Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
299 results
spring-projects__spring-framework_CVE-2022-22965_5-2-19-RELEASE preview

spring-projects__spring-framework_CVE-2022-22965_5-2-19-RELEASE

GitHubshoucheng3/spring-projects__spring-framework_cve-2022-22965_5-2-19-release

Exploit for CVE-2022-22965 (Spring4Shell) targeting Spring Framework versions vulnerable to remote code execution via classLoader manipulation.

code-analysisexploitationmisconfiguration+3
1 year ago
apache__dubbo_CVE-2021-30180_2-7-9 preview

apache__dubbo_CVE-2021-30180_2-7-9

GitHubshoucheng3/apache__dubbo_cve-2021-30180_2-7-9

Exploit for CVE-2021-30180 targeting Apache Dubbo RPC framework, enabling remote code execution via crafted RPC requests in vulnerable versions.

api-securityapi-security-testingexploitation+3
1 year ago
vert-x3__vertx-web_CVE-2018-12542_3-5-3-CR1 preview

vert-x3__vertx-web_CVE-2018-12542_3-5-3-CR1

GitHubshoucheng3/vert-x3__vertx-web_cve-2018-12542_3-5-3-cr1

Exploit for CVE-2018-12542 in Vert.x-Web, a Java web framework. Demonstrates a path traversal vulnerability allowing unauthorized access to static…

api-securityapi-security-testingpenetration-testing+3
1 year ago
CVE-2022-22965 preview

CVE-2022-22965

GitHubc33dd/cve-2022-22965

C-based exploit for Spring4Shell (CVE-2022-22965) remote code execution vulnerability in Spring Core framework.

exploitationpayload-developmentpenetration-testing+2
3 years ago
CVE-2018-1270 preview

CVE-2018-1270

GitHubtafamace/cve-2018-1270

Proof-of-concept exploit for CVE-2018-1270, a Spring Framework remote code execution vulnerability via Spring Expression Language (SpEL) injection.

exploitationvulnerability-analysisweb-application-exploitation
7 years ago
CVE-2017-8759_-SOAP_WSDL preview

CVE-2017-8759_-SOAP_WSDL

GitHubhomjxi0e/cve-2017-8759_-soap_wsdl

Proof-of-concept exploit for CVE-2017-8759, a remote code execution vulnerability in Microsoft .NET Framework via SOAP WSDL, with a Python-based web…

exploitationpayload-developmentpenetration-testing+2
8 years ago
BadBizness-CVE-2023-51467 preview

BadBizness-CVE-2023-51467

GitHubjakeotte/badbizness-cve-2023-51467

Auto exploit script for the Java web framework OF Biz under CVE-2023-51467.

exploitationpenetration-testingred-teaming+2
2 years ago
jooby preview

jooby

GitHubepicosy/jooby

Exploit toolkit targeting CVE-2019-15477 in the Jooby micro web framework, enabling vulnerability analysis and exploitation of Java/Kotlin web…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2021-46422 preview

CVE-2021-46422

GitHubkelemaoya/cve-2021-46422

PoC exploit for CVE-2021-46422, an OS command injection vulnerability in Korean wireless routers. Includes a Python script for single or batch URL…

command-and-controlexploitationpenetration-testing+2
3 years ago
Chakra-CVE-2019-0567 preview

Chakra-CVE-2019-0567

GitHubnatteesetobol/chakra-cve-2019-0567

A POC of a type confusion bug in chakracore framework that leads to code execute.

binary-exploitationexploitationvulnerability-analysis+1
2 years ago
CVE-2019-12890_RedxploitHQ preview

CVE-2019-12890_RedxploitHQ

GitHubethicalhcop/cve-2019-12890_redxploithq

Use RedxploitHQ to create a new Admin user into redwoodhq and get all the functions on the framework

exploitationpenetration-testingprivilege-escalation+2
6 years ago
CVE-2020-11990-Cordova preview

CVE-2020-11990-Cordova

GitHubforse01/cve-2020-11990-cordova

Proof-of-concept exploit for CVE-2020-11990 targeting Apache Cordova applications, demonstrating a remote code execution vulnerability in the mobile…

exploitationmobile-securitypenetration-testing+2
5 years ago
Pre-render-data-spoofing-on-React-Router-framework-mode-CVE-2025-43865 preview

Pre-render-data-spoofing-on-React-Router-framework-mode-CVE-2025-43865

GitHubpouriam23/pre-render-data-spoofing-on-react-router-framework-mode-cve-2025-43865

Proof-of-concept exploit for CVE-2025-43865 demonstrating pre-render data spoofing in React Router framework mode, enabling data injection during…

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
cve-2025-29927 preview

cve-2025-29927

GitHubbalajih4kr/cve-2025-29927

CVE-2025-29927 is a critical vulnerability in Next.js, a popular React-based web framework. The flaw exists in how the middleware feature handles…

exploitationmisconfigurationvulnerability-analysis+2
1 year ago
CVE-2022-44877 preview

CVE-2022-44877

GitHubg01d3nw01f/cve-2022-44877

Go-based exploit for CVE-2022-44877 targeting CWP CentOS Web Panel, leveraging the go-exploit framework for modular exploitation and payload delivery.

exploitationpayload-developmentpenetration-testing+2
2 years ago
CVE-2019-19609-POC-Python preview

CVE-2019-19609-POC-Python

GitHubn000xy/cve-2019-19609-poc-python

Strapi Framework, 3.0.0-beta.17.4

exploitationpassword-attackspayload-generation+3
4 years ago
CVE-2022-22965 preview

CVE-2022-22965

GitHub0xr1l3s/cve-2022-22965

Spring4Shell is a critical RCE vulnerability in the Java Spring Framework and is one of three related vulnerabilities published on March 30

code-analysisexploitationpenetration-testing+2
4 years ago
SpringPathTraversal preview

SpringPathTraversal

GitHubgforresu/springpathtraversal

String MVC Framework Path-Traversal proof of concept. CVE-2014-3625

exploitationmisconfigurationpenetration-testing+2
9 years ago
Previous1…131415…17Next