Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
317 results
CVE-2025-58434-PoC preview

CVE-2025-58434-PoC

GitHubmananispiwpiw/cve-2025-58434-poc

CVE-2025-58434 Proof of Concept

educationexploitationpenetration-testing+2
3 months ago
CVE-2025-58434_CVE-2025-59528 preview

CVE-2025-58434_CVE-2025-59528

GitHubhonney336/cve-2025-58434_cve-2025-59528

CVE-2025-58434 Flowise <= 3.0.5 and earlier allows account takeover via unauthenticated forgot-password token. CVE-2025-59528 lowiseAI Custom MCP…

authenticationexploitationpenetration-testing+3
4 months ago
CVE-2023-23752 preview

CVE-2023-23752

GitHub0xwhoami35/cve-2023-23752

Authentication bypass exploit for Joomla CVE-2023-23752 that leaks administrator credentials and MySQL configuration from vulnerable versions…

authenticationexploitationinformation-gathering+3
21 year ago
CVE-2020-35713 preview

CVE-2020-35713

GitHubal1ex/cve-2020-35713

CVE-2020-35713

exploitationhardware-iot-securityiot-security+3
15 years ago
CyberSec2026 preview

CyberSec2026

GitHubsanderschepers1993/cybersec2026

Educational lab environment for exploiting CVE-2022-22947 in Spring Cloud Gateway, with automated victim VM setup and attacker configuration scripts.

educationexploitationlabs-practice+3
3 months ago
PRTG-Network-Monitor-18.2.38---Authenticated-Remote-Code-Execution-CVE-2018-9276 preview

PRTG-Network-Monitor-18.2.38---Authenticated-Remote-Code-Execution-CVE-2018-9276

GitHubac8999/prtg-network-monitor-18.2.38---authenticated-remote-code-execution-cve-2018-9276

Python Exploit for CVE: 2018-9276

command-and-controlexploitationpayload-generation+3
4 months ago
Silverpeas-AuthBypass-CVE-2024-36042 preview

Silverpeas-AuthBypass-CVE-2024-36042

GitHubha5ant/silverpeas-authbypass-cve-2024-36042

Python PoC for CVE-2024-36042 authentication bypass in Silverpeas < 6.3.5. Features version detection, multi-threaded user enumeration, message…

authentication-authorizationexploitationinformation-gathering+5
3 months ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubr3dston3/cve-2023-23752

Proof-of-concept exploit for CVE-2023-23752 (Joomla 4.0.0-4.2.8) that extracts usernames and passwords via an information disclosure vulnerability.

exploitationinformation-gatheringpenetration-testing+2
12 years ago
CVE-2019-15107-Webmin-RCE-PoC preview

CVE-2019-15107-Webmin-RCE-PoC

GitHubmattb709/cve-2019-15107-webmin-rce-poc

A Python proof-of-concept exploit for CVE-2019-15107 - an unauthenticated remote code execution vulnerability in Webmin versions 1.890 through 1.920.

command-and-controleducationexploitation+3
11 year ago
Exploit-for-CVE-2024-46987 preview

Exploit-for-CVE-2024-46987

GitHubsparrowhawk1113/exploit-for-cve-2024-46987

Exploit for CVE-2024-46987

educationexploitationpenetration-testing+2
6 months ago
CVE-2025-2304 preview

CVE-2025-2304

GitHubthe8frust/cve-2025-2304

Exploit for CVE-2025-2304 | Camaleon CMS versions < 2.9.1

educationexploitationpenetration-testing+3
6 months ago
Exploit-for-CVE-2025-2304 preview

Exploit-for-CVE-2025-2304

GitHubsparrowhawk1113/exploit-for-cve-2025-2304

Exploit for CVE-2025-2304

educationexploitationprivilege-escalation+2
6 months ago
CVE-2024-24919 preview

CVE-2024-24919

GitHub0xyumeko/cve-2024-24919

Proof-of-concept exploit for CVE-2024-24919, a Check Point path traversal allowing arbitrary file read (e.g., /etc/shadow) via crafted HTTPS POST…

exploitationinformation-gatheringpenetration-testing+2
12 years ago
CVE-2015-6967 preview

CVE-2015-6967

GitHubcuerv0x/cve-2015-6967

Python exploit for CVE-2015-6967 targeting Nibbleblog with a reverse shell payload. Executes authenticated remote code execution via file upload…

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2025-22963 preview

CVE-2025-22963

GitHubgmh5225/cve-2025-22963

Proof-of-concept exploit for CVE-2025-22963, a CSRF vulnerability in Teedy v1.11 allowing account takeover via user information change endpoint.

authenticationexploitationpenetration-testing+3
1 year ago
CVE-2020-35847_CVE-2020-35848 preview

CVE-2020-35847_CVE-2020-35848

GitHubw33vils/cve-2020-35847_cve-2020-35848

CVE-2020-35847, CVE-2020-35848 : Account Takeover

exploitationinformation-gatheringpassword-attacks+3
3 years ago
CVE-2025-22963 preview

CVE-2025-22963

GitHubsamplev45/cve-2025-22963

Detailed disclosure of CVE-2025-22963, a CSRF vulnerability in Teedy <= v1.11 enabling account takeover via forced user information changes.

educationpapers-researchvulnerability-analysis+2
1 year ago
CVE-2024-23346 preview

CVE-2024-23346

GitHubmawk0235/cve-2024-23346

This is an exploit for CVE-2024-23346 that acts as a "terminal" (tested on chemistry.htb)

command-and-controlexploitationpenetration-testing+2
1 year ago
Previous1…121314…18Next