Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13166 results
CVE-2025-8730 preview
Archived

CVE-2025-8730

GitHubbytereaper77/cve-2025-8730

Exploit demonstrating an authentication bypass vulnerability in the web interface of Belkin F9K1009 and F9K1010 routers.

vulnerability-analysisexploitationweb-application-exploitation+3
2
1 year ago
CVE-2025-8550 preview
Archived

CVE-2025-8550

GitHubbytereaper77/cve-2025-8550

XSS exploit for CVE-2025-8550 in atjiu pybbs ≤6.0.0

payload-generationvulnerability-analysisexploitation+3
311 months ago
CVE-2025-8471 preview
Archived

CVE-2025-8471

GitHubbytereaper77/cve-2025-8471

Exploit SQL injection in projectworlds Online Admissions System v1.0

vulnerability-analysisexploitationweb-application-exploitation+1
21 year ago
CVE-2025-8191 preview
Archived

CVE-2025-8191

GitHubbytereaper77/cve-2025-8191

A repository containing a PoC exploit for CVE‑2025‑8191 in Swagger UI, leveraging XSS injection to exfiltrate session cookies.

vulnerability-analysisexploitationweb-application-exploitation+3
21 year ago
CVE-2025-7840 preview
Archived

CVE-2025-7840

GitHubbytereaper77/cve-2025-7840

Proof‑of‑concept exploit for CVE‑2025‑7840 that injects malicious payloads into the Firstname parameter of a reservation form to trigger XSS

payload-generationvulnerability-analysisexploitation+3
21 year ago
CVE-2025-7795 preview
Archived

CVE-2025-7795

GitHubbytereaper77/cve-2025-7795

Proof-of-Concept exploit for CVE-2025-7795 – A buffer overflow vulnerability affecting certain Tenda routers. The exploit sends crafted POST requests…

embedded-systems-securityiot-securityvulnerability-analysis+3
21 year ago
CVE-2025-7769 preview
Archived

CVE-2025-7769

GitHubbytereaper77/cve-2025-7769

PoC to inject a command via the DEVICE_PING endpoint

vulnerability-analysisexploitationweb-application-exploitation+3
11 year ago
CVE-2025-7766 preview
Archived

CVE-2025-7766

GitHubbytereaper77/cve-2025-7766

PoC exploit for CVE-2025-7766 – XXE vulnerability leading to potential RCE.

vulnerability-analysisexploitationweb-application-exploitation+2
11 year ago
CVE-2025-7753 preview
Archived

CVE-2025-7753

GitHubbytereaper77/cve-2025-7753

PoC Exploit for CVE-2025-7753 — Time-Based SQL Injection in Online Appointment Booking System 1.0 via the username parameter. Exploit written in C…

vulnerability-analysisexploitationweb-application-exploitation+1
21 year ago
CVE-2025-6860 preview
Archived

CVE-2025-6860

GitHubbytereaper77/cve-2025-6860

A proof‑of‑concept command‑line tool in C for detecting the SQL injection vulnerability .

vulnerability-scannerspayload-generationexploitation+2
21 year ago
CVE-2025-6082 preview
Archived

CVE-2025-6082

GitHubbytereaper77/cve-2025-6082

Proof‑of‑Concept exploits the Full Path Disclosure bug in the “Birth Chart Compatibility” WordPress plugin (<=v2.0)

reconnaissancevulnerability-analysisexploitation+3
11 year ago
CVE-2025-5964- preview
Archived

CVE-2025-5964-

GitHubbytereaper77/cve-2025-5964-

C PoC language for emulating path traversal vulnerability (CVE-2025-5964) in M-Files25.6.14925.0

vulnerability-analysisexploitationweb-application-exploitation+3
21 year ago
CVE-2025-59342 preview
Archived

CVE-2025-59342

GitHubbytereaper77/cve-2025-59342

Exploit Path Traversal in esm-dev

vulnerability-analysisexploitationweb-application-exploitation+2
111 months ago
CVE-2025-54769 preview
Archived

CVE-2025-54769

GitHubbytereaper77/cve-2025-54769

A C‑based proof‑of‑concept exploit for CVE‑2025‑54769, automating the creation and upload of a malicious Perl CGI script to LPAR2RRD’s upgrade…

payload-generationvulnerability-analysisexploitation+3
21 year ago
CVE-2025-54589 preview
Archived

CVE-2025-54589

GitHubbytereaper77/cve-2025-54589

PoC for CVE-2025-54589 – a reflected XSS vulnerability in Copyparty ≤ 1.18.6.

vulnerability-analysisexploitationweb-application-exploitation+2
21 year ago
CVE-2025-41373 preview
Archived

CVE-2025-41373

GitHubbytereaper77/cve-2025-41373

PoC for CVE-2025-41373 Authenticated SQL Injection in Gandia Integra Total v2.1.2217.3–4.4.2236.1

vulnerability-analysisexploitationweb-application-exploitation+2
21 year ago
CVE-2025-32429 preview
Archived

CVE-2025-32429

GitHubbytereaper77/cve-2025-32429

Exploit for CVE-2025-32429 – SQLi in XWiki REST API (getdeleteddocuments.vm).

vulnerability-analysisexploitationweb-application-exploitation+2
101 year ago
CVE-2025-11077 preview
Archived

CVE-2025-11077

GitHubbytereaper77/cve-2025-11077

Exploit blind SQL Injection in (Online Learning Management System)

vulnerability-analysisexploitationweb-application-exploitation+2
210 months ago
Previous1…727728729…732Next