Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
5039 results
CVE-2022-1388 preview

CVE-2022-1388

GitHubomnigodz/cve-2022-1388

This repository consists of the python exploit for CVE-2022-1388 (F5's BIG-IP Authentication Bypass to RCE)

authentication-authorizationexploitationpenetration-testing+2
4 years ago
CVE-2023-27163 preview

CVE-2023-27163

GitHubhamibubu/cve-2023-27163

Python implementation of CVE-2023-27163

exploitationpayload-generationpenetration-testing+2
2 years ago
CVE-2016-10033 preview
Archived

CVE-2016-10033

GitHubgeneraltesler/cve-2016-10033

RCE against WordPress 4.6; Python port of https://exploitbox.io/vuln/WordPress-Exploit-4-6-RCE-CODE-EXEC-CVE-2016-10033.html

exploitationpayload-generationpenetration-testing+3
9
CVE-2026-9830 preview

CVE-2026-9830

GitHubopaxial/cve-2026-9830

CVE-2026-9830 Proof of Concept

api-security-testingexploitationinformation-gathering+3
51617 days ago
CVE-2023-46818-python-exploit preview

CVE-2023-46818-python-exploit

GitHubbipbopbup/cve-2023-46818-python-exploit

CVE-2023-46818 IPSConfig Python exploit

educationexploitationpenetration-testing+2
181 year ago
cve-2019-3398 preview

cve-2019-3398

GitHubsuperevr/cve-2019-3398

Python script to exploit confluence path traversal vulnerability cve-2019-3398

exploitationpayload-generationpenetration-testing+2
157 years ago
CVE-2019-11043 preview

CVE-2019-11043

GitHubkriskhub/cve-2019-11043

Dockerized Python exploit for CVE-2019-11043, a critical PHP-FPM remote code execution vulnerability in NGINX configurations. Includes setup, usage,…

educationexploitationpenetration-testing+3
146 years ago
CVE-2026-32475-PoC preview

CVE-2026-32475-PoC

GitHubboreas37/cve-2026-32475-poc

PoC for CVE-2026-32475: Elementor Pro <=4.2.1 unauthenticated file upload to RCE. Stdlib-only Python.

exploitationpayload-developmentpenetration-testing+3
312 days ago
CVE-2026-73570 preview

CVE-2026-73570

GitHubjishino567/cve-2026-73570

Python PoC for CVE-2026-73570, an SMTP command injection in Zimbra. Sends malformed RCPT TO payloads to trigger shell command execution via…

email-securityexploitationpenetration-testing+3
212 days ago
CVE-2024-51567 preview

CVE-2024-51567

GitHubajayalf/cve-2024-51567

CVE-2024-51567 is a Python PoC exploit targeting an RCE vulnerability in CyberPanel v2.3.6’s upgrademysqlstatus endpoint, bypassing CSRF protections.

command-and-controleducationexploitation+3
51 year ago
CVE-2025-62593-PoC preview

CVE-2025-62593-PoC

GitHubboreas37/cve-2025-62593-poc

PoC for CVE-2025-62593: unauthenticated RCE in Ray (CISA KEV). Stdlib-only Python.

ai-securityexploitationpenetration-testing+2
219 days ago
CVE-2026-23744-MCPJAM-RCE-exploit preview

CVE-2026-23744-MCPJAM-RCE-exploit

GitHubdahalsamir/cve-2026-23744-mcpjam-rce-exploit

This Python proof-of-concept targets a vulnerable MCP (Model Context Protocol) service exposed by the target application. The vulnerability allows an…

exploitationpayload-generationpenetration-testing+2
3 months ago
CVE-2018-16763-Exploit-Python3 preview

CVE-2018-16763-Exploit-Python3

GitHubn3m1sys/cve-2018-16763-exploit-python3

Python 3 exploit for FuelCMS 1.4.1 Remote Code Execution (CVE-2018-16763). Unauthenticated RCE via crafted HTTP requests for penetration testing and…

exploitationpenetration-testingremote-access-tool+2
44 years ago
CVE-2026-58455-PoC preview

CVE-2026-58455-PoC

GitHubboreas37/cve-2026-58455-poc

PoC for CVE-2026-58455: Dockwatch <=0.6.567 unauthenticated RCE. Stdlib-only Python.

container-securityexploitationlabs-practice+3
116 days ago
CVE-2022-28906-POC preview

CVE-2022-28906-POC

GitHubfinnvle/cve-2022-28906-poc

Python proof-of-concept for unauthenticated OS command injection in TOTOLINK N600R, exploiting the langType parameter to execute arbitrary commands…

command-and-controlexploitationhardware-iot-security+3
112 days ago
CVE-2026-43914-PoC preview

CVE-2026-43914-PoC

GitHubboreas37/cve-2026-43914-poc

PoC for CVE-2026-43914: Vaultwarden <1.35.4 email-2FA brute-force bypass password oracle. Stdlib-only Python.

exploitationpassword-attackspenetration-testing+2
113 days ago
CVE-2018-7600-PoC preview

CVE-2018-7600-PoC

GitHubelkhaoudari/cve-2018-7600-poc

Python proof-of-concept for CVE-2018-7600 (Drupalgeddon2), a critical remote code execution vulnerability in Drupal 7. Designed for authorized…

ctfeducationexploitation+3
117 days ago
CVE-2025-54123 preview

CVE-2025-54123

GitHub0xk4rth1/cve-2025-54123

Python proof-of-concept for CVE-2025-54123, demonstrating command injection to RCE in Hoverfly middleware API with credential or token-based…

command-and-controleducationexploitation+3
22 months ago
Previous123…100Next
9 years ago