Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1682 results
W3TotalChache preview

W3TotalChache

GitHubspyata123/w3totalchache

Testing for CVE-2019-6715 (Arbitrary File Read)/ CVE-2024-12365 (SSRF/Info Disclosure)

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2007-3831 preview

CVE-2007-3831

GitHubalt3kx/cve-2007-3831

PHP remote file inclusion in main.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5

exploitationinformation-gatheringpapers-research+3
8 years ago
CVE-2021-46417 preview

CVE-2021-46417

GitHubhenry4e36/cve-2021-46417

Franklin Fueling Systems Colibri Controller Module - Local File Inclusion

exploitationinformation-gatheringpenetration-testing+2
4 years ago
CVE-2020-25213 preview

CVE-2020-25213

GitHubb1ackros337/cve-2020-25213

Exploit for CVE-2020-25213 targeting WordPress File Manager, enabling remote code execution via crafted file upload.

exploitationpenetration-testingred-teaming+2
4 years ago
cve-2021-41773 preview

cve-2021-41773

GitHubtaldrid1/cve-2021-41773

Exploit for Apache HTTP Server path traversal and remote code execution vulnerability CVE-2021-41773, enabling unauthorized file access and command…

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2024-50509 preview

CVE-2024-50509

GitHubrandomrobbiebf/cve-2024-50509

Woocommerce Product Design <= 1.0.0 - Unauthenticated Arbitrary File Deletion

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
CVE-2020-3452 preview

CVE-2020-3452

GitHubsujaygr8/cve-2020-3452

Proof-of-concept exploit for CVE-2020-3452, a path traversal vulnerability in Cisco ASA and FTD devices, enabling unauthorized file read.

exploitationvulnerability-analysisweb-application-exploitation
5 years ago
CVE-2020-25134 preview

CVE-2020-25134

GitHubynsmroztas/cve-2020-25134

CVE-2020-25134 Authenticated Local File Inclusion in settings/format

exploitationinformation-gatheringpenetration-testing+2
5 years ago
CVE-2024-11042 preview

CVE-2024-11042

GitHubgothburz/cve-2024-11042

Proof-of-concept for In invoke-ai/invokeai version v5.0.2 Arbitrary File Deletion.

exploitationpenetration-testingred-teaming+2
1 year ago
CVE-2021-43798 preview

CVE-2021-43798

GitHubkatseyres2/cve-2021-43798

Proof-of-concept exploit for CVE-2021-43798, a Grafana directory traversal vulnerability enabling unauthorized file read on affected instances.

exploitationpenetration-testingvulnerability-analysis+1
2 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubredspy-sec/cve-2021-41773

Proof-of-concept exploit for CVE-2021-41773, an Apache HTTP Server path traversal vulnerability, enabling directory listing and file disclosure.

exploitationpenetration-testingreconnaissance+2
1 year ago
CVE-2021-29447 preview

CVE-2021-29447

GitHubandyhsu024/cve-2021-29447

Proof-of-concept exploit for CVE-2021-29447, a WordPress XML external entity (XXE) vulnerability allowing file disclosure and SSRF.

binary-exploitationexploitationpenetration-testing+2
3 years ago
cve-2018-6574 preview

cve-2018-6574

GitHubnikolat3sla/cve-2018-6574

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's 'go get' command, demonstrating exploitation of insecure…

exploitationpenetration-testingvulnerability-analysis+1
5 years ago
CVE-2026-4660-PoC preview

CVE-2026-4660-PoC

GitHubgouldnicholas/cve-2026-4660-poc

PoC for CVE-2026-4660: arbitrary file read via git checkout in hashicorp/go-getter

cloud-securitydevsecopsexploitation+3
4 months ago
CVE-2026-3844 preview

CVE-2026-3844

GitHubim-hanzou/cve-2026-3844

Breeze Cache WordPress <=2.4.4 allows unauthenticated file upload via fetch_gravatar_from_remote when local gravatar hosting is enabled.

exploitationpenetration-testingred-teaming+2
4 months ago
CVE-2023-4861-PoC preview

CVE-2023-4861-PoC

GitHubnoambouillet/cve-2023-4861-poc

Automated proof-of-concept for authenticated remote code execution in WordPress File Manager Pro (Filester) via arbitrary file upload, including…

exploitationpayload-developmentpenetration-testing+2
21 month ago
CVE-2026-3844 preview

CVE-2026-3844

GitHubsahmsec/cve-2026-3844

Python proof-of-concept for CVE-2026-3844, an unauthenticated arbitrary file upload in WordPress Breeze Cache plugin, enabling remote code execution.…

exploitationpayload-developmentpenetration-testing+3
3 months ago
CVE-2026-33725 preview

CVE-2026-33725

GitHubhakaioffsec/cve-2026-33725

Proof-of-concept exploit for CVE-2026-33725, achieving remote code execution and arbitrary file read via H2 JDBC INIT injection in Metabase…

exploitationpenetration-testingremote-access-trojan+2
254 months ago
Previous1…737475…94Next