Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1263 results
ACEDcup preview

ACEDcup

GitHubgrrrdog/acedcup

Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)

exploitationpayload-generationpenetration-testing+2
3710 years ago
CVE-2015-6967 preview

CVE-2015-6967

GitHubdix0nym/cve-2015-6967

Python exploit script for CVE-2015-6967, enabling authenticated arbitrary file upload in Nibbleblog 4.0.3 with custom payload support.

exploitationpayload-generationpenetration-testing+2
155 years ago
CVE-2025-59287-WSUS preview

CVE-2025-59287-WSUS

GitHubtecxx/cve-2025-59287-wsus

PowerShell proof-of-concept exploit for CVE-2025-59287 targeting WSUS servers. Automates payload generation with ysoserial.net and triggers a reverse…

exploitationpayload-generationpenetration-testing+3
1811 months ago
CVE-2019-16113 preview

CVE-2019-16113

GitHubcybervaca/cve-2019-16113

Python exploit script for CVE-2019-16113, an authenticated remote code execution vulnerability in Bludit CMS 3.9.2+, with reverse shell payload…

exploitationpayload-generationpenetration-testing+3
136 years ago
CVE-2018-15982_EXP_IE preview

CVE-2018-15982_EXP_IE

GitHubjas502n/cve-2018-15982_exp_ie

Exploit generator for CVE-2018-15982 (Adobe Flash Player) that produces SWF and HTML files for remote code execution via crafted Flash objects.

exploitationpayload-generationpenetration-testing+2
127 years ago
CVE-2017-12149 preview

CVE-2017-12149

GitHubjreppiks/cve-2017-12149

Python script exploiting JBoss Java deserialization RCE (CVE-2017-12149) using ysoserial for dynamic payload generation. Requires Java runtime.

exploitationpayload-generationpenetration-testing+2
147 years ago
CVE-2024-21006_jar preview

CVE-2024-21006_jar

GitHublightr3d/cve-2024-21006_jar

Java-based exploit for CVE-2024-21006, delivering a payload via LDAP to a target IP and port. Includes compiled JAR and source for customization.

exploitationpayload-generationpenetration-testing+2
162 years ago
CVE-2018-0802_CVE-2017-11882 preview

CVE-2018-0802_CVE-2017-11882

GitHublikekabin/cve-2018-0802_cve-2017-11882

Proof-of-concept exploit generator for CVE-2017-11882 and CVE-2018-0802, crafting malicious RTF files to execute arbitrary commands on target systems…

exploitationpayload-generationpenetration-testing+2
118 years ago
CVE-2018-7600-Drupal-0day-RCE preview

CVE-2018-7600-Drupal-0day-RCE

GitHubdr-iman/cve-2018-7600-drupal-0day-rce

Perl-based remote code execution exploit targeting CVE-2018-7600 in Drupal CMS, enabling payload upload and server compromise.

exploitationpayload-generationpenetration-testing+2
78 years ago
CVE-2023-38831-winrar-expoit-simple-Poc preview

CVE-2023-38831-winrar-expoit-simple-Poc

GitHubahmed-fa7im/cve-2023-38831-winrar-expoit-simple-poc

CVE-2023-38831 winrar exploit generator and get reverse shell

exploitationpayload-generationpenetration-testing+3
113 years ago
CVE-2020-17530-strust2-061 preview

CVE-2020-17530-strust2-061

GitHubfengzihk/cve-2020-17530-strust2-061

Exploit for CVE-2020-17530 (Apache Struts2 S2-061) vulnerability. Provides remote code execution payload generation and testing against vulnerable…

exploitationpayload-generationpenetration-testing+2
75 years ago
CVE-2026-27540 preview

CVE-2026-27540

GitHubwinrarzipsexploit/cve-2026-27540

Python exploit suite for CVE-2026-27540, an unauthenticated file upload RCE in the WooCommerce Wholesale Lead Capture plugin, with fingerprinting,…

exploitationpayload-generationpenetration-testing+5
24 days ago
CVE-2024-21546 preview

CVE-2024-21546

GitHubajdumanhug/cve-2024-21546

This Python exploit script targets a vulnerable Laravel Filemanager created by UniSharp, which allows authenticated users to bypass file restrictions…

exploitationpayload-generationpenetration-testing+3
51 year ago
Follina-CVE-2022-30190-POC preview

Follina-CVE-2022-30190-POC

GitHubitsnee/follina-cve-2022-30190-poc

Proof-of-concept exploit for CVE-2022-30190 (Follina) that generates malicious Word documents with remote payload hosting for calc.exe execution.

exploitationpayload-generationpenetration-testing+2
64 years ago
CVE-2018-3191 preview

CVE-2018-3191

GitHubm00zh33/cve-2018-3191

Proof-of-concept exploit for CVE-2018-3191 targeting WebLogic Server via JNDI injection. Delivers a JAR payload to trigger remote code execution…

exploitationpayload-generationpenetration-testing+2
17 years ago
WPS-CVE-2022-24934 preview

WPS-CVE-2022-24934

GitHubmagicpipersec/wps-cve-2022-24934

PoC exploit server for CVE-2022-24934 that delivers a malicious payload via a fake WPS Update Server, targeting the wpsupdate.exe process for…

exploitationpayload-generationpenetration-testing+3
54 years ago
CVE-2024-21762_FortiNet_PoC preview

CVE-2024-21762_FortiNet_PoC

GitHubabrewer251/cve-2024-21762_fortinet_poc

Proof-of-concept scanner targeting CVE-2024-21762 in FortiOS SSL VPN’s /remote/hostcheck_validate endpoint with reverse shell payload delivery.

exploitationpayload-generationpenetration-testing+3
41 year ago
log4j-payload-generator preview

log4j-payload-generator

GitHubyesspider-hacker/log4j-payload-generator

log4j-paylaod generator : A generic payload generator for Apache log4j RCE CVE-2021-44228

exploitationpayload-generationpenetration-testing+2
44 years ago
Previous123…71Next