Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
5041 results
CVE-2020-29254 preview

CVE-2020-29254

GitHubs1lkys/cve-2020-29254

TikiWiki 21.2 allows to edit templates without the use of a CSRF protection.

educationexploitationmisconfiguration+3
12 years ago
CVE-2018-9958--Exploit preview

CVE-2018-9958--Exploit

GitHubt3rabyt3-zz/cve-2018-9958--exploit

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is…

binary-exploitationexploitationpenetration-testing+2
18 years ago
CVE-2023-38646 preview

CVE-2023-38646

GitHubzenmovie/cve-2023-38646

Proof of Concept for CVE-2023-38646

exploitationpayload-developmentpenetration-testing+2
13 years ago
CVE-2023-21887 preview

CVE-2023-21887

GitHubzwxxb/cve-2023-21887

Scans a list of URLs for CVE-2023-46805 and exploits CVE-2023-21887 to achieve remote code execution on Ivanti products.

exploitationpenetration-testingreconnaissance+2
22 years ago
CVE-2024-0204 preview

CVE-2024-0204

GitHubm-cetin/cve-2024-0204

This script exploits the CVE-2024-0204 vulnerability in Fortra GoAnywhere MFT, allowing the creation of unauthorized administrative users, for…

authentication-authorizationeducationexploitation+3
22 years ago
CVE-2025-20393 preview

CVE-2025-20393

GitHubcyberleelawat/cve-2025-20393

Cisco is aware of a potential vulnerability.  Cisco is currently investigating and will update these details as appropriate as more…

educationexploitationinformation-gathering+4
28 months ago
CVE-2025-24893-PoC preview

CVE-2025-24893-PoC

GitHubbreakingrohit/cve-2025-24893-poc

Proof of Concept for CVE-2025-24893 demonstrating unauthenticated remote command execution in XWiki through unsafe server-side template evaluation.

command-and-controleducationexploitation+4
28 months ago
CVE-2026-0740 preview

CVE-2026-0740

GitHubmurrez/cve-2026-0740

Exploit script for CVE-2026-0740 targeting Ninja Forms file upload endpoints to upload a PHP shell, scanning a list of URLs and logging successful…

exploitationvulnerability-scannersweb-application-exploitation+1
14 months ago
CVE-2025-59528 preview

CVE-2025-59528

GitHubvanhari/cve-2025-59528

CVE-2025-59528 Proof of Concept

educationexploitationpenetration-testing+2
14 months ago
CVE-2023-5808 preview

CVE-2023-5808

GitHubarszilla/cve-2023-5808

Exploit for CVE-2023-5808, an IDOR in Hitachi NAS SMU Backup & Restore, allowing unauthorized download of sensitive configuration backups.

data-exfiltrationexploitationinformation-gathering+3
22 years ago
CVE-2025-22710 preview

CVE-2025-22710

GitHubdottak/cve-2025-22710

PoC of CVE-2025-22710

code-analysisexploitationpenetration-testing+2
21 year ago
Golang-CVE-2021-44077-POC preview

Golang-CVE-2021-44077-POC

GitHubpizza-power/golang-cve-2021-44077-poc

Golang Proof of Concept Exploit for CVE-2021-44077: PreAuth RCE in ManageEngine ServiceDesk Plus < 11306

exploitationpayload-generationpenetration-testing+3
23 years ago
CVE-2025-24659 preview

CVE-2025-24659

GitHubdottak/cve-2025-24659

PoC of CVE-2025-24659

code-analysisexploitationpenetration-testing+2
11 year ago
CVE-2023-22524 preview

CVE-2023-22524

GitHubimperva/cve-2023-22524

Proof-of-concept exploit for CVE-2023-22524, a remote code execution vulnerability in Atlassian Companion for macOS, demonstrating bypass of…

educationexploitationpapers-research+2
12 years ago
CVE-2021-27651 preview

CVE-2021-27651

GitHuborangmuda/cve-2021-27651

bypass all stages of the password reset flow

authenticationcode-analysisexploitation+3
14 years ago
CVE-2023-22527-POC preview

CVE-2023-22527-POC

GitHubmaanvader/cve-2023-22527-poc

Atlassian Confluence Remote Code Execution(RCE) Proof Of Concept

educationexploitationlabs-practice+3
12 years ago
CVE-2022-32114 preview

CVE-2022-32114

GitHubbypazs/cve-2022-32114

An unrestricted file upload vulnerability in the Add New Assets function of Strapi v4.1.12 allows attackers to execute arbitrary code via a crafted…

exploitationpenetration-testingvulnerability-analysis+2
14 years ago
CVE-2021-22204-Gitlab preview

CVE-2021-22204-Gitlab

GitHubph-arm/cve-2021-22204-gitlab

Modification of gitlab exploit anything under 13.10

command-and-controlexploitationpenetration-testing+3
24 years ago
Previous1…919293…100Next