Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
210 results
cve-2017-7269 preview

cve-2017-7269

GitHubzcgonvh/cve-2017-7269

fixed msf module for cve-2017-7269

exploitationexploit-frameworkspayload-development+3
135
9 years ago
CVE-2017-10271 preview

CVE-2017-10271

GitHubkkirsche/cve-2017-10271

Python and Metasploit exploit for Oracle WebLogic WLS-WSAT deserialization vulnerability (CVE-2017-10271) with detection scanning and remote code…

exploitationexploit-frameworkspayload-generation+3
1293 years ago
CVE_2020_2546 preview

CVE_2020_2546

GitHubhktalent/cve_2020_2546

CVE-2020-2546,CVE-2020-2915 CVE-2020-2801 CVE-2020-2798 CVE-2020-2883 CVE-2020-2884 CVE-2020-2950 WebLogic T3 payload exploit poc python3,

exploitationexploit-frameworkspayload-development+3
1333 years ago
CVE-2017-11882-metasploit preview

CVE-2017-11882-metasploit

GitHub0x09al/cve-2017-11882-metasploit

This is a Metasploit module which exploits CVE-2017-11882 using the POC released here : https://embedi.com/blog/skeleton-closet-ms-office-vulnerabilit…

exploitationexploit-frameworkspayload-generation+3
988 years ago
wasmforge preview

wasmforge

GitHubpraetorian-inc/wasmforge

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

binary-analysiscommand-and-controlexploit-frameworks+9
1292 months ago
Richsploit preview

Richsploit

GitHubredtimmy/richsploit

Exploitation toolkit for RichFaces

exploitationexploit-frameworkspayload-generation+4
1052 years ago
cisco_asa_research preview

cisco_asa_research

GitHubjbaines-r7/cisco_asa_research

Cisco ASA Software and ASDM Security Research

exploitationexploit-frameworksinformation-gathering+7
873 years ago
cloudrasp-log4j2 preview

cloudrasp-log4j2

GitHubboundaryx/cloudrasp-log4j2

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

defensive-toolsexploit-frameworksvulnerability-analysis+1
1264 years ago
Microsoft-Office-Word-MSHTML-Remote-Code-Execution-Exploit preview

Microsoft-Office-Word-MSHTML-Remote-Code-Execution-Exploit

GitHub34zy/microsoft-office-word-mshtml-remote-code-execution-exploit

Exploits CVE-2021-40444 in Microsoft Office Word to achieve remote code execution through the MSHTML engine by injecting malicious content into a…

exploitationexploit-frameworkspayload-development+4
654 years ago
Thunderstorm preview

Thunderstorm

GitHubjoelgmsec/thunderstorm

Modular framework to exploit UPS devices

exploitationexploit-frameworkshardware-iot-security+4
653 years ago
CVE-2022-39197-POC preview

CVE-2022-39197-POC

GitHubxzajyjs/cve-2022-39197-poc

CVE-2022-39197(CobaltStrike XSS <=4.7) POC

command-and-controlexploit-frameworkspenetration-testing+3
463 years ago
cve-2026-26114-poc preview

cve-2026-26114-poc

GitHubhuynambka/cve-2026-26114-poc

Proof-of-concept exploit for CVE-2026-26114, a remote code execution vulnerability in Microsoft SharePoint, with a Python PoC and Metasploit module…

command-and-controlexploitationexploit-frameworks+5
231 month ago
Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201 preview

Glass-Cage-iOS18-CVE-2025-24085-CVE-2025-24201

GitHubjgoyd/glass-cage-ios18-cve-2025-24085-cve-2025-24201

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then…

exploitationexploit-frameworksios-security+8
417 months ago
CVE-2022-41040-metasploit-ProxyNotShell preview

CVE-2022-41040-metasploit-ProxyNotShell

GitHubtaroballzchen/cve-2022-41040-metasploit-proxynotshell

the metasploit script(POC) about CVE-2022-41040. Microsoft Exchange are vulnerable to a server-side request forgery (SSRF) attack. An authenticated…

exploitationexploit-frameworkspenetration-testing+3
353 years ago
nGixshell preview

nGixshell

GitHubmateusverass/ngixshell

nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others)

command-and-controlexploit-frameworkspayload-development+8
233 months ago
fortilogger_arbitrary_fileupload preview

fortilogger_arbitrary_fileupload

GitHuberberkan/fortilogger_arbitrary_fileupload

CVE-2021-3378 | FortiLogger - Unauthenticated Arbitrary File Upload (Metasploit)

exploitationexploit-frameworkspenetration-testing+2
235 years ago
CVE-2021-36260-metasploit preview

CVE-2021-36260-metasploit

GitHubtaroballzchen/cve-2021-36260-metasploit

the metasploit script(POC) about CVE-2021-36260

command-and-controlexploitationexploit-frameworks+3
204 years ago
CVE-2021-22005-metasploit preview

CVE-2021-22005-metasploit

GitHubtaroballzchen/cve-2021-22005-metasploit

the metasploit script(POC/EXP) about CVE-2021-22005 VMware vCenter Server contains an arbitrary file upload vulnerability

exploitationexploit-frameworkspayload-development+3
224 years ago
Previous1…678…12Next