Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
299 results
CVE-2025-68664-LangGrinch-PoC preview

CVE-2025-68664-LangGrinch-PoC

GitHubak-cybe/cve-2025-68664-langgrinch-poc

A testing framework to identify and demonstrate deserialization vulnerabilities in LangChain Core (<0.3.81). Educational use only

ai-securitycode-analysiseducation+6
3
8 months ago
PHPUnit_eval-stdin_RCE preview

PHPUnit_eval-stdin_RCE

GitHubludy-dev/phpunit_eval-stdin_rce

(CVE-2017-9841) PHPUnit_eval-stdin_php Remote Code Execution

code-analysisexploitationpenetration-testing+2
65 years ago
n8n-exploit-CVE-2025-68613-n8n-God-Mode-Ultimate preview

n8n-exploit-CVE-2025-68613-n8n-God-Mode-Ultimate

GitHubhackersatyamrastogi/n8n-exploit-cve-2025-68613-n8n-god-mode-ultimate

n8n God Mode Ultimate - CVE-2025-68613 Scanner v1.0.0 ║ ║ Workflow Automation Remote Code Execution

command-and-controleducationexploitation+8
58 months ago
cve-2025-3248-exploit preview

cve-2025-3248-exploit

GitHubdrackyjr/cve-2025-3248-exploit

A comprehensive Python exploitation framework for testing and demonstrating CVE-2025-3248, a critical unauthenticated remote code execution…

code-analysiscommand-and-controleducation+8
39 months ago
Athanasius preview

Athanasius

GitHubshyam999/athanasius

Framework for penetration testing. The software can identify everything from cross-site scripting to SQL injection. Developers can also use this…

password-attackspenetration-testingvulnerability-scanners+1
194 years ago
cve-2015-8103 preview

cve-2015-8103

GitHubcved-sources/cve-2015-8103

Docker container for CVE-2015-8103 exploitation targeting JBoss, part of a vulnerable container management framework for security testing.

container-securityexploitationvulnerability-analysis+2
5 years ago
phpMyAdmin-CVE-2020-5504-Exploit preview

phpMyAdmin-CVE-2020-5504-Exploit

GitHubcerberusmrxi/phpmyadmin-cve-2020-5504-exploit

Authorized SQL injection exploitation framework for CVE-2020-5504 in phpMyAdmin, featuring automated database enumeration, blind injection, proxy…

database-securityexploitationinformation-gathering+5
22 days ago
OWASP-mth3l3m3nt-framework preview

OWASP-mth3l3m3nt-framework

GitHubalienwithin/owasp-mth3l3m3nt-framework

OWASP Mth3l3m3nt Framework is a penetration testing aiding tool and exploitation framework. It fosters a principle of attack the web using the web as…

command-and-controlexploit-frameworkspayload-generation+3
1645 years ago
cve-2022-26134 preview

cve-2022-26134

GitHubcj-0107/cve-2022-26134

PoC for CVE-2022-26134, a Confluence Server OGNL injection vulnerability, built on the pocsuite3 framework for authorized security testing.

exploitationpayload-generationpenetration-testing+2
13 years ago
CVE-2021-21315-POC preview

CVE-2021-21315-POC

GitHubxmohamed0/cve-2021-21315-poc

Proof-of-concept exploit for CVE-2021-21315, demonstrating remote code execution in a web application framework. Intended for security testing and…

exploitationpayload-generationpenetration-testing+2
4 years ago
offsec-osgi-exploits preview

offsec-osgi-exploits

GitHubvisionspacetec/offsec-osgi-exploits

Collection of exploits targeting OSGi Java framework versions 3.1.1–3.20 for penetration testing and vulnerability exploitation.

exploitationpenetration-testingred-teaming+2
32 years ago
cve-2018-1273 preview

cve-2018-1273

GitHubcved-sources/cve-2018-1273

Docker container for CVE-2018-1273 exploitation lab, part of the Cved vulnerable environment management framework for security training and testing.

container-securityeducationexploitation+3
5 years ago
cve-2019-6340 preview

cve-2019-6340

GitHubcved-sources/cve-2019-6340

Docker container for CVE-2019-6340 exploitation lab, part of the Cved vulnerable container management framework for practicing Drupal security…

container-securityeducationexploitation+3
5 years ago
CVE-2019-11043 preview

CVE-2019-11043

GitHubfairyming/cve-2019-11043

Proof-of-concept exploit for CVE-2019-11043, a PHP-FPM underflow vulnerability, built on the pocsuite framework for automated web application…

exploitationpayload-developmentpenetration-testing+2
16 years ago
POC-CVE-2024-38820 preview

POC-CVE-2024-38820

GitHubkadamnayan/poc-cve-2024-38820

Proof-of-concept exploit for CVE-2024-38820, demonstrating locale-dependent case conversion bypass of Spring Framework DataBinder disallowedFields…

code-analysiseducationexploitation+3
11 months ago
xerosploit preview

xerosploit

GitHublionsec/xerosploit

Efficient and advanced man in the middle framework

exploitationinformation-gatheringnetwork-security+4
2.2k3 years ago
CVE-2026-82222 preview

CVE-2026-82222

GitHubghostlyrootb2h/cve-2026-82222

Exploit framework for CVE-2026-82222, an unauthenticated RCE in GiveWP WordPress plugin. Supports mass scanning, auto-detection, multi-threading,…

command-and-controlexploitationinformation-gathering+5
6 days ago
CVE-2022-22965 preview

CVE-2022-22965

GitHubosungjinwoo/cve-2022-22965

Proof-of-concept exploit and testing scripts for Spring4Shell (CVE-2022-22965), a Spring Framework remote code execution vulnerability, with bash and…

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
Previous1…789…17Next