Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
405 results
CVE-2023-6702 preview

CVE-2023-6702

GitHubkaist-hacking/cve-2023-6702

Chrome Renderer 1day RCE via Type Confusion in Async Stack Trace (v8ctf submission)

binary-exploitationctfeducation+3
872 years ago
CVE-2024-21345 preview

CVE-2024-21345

GitHubexploits-forsale/cve-2024-21345

Proof-of-concept exploit for CVE-2024-21345, demonstrating a specific vulnerability with functional code for security testing and validation.

binary-exploitationexploitationpayload-development+3
772 years ago
VMware_ESXI_OpenSLP_PoCs preview

VMware_ESXI_OpenSLP_PoCs

GitHubdgh05t/vmware_esxi_openslp_pocs

CVE-2020-3992 & CVE-2019-5544

binary-exploitationexploitationpenetration-testing+2
675 years ago
CVE-2019-1579 preview

CVE-2019-1579

GitHubsecurifera/cve-2019-1579
binary-exploitationexploitationpenetration-testing+2
617 years ago
CVE-2022-26717-Safari-WebGL-Exploit preview

CVE-2022-26717-Safari-WebGL-Exploit

GitHubtheori-io/cve-2022-26717-safari-webgl-exploit

Proof-of-concept exploit for CVE-2022-26717, a use-after-free vulnerability in Safari's WebGL implementation, enabling remote code execution via…

binary-exploitationexploitationmemory-forensics+2
614 years ago
AutoGenerateXalanPayload preview

AutoGenerateXalanPayload

GitHubflowerwind/autogeneratexalanpayload

cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件

binary-exploitationexploitationpayload-generation+2
933 years ago
Chrome-V8-RCE-CVE-2021-38003 preview

Chrome-V8-RCE-CVE-2021-38003

GitHubspiralbl0ck/chrome-v8-rce-cve-2021-38003

CVE-2021-38003 exploits extracted from https://twitter.com/WhichbufferArda/status/1609604183535284224

binary-exploitationexploitationpayload-development+2
393 years ago
Switcheroo preview

Switcheroo

GitHubidan5x/switcheroo

Exploiting CVE-2016-4657 to JailBreak the Nintendo Switch

binary-exploitationeducationexploitation+3
568 years ago
CVE-2025-30397---Windows-Server-2025-JScript-RCE-Use-After-Free- preview

CVE-2025-30397---Windows-Server-2025-JScript-RCE-Use-After-Free-

GitHubmbanyamer/cve-2025-30397---windows-server-2025-jscript-rce-use-after-free-

Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397)

binary-exploitationexploitationpayload-generation+3
671 year ago
CVE-2019-9810-PoC preview

CVE-2019-9810-PoC

GitHubxuechiyaobai/cve-2019-9810-poc

Array.prototype.slice wrong alias information.

binary-exploitationeducationexploitation+2
677 years ago
CVE-2026-42533 preview

CVE-2026-42533

GitHubimbas007/cve-2026-42533

Exploit for nginx heap buffer overflow (CVE-2026-42533) providing pre-auth RCE via two-pass capture clobbering. Includes info leak, heap spray, and…

binary-exploitationexploitationinformation-gathering+4
352 months ago
CVE-2025-8088-Winrar-Tool preview

CVE-2025-8088-Winrar-Tool

GitHubonlytoxi/cve-2025-8088-winrar-tool

Advanced WinRAR Path Traversal Exploit Tool for CVE-2025-8088

binary-exploitationeducationexploitation+5
561 year ago
CVE-2022-22947- preview

CVE-2022-22947-

GitHub0730nophone/cve-2022-22947-

Spring Cloud Gateway Actuator API SpEL表达式注入命令执行(CVE-2022-22947) 注入哥斯拉内存马

command-and-controlexploitationmemory-forensics+3
594 years ago
CVE-2026-23918 preview

CVE-2026-23918

GitHubstriga-ai/cve-2026-23918

Double-free in Apache httpd mod_http2 stream cleanup leading to pre-auth RCE.

binary-exploitationeducationexploitation+3
324 months ago
DIR8xx_PoC preview

DIR8xx_PoC

GitHubembedi/dir8xx_poc

Proof-of-Concept exploits for D-Link DIR8xx routers

binary-exploitationembedded-systems-securityexploitation+3
379 years ago
CVE-2018-20250-WinRAR-ACE preview

CVE-2018-20250-WinRAR-ACE

GitHubeasis/cve-2018-20250-winrar-ace

Proof of concept code in C# to exploit the WinRAR ACE file extraction path (CVE-2018-20250).

binary-exploitationexploitationpayload-generation+3
217 years ago
Apache-Dubbo-Hessian2-CVE-2021-43297 preview

Apache-Dubbo-Hessian2-CVE-2021-43297

GitHublongofo/apache-dubbo-hessian2-cve-2021-43297

Demonstrates a proof-of-concept exploit for CVE-2021-43297, a deserialization vulnerability in Apache Dubbo's Hessian2 protocol, with provider and…

binary-exploitationexploitationexploit-frameworks+2
464 years ago
Project_CVE-2021-21985_PoC preview

Project_CVE-2021-21985_PoC

GitHubtestanull/project_cve-2021-21985_poc

Proof-of-concept exploit for CVE-2021-21985, a critical remote code execution vulnerability in VMware vCenter Server, with JNI-based payload…

binary-exploitationexploitationpenetration-testing+2
285 years ago
Previous1…678…23Next