlabs-practice+3
4 years ago
CVE-2021-44228-poc preview

CVE-2021-44228-poc

GitHubkadantte/cve-2021-44228-poc

log4shell sample application (CVE-2021-44228)

educationexploitationlabs-practice+3
4 years ago
CVE-2021-21234 preview

CVE-2021-21234

GitHubxiaojiangxl/cve-2021-21234

Proof-of-concept exploit for CVE-2021-21234, a directory traversal vulnerability in spring-boot-actuator-logview allowing unauthorized file read via…

exploitationinformation-gatheringmisconfiguration+3
54 years ago
CVE-2020-10199_CVE-2020-10204 preview

CVE-2020-10199_CVE-2020-10204

GitHubmagicming200/cve-2020-10199_cve-2020-10204

CVE-2020-10199、CVE-2020-10204漏洞一键检测工具,图形化界面。CVE-2020-10199 and CVE-2020-10204 Vul Tool with GUI.

code-analysisexploitationpenetration-testing+3
256 years ago
Extractor preview

Extractor

GitHubnccgroup/extractor

Extension adds a new tab in Burp Suite called Extractor

encryption-decryption-toolspenetration-testingscripting-automation+3
417 years ago