Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
171 results
CVE-2025-53770 preview

CVE-2025-53770

GitHubmuhammadwaseem29/cve-2025-53770

Unauthenticated Remote Code Execution via unsafe deserialization in Microsoft SharePoint Server (CVE-2025-53770)

code-analysisexploitationpayload-development+3
58
1 year ago
CVE-2022-41040-metasploit-ProxyNotShell preview

CVE-2022-41040-metasploit-ProxyNotShell

GitHubtaroballzchen/cve-2022-41040-metasploit-proxynotshell

the metasploit script(POC) about CVE-2022-41040. Microsoft Exchange are vulnerable to a server-side request forgery (SSRF) attack. An authenticated…

exploitationexploit-frameworkspenetration-testing+3
353 years ago
Microsoft_Exchange_Server_SSRF_CVE-2021-26855 preview

Microsoft_Exchange_Server_SSRF_CVE-2021-26855

GitHubconjojo/microsoft_exchange_server_ssrf_cve-2021-26855

Microsoft Exchange Server SSRF漏洞(CVE-2021-26855)

exploitationpenetration-testingreconnaissance+2
355 years ago
ProxyLogon preview

ProxyLogon

GitHubrickgeex/proxylogon

ProxyLogon is the formally generic name for CVE-2021-26855, a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the…

authenticationeducationexploitation+3
335 years ago
webdav_exploit preview

webdav_exploit

GitHubeliuha/webdav_exploit

An exploit for Microsoft IIS 6.0 CVE-2017-7269

exploitationpenetration-testingred-teaming+2
229 years ago
CVE-2024-21413 preview

CVE-2024-21413

GitHubthemehackers/cve-2024-21413

CVE-2024-21413 | Microsoft Outlook Remote Code Execution Vulnerability PoC

email-securityexploitationpayload-generation+3
251 year ago
proxylogon preview

proxylogon

GitHubhakivvi/proxylogon

RCE exploit for Microsoft Exchange Server (CVE-2021-26855).

exploitationpayload-developmentpenetration-testing+3
224 years ago
CVE-2020-0688 preview

CVE-2020-0688

GitHubmrtiz/cve-2020-0688

Remote Code Execution on Microsoft Exchange Server through fixed cryptographic keys

educationexploitationpayload-development+3
215 years ago
follina preview

follina

GitHubnoxtal/follina

All about CVE-2022-30190, aka follina, that is a RCE vulnerability that affects Microsoft Support Diagnostic Tools (MSDT) on Office apps such as…

command-and-controlexploitationpayload-generation+3
214 years ago
CVE-2021-40444 preview

CVE-2021-40444

GitHubozergoker/cve-2021-40444

Microsoft MSHTML Remote Code Execution Vulnerability CVE-2021-40444

configuration-auditingeducationexploitation+2
194 years ago
Microsoft-Edge-Information-Disclosure preview

Microsoft-Edge-Information-Disclosure

GitHubabsholi7ly/microsoft-edge-information-disclosure

CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

data-exfiltrationexploitationinformation-gathering+3
172 years ago
CVE-2022-30190 preview

CVE-2022-30190

GitHubaminetitrofine/cve-2022-30190

Follina (CVE-2022-30190) is a Microsoft Office zero-day vulnerability that has recently been discovered. It’s a high-severity vulnerability that…

command-and-controlexploitationpayload-generation+4
123 years ago
CVE-2023-24955-PoC preview

CVE-2023-24955-PoC

GitHubformer-farmer/cve-2023-24955-poc

Exploit for Microsoft SharePoint 2019

exploitationpayload-generationpenetration-testing+2
132 years ago
ProxyLogon-CVE-2021-26855 preview

ProxyLogon-CVE-2021-26855

GitHubmil1200/proxylogon-cve-2021-26855

RCE exploit for ProxyLogon vulnerability in Microsoft Exchange

command-and-controlexploitationpenetration-testing+3
95 years ago
CVE-2017-0199 preview

CVE-2017-0199

GitHubexploit-install/cve-2017-0199

Exploit toolkit CVE-2017-0199 - v2.0 is a handy python script which provides a quick and effective way to exploit Microsoft RTF RCE. It could…

command-and-controlexploitationpayload-development+3
79 years ago
FollinaXploit preview

FollinaXploit

GitHubabbarhissarh/follinaxploit

A Command Line based python tool for exploit Zero-Day vulnerability in MSDT (Microsoft Support Diagnostic Tool) also know as 'Follina' CVE-2022-30190.

command-and-controlexploitationpayload-generation+3
83 years ago
CVE-2021-40444-POC preview

CVE-2021-40444-POC

GitHubkagura-maru/cve-2021-40444-poc

An attempt to reproduce Microsoft MSHTML Remote Code Execution (RCE) Vulnerability and using Metasploit Framework.

command-and-controlexploitationexploit-frameworks+4
104 years ago
CVE-2026-50522 preview

CVE-2026-50522

GitHubdarses/cve-2026-50522

Microsoft SharePoint CVE-2026-50522

exploitationpayload-generationpenetration-testing+4
21 days ago
Previous1…456…10Next