Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
130 results
unrar-cve-2022-30333-poc preview

unrar-cve-2022-30333-poc

GitHubrbowes-r7/unrar-cve-2022-30333-poc

Proof-of-concept exploit for CVE-2022-30333 path traversal in unRAR, generating malicious .rar files to plant payloads at arbitrary locations.…

exploitationexploit-frameworkspayload-generation+3
14
4 years ago
CVE-2015-2900-Exploit preview

CVE-2015-2900-Exploit

GitHubsecurifera/cve-2015-2900-exploit

Proof-of-concept exploit and Metasploit module for CVE-2015-2900 targeting the MEDCIN Engine (medcinserv.exe) versions prior to 2.22.20142.166.

exploitationexploit-frameworkspayload-development+3
610 years ago
drupalgeddon2 preview

drupalgeddon2

GitHubjirojo2/drupalgeddon2

MSF exploit module for Drupalgeddon 2 (CVE-2018-7600 / SA-CORE-2018-002)

exploit-frameworkspayload-developmentpenetration-testing+3
58 years ago
exchange_proxylogon preview

exchange_proxylogon

GitHubmekhalleh/exchange_proxylogon

Module pack for #ProxyLogon (part. of my contribute for Metasploit-Framework) [CVE-2021-26855 && CVE-2021-27065]

exploit-frameworkspayload-developmentpenetration-testing-frameworks+2
45 years ago
CVE-2015-3224 preview

CVE-2015-3224

GitHub0x00-0x00/cve-2015-3224

Modification of Metasploit module for RCE in Ruby-On-Rails Console CVE-2015-3224

exploit-frameworkspayload-developmentpenetration-testing+3
28 years ago
CVE-2026-4692-trust-me-im-in-rdm preview

CVE-2026-4692-trust-me-im-in-rdm

GitHubsneakynachos/cve-2026-4692-trust-me-im-in-rdm

Proof-of-concept exploit for Firefox BrowsingContext authorization bypass (CVE-2026-4692), demonstrating forged IPC messages to set InRDMPane and…

exploitationexploit-frameworkspayload-development+4
11 month ago
web-penetration-drupal preview

web-penetration-drupal

GitHuberman-bolukbasi/web-penetration-drupal

Penetration test of a Drupal web app — CVE-2018-7600 (Drupalgeddon 2) exploited using Nmap, Burp Suite & Metasploit | Internship @ BB CyberSec

exploit-frameworkspenetration-testingreconnaissance+3
3 months ago
CVE-2004-1561 preview

CVE-2004-1561

GitHubdarrynb89/cve-2004-1561

Python port of a Metasploit exploit targeting CVE-2004-1561 for remote code execution. Designed for penetration testing and vulnerability validation…

exploitationexploit-frameworkspayload-development+3
16 years ago
Metasploit-Wordpress-Canto-Exploit-RCE preview

Metasploit-Wordpress-Canto-Exploit-RCE

GitHubpuppetma4ster/metasploit-wordpress-canto-exploit-rce

this is a metasploit exploit module for CVE-2024-25096 and CVE-2023-3452

exploit-frameworkspayload-developmentpenetration-testing+3
6 months ago
Apache-2.4.49-2.4.50-Traversal-Remote-Code-Execution-Exploit preview

Apache-2.4.49-2.4.50-Traversal-Remote-Code-Execution-Exploit

GitHubicmpoff/apache-2.4.49-2.4.50-traversal-remote-code-execution-exploit

This Metasploit module exploits an unauthenticated remote code execution vulnerability which exists in Apache version 2.4.49 (CVE-2021-41773). If…

exploit-frameworkspayload-developmentpenetration-testing-frameworks+3
14 years ago
CVE-2022-28108 preview

CVE-2022-28108

GitHubzeroethical/cve-2022-28108

Metasploit module exploiting CVE-2022-28108 in Selenium Grid for remote code execution, with content-type evasion and post-exploitation capabilities.

exploitationexploit-frameworkspayload-development+5
1 year ago
CVE-2020-1938-MSF-MODULE preview

CVE-2020-1938-MSF-MODULE

GitHubacodervic/cve-2020-1938-msf-module

Modified version of auxiliary/admin/http/tomcat_ghostcat, it can Read any file

exploitationexploit-frameworkspenetration-testing+2
5 years ago
ECE9069_SMBGhost_Exploit_CVE-2020-0796- preview

ECE9069_SMBGhost_Exploit_CVE-2020-0796-

GitHubvsai94/ece9069_smbghost_exploit_cve-2020-0796-

Description of Exploit SMBGhost CVE-2020-0796

exploitationexploit-frameworksnetwork-security+3
4 years ago
macro_pack preview
Archived

macro_pack

GitHubsevagas/macro_pack

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

exploit-frameworkslateral-movementpayload-generation+6
2.3k2 years ago
APOLOGEE preview
Archived

APOLOGEE

GitHubrosesecurity/apologee

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

authenticationexploitationexploit-frameworks+8
501 year ago
lscript preview
Archived

lscript

GitHubarismelachroinos/lscript

The LAZY script will make your life easier, and of course faster.

exploit-frameworksinformation-gatheringpassword-attacks+7
4.3k5 years ago
XAttacker preview

XAttacker

GitHubmoham3driahi/xattacker

X Attacker Tool ☣ Website Vulnerability Scanner & Auto Exploiter

exploit-frameworksinformation-gatheringpenetration-testing+2
1.8k2 years ago
ysoserial-modified preview

ysoserial-modified

GitHubpimps/ysoserial-modified

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.

exploit-frameworkspayload-developmentpenetration-testing-frameworks+1
1884 years ago
Previous1…5678Next