Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
171 results
CVE-2024-21413 preview

CVE-2024-21413

GitHubshubhamkanhere307/cve-2024-21413

This script is the Proof of Concept (PoC) of the CVE-2024-21413, a significant security vulnerability discovered in the Microsoft Windows Outlook…

exploitationpayload-generationpenetration-testing+3
2 years ago
CVE-2024-21378 preview

CVE-2024-21378

GitHubd0rb/cve-2024-21378

This repository contains an exploit for targeting Microsoft Outlook through Exchange Online, leveraging a vulnerability to execute arbitrary code via…

educationemail-securityexploitation+4
92 years ago
CVE-2025-53770 preview

CVE-2025-53770

GitHubrukshanaalikhan/cve-2025-53770

A critical zero-day vulnerability CVE‑2025‑53770 has been actively exploited in the wild against on-premises Microsoft SharePoint Server. Dubbed…

exploitationpenetration-testingred-teaming+2
1 year ago
WebView2-Cookie-Stealer preview

WebView2-Cookie-Stealer

GitHubmrd0x/webview2-cookie-stealer

Injects JavaScript keylogger into WebView2 pages to capture keystrokes and exfiltrate cookies from Microsoft authentication sessions via HTTP GET…

data-exfiltrationinformation-gatheringpassword-attacks+2
2654 years ago
CVE-2025-27210_NodeJS_Path_Traversal_Exploit preview

CVE-2025-27210_NodeJS_Path_Traversal_Exploit

GitHubabsholi7ly/cve-2025-27210_nodejs_path_traversal_exploit

(PoC) CVE-2025-27210, a precise Path Traversal vulnerability affecting Node.js applications running on Microsoft Windows. This vulnerability…

exploitationinformation-gatheringpenetration-testing+2
21 year ago
CVE-2026-55040 preview

CVE-2026-55040

GitHubsfewer-r7/cve-2026-55040

Proof-of-concept exploit for Microsoft SharePoint CVE-2026-55040 that forges JWT tokens, bypasses authentication, auto-discovers metadata, and…

authentication-authorizationexploitationimpersonation-tools+4
5210 days ago
CVE-2021-34473 preview

CVE-2021-34473

GitHubp2-98/cve-2021-34473

CVE-2021-34473 Microsoft Exchange Server Remote Code Execution Vulnerability

exploitationpenetration-testingred-teaming+2
305 years ago
CVE-2025-59287-PoC preview

CVE-2025-59287-PoC

GitHubm507/cve-2025-59287-poc

Unauthenticated RCE PoC in Microsoft Windows Server Update Service (WSUS) - CVE-2025-59287 & CVE-2023-35317

exploitationpayload-generationpenetration-testing+3
148 months ago
CVE-2022-41082 preview

CVE-2022-41082

GitHubsoltanali0/cve-2022-41082

CVE-2022-41082-poc

command-and-controlexploitationpenetration-testing+3
31 year ago
CVE-2022-41082-POC preview

CVE-2022-41082-POC

GitHubbigherocenter/cve-2022-41082-poc
exploitationpayload-developmentpenetration-testing+3
13 years ago
cve-2017-8760 preview

cve-2017-8760

GitHubvoraka/cve-2017-8760
educationexploitationpayload-generation+3
7 years ago
proxylogon-exploit preview
Archived

proxylogon-exploit

GitHubpraetorian-inc/proxylogon-exploit

Proof-of-concept exploit for CVE-2021-26855 and CVE-2021-27065. Unauthenticated RCE in Exchange.

exploitationpayload-generationpenetration-testing+3
525 years ago
OWASSRF-CVE-2022-41082-POC preview

OWASSRF-CVE-2022-41082-POC

GitHubbalki97/owassrf-cve-2022-41082-poc

PoC for the CVE-2022-41080 , CVE-2022-41082 and CVE-2022-41076 Vulnerabilities Affecting Microsoft Exchange Servers

exploitationprivilege-escalationvulnerability-analysis+1
933 years ago
Deathnote preview

Deathnote

GitHubmalwareman007/deathnote

Proof of Concept of CVE-2022-30190

command-and-controlexploitationpayload-generation+3
383 years ago
ProxyLogon preview

ProxyLogon

GitHubkh4sh3i/proxylogon

ProxyLogon (CVE-2021-26855+CVE-2021-27065) Exchange Server RCE (SSRF->GetWebShell)

exploitationinformation-gatheringpenetration-testing+3
93 years ago
proxylogscan preview

proxylogscan

GitHubdwisiswant0/proxylogscan

A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the authentication and impersonating as…

exploitationinformation-gatheringpenetration-testing+3
1644 years ago
CVE-2026-45504 preview

CVE-2026-45504

GitHubhawktrace/cve-2026-45504

CVE-2026-45504 Microsoft Exchange File Read

exploitationinformation-gatheringpenetration-testing+2
611 month ago
CVE-2021-42321 preview

CVE-2021-42321

GitHubdarksprings/cve-2021-42321

Microsoft Exchange Server Poc

exploitationinformation-gatheringpenetration-testing+2
834 years ago
Previous1234…10Next