Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2030 results
CVE-2025-50565 preview

CVE-2025-50565

GitHubm0b1u3/cve-2025-50565

Proof-of-concept exploit for an SQL injection vulnerability in Doubo ERP 1.0, enabling remote attackers to extract sensitive database information.

database-securityinformation-gatheringpenetration-testing+2
1 year ago
CVE-2023-36644 preview

CVE-2023-36644

GitHubcaffeinated-labs/cve-2023-36644

Proof-of-concept exploit for CVE-2023-36644, demonstrating remote information disclosure via incorrect access control in ITB-GmbH TradePro v9.5…

exploitationinformation-gatheringpenetration-testing+3
2 years ago
CVE-2023-5070 preview

CVE-2023-5070

GitHubrandomrobbiebf/cve-2023-5070

Social Media Share Buttons & Social Sharing Icons <= 2.8.5 - Information Exposure

data-exfiltrationexploitationinformation-gathering+2
2 years ago
learning-management-system preview

learning-management-system

GitHubrandomrobbiebf/learning-management-system

Masteriyo - LMS for WordPress <= 1.6.7 - Sensitive Information Exposure

data-exfiltrationexploitationinformation-gathering+2
3 years ago
CVE-2024-8275 preview

CVE-2024-8275

GitHubp33d/cve-2024-8275

Exploit script for CVE-2024-8275, a critical unauthenticated SQL injection in The Events Calendar WordPress plugin, enabling database information…

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2023-20052 preview

CVE-2023-20052

GitHubcy83rr0h1t/cve-2023-20052

CVE-2023-20052 information leak vulnerability in the DMG file parser of ClamAV

exploitationinformation-gatheringmalware-analysis+2
3 years ago
CVE-2024-43018 preview

CVE-2024-43018

GitHubjoaosilva21/cve-2024-43018

Proof-of-concept for CVE-2024-43018: SQL injection in Piwigo 13.8.0 via unsanitized max_level and min_register parameters, enabling information…

code-analysisinformation-gatheringpenetration-testing+2
1 year ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubgunzf0x/cve-2023-23752

Go-based exploit for CVE-2023-23752 targeting Joomla CMS. Performs authenticated information disclosure and privilege escalation via a single…

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubsvaltheim/cve-2023-23752

Python exploit for Joomla! v4.2.8 unauthenticated information disclosure vulnerability (CVE-2023-23752). Extracts sensitive configuration data from…

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2023-47668 preview

CVE-2023-47668

GitHubnxploited/cve-2023-47668

Python exploit for CVE-2023-47668 that extracts sensitive log information from vulnerable Restrict Content WordPress plugin versions <= 3.2.7.

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2025-47226 preview

CVE-2025-47226

GitHubkoyomihack00/cve-2025-47226

This CVE - PoC about information on the CVEs I found.

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2023-36085_SISQUALWFM-Host-Header-Injection preview

CVE-2023-36085_SISQUALWFM-Host-Header-Injection

GitHubomershaik0/cve-2023-36085_sisqualwfm-host-header-injection

This repository contains information related CVE-2023-36085 a host header injection vulnerability discovered in SISQUALWFM version 7.1.319.103, which…

exploitationinformation-gatheringpenetration-testing+3
2 years ago
CVE-2024-1302---Badgermeter-moni-tool-Sensitive-information-exposure preview

CVE-2024-1302---Badgermeter-moni-tool-Sensitive-information-exposure

GitHubguillermogm4/cve-2024-1302---badgermeter-moni-tool-sensitive-information-exposure

Proof-of-concept exploit for CVE-2024-1302 demonstrating unauthenticated log file download in Badgermeter moni:tool, exposing sensitive information…

exploitationinformation-gatheringmisconfiguration+3
2 years ago
CVE-2023-3897 preview

CVE-2023-3897

GitHubjfriedli/cve-2023-3897

Exploit for CVE-2023-3897 enabling username enumeration via CAPTCHA bypass in On-premise SureMDM on Windows. Includes PoC script for local user…

captcha-bypassexploitationinformation-gathering+3
2 years ago
CVE-2024-12542-PoC preview

CVE-2024-12542-PoC

GitHubnxploited/cve-2024-12542-poc

Proof-of-concept exploit for CVE-2024-12542 targeting unauthenticated sensitive information exposure in WordPress linkID plugin via missing…

exploitationinformation-gatheringmisconfiguration+3
1 year ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubytxzx/cve-2023-23752

Python-based exploit for CVE-2023-23752 targeting Joomla 4.0.0-4.2.7 unauthorized REST API access, enabling sensitive information disclosure through…

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2023-23752 preview

CVE-2023-23752

GitHub0xx01/cve-2023-23752

A simple bash script to exploit Joomla! < 4.2.8 - Unauthenticated information disclosure

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2024-13513 preview

CVE-2024-13513

GitHubktn1990/cve-2024-13513

Oliver POS – A WooCommerce Point of Sale (POS) <= 2.4.2.3 - Sensitive Information Exposure to Privilege Escalation

exploitationinformation-gatheringpenetration-testing+3
1 year ago
Previous1234…100Next