Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
38 results
CVE-2026-3227-TP-Link-authenticated-RCE preview

CVE-2026-3227-TP-Link-authenticated-RCE

GitHubdo4choo/cve-2026-3227-tp-link-authenticated-rce

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

binary-exploitationeducationexploitation+6
43
3 months ago
Gitea-Git-Hooks-RCE-CVE-2020-14144- preview

Gitea-Git-Hooks-RCE-CVE-2020-14144-

GitHubmohnad-al-saif/gitea-git-hooks-rce-cve-2020-14144-

Gitea versions 1.1.0 → 1.12.5 allow authenticated users with "May create git hooks" permission to inject arbitrary shell commands into post-receive…

educationexploitationpayload-development+3
7 months ago
Gogs_RCE preview

Gogs_RCE

GitHubjas502n/gogs_rce

Exploit for Gogs RCE (CVE-2018-18925) leveraging session forgery and Git hook injection to achieve arbitrary command execution with root privileges.

authentication-authorizationexploitationpayload-development+4
166 years ago
CVE-2026-90817 preview

CVE-2026-90817

GitHubmurrez/cve-2026-90817

Python checker and exploit hook for CVE-2026-90817, a critical unauthenticated REDCap RCE via survey __passthru routing, with mass scanning and FOFA…

exploitationinformation-gatheringpenetration-testing+5
219 days ago
CVE-2024-44625-Gogs-RCE-0.13.0 preview

CVE-2024-44625-Gogs-RCE-0.13.0

GitHubbatj44/cve-2024-44625-gogs-rce-0.13.0

Exploit for CVE-2024-44625 in Gogs 0.13.0, achieving remote code execution via symlink-follow to create a git hook, with reverse and bind shell modes.

exploitationpayload-developmentpenetration-testing+3
1 month ago
CVE-2020-6514 preview

CVE-2020-6514

GitHubhasan-khalil/cve-2020-6514

Exploit for CVE-2020-6514 targeting WebRTC SCTP memory corruption in Android applications. Uses Frida to hook native functions and alter SCTP packets…

android-securitybinary-exploitationdynamic-analysis-sandboxing+4
26 years ago
cve-2024-32002-submodule-rce preview

cve-2024-32002-submodule-rce

GitHubjakob-pennington/cve-2024-32002-submodule-rce

Proof-of-concept demonstrating CVE-2024-32002 remote code execution via malicious Git submodule hook, targeting Windows and macOS systems.

command-and-controlexploitationpayload-development+3
2 years ago
CVE-2026-90817 preview

CVE-2026-90817

GitHubfarih123/cve-2026-90817

Python checker and configurable exploit hook for CVE-2026-90817, fingerprinting REDCap instances, validating survey hashes, and probing __passthru…

exploitationinformation-gatheringpenetration-testing+5
14 days ago
CVE-2026-90817 preview

CVE-2026-90817

GitHubyulisec/cve-2026-90817

Python checker and configurable exploit hook for CVE-2026-90817, a REDCap survey passthru and data import RCE. Fingerprints versions, validates…

exploitationinformation-gatheringpenetration-testing+6
116 days ago
CVE-2024-32002_HOOK preview

CVE-2024-32002_HOOK

GitHubjweny/cve-2024-32002_hook

Exploit for CVE-2024-32002, providing a proof-of-concept hook for vulnerability verification and penetration testing.

exploitationpayload-developmentpenetration-testing+2
32 years ago
CVE-2018-11776-Python-PoC preview

CVE-2018-11776-Python-PoC

GitHubhook-s3c/cve-2018-11776-python-poc

Working Python test and PoC for CVE-2018-11776, includes Docker lab

exploitationlabs-practicepayload-development+3
1238 years ago
CVE-2026-57830 preview

CVE-2026-57830

GitHubis4yev/cve-2026-57830

Unauthenticated Arbitrary File/Folder Deletion in Joomla Helix Ultimate (JoomShaper) <= 2.2.6 — CVE-2026-57830

ctfeducationexploitation+4
32 months ago
pocKeycloakCVE-2023-0264 preview

pocKeycloakCVE-2023-0264

GitHubeliangonzi00/pockeycloakcve-2023-0264

Proof-of-concept exploit for CVE-2023-0264 (Keycloak OIDC session hijacking) with a frontend for session_id substitution and an agent that detects…

authenticationdefensive-toolsexploitation+7
2 months ago
hook preview

hook

GitHubroronoawjd/hook

CVE-2024-32002 hook POC

exploitationpayload-developmentpenetration-testing+2
2 years ago
hook preview

hook

GitHub10cks/hook

CVE-2024-32002-hook

exploitationpayload-developmentpenetration-testing+2
12 years ago
hook preview

hook

GitHubfadhilthomas/hook

part of poc cve-2024-32002

exploitationpayload-developmentpenetration-testing+2
2 years ago
CVE-2020-14144-GiTea-git-hooks-rce preview

CVE-2020-14144-GiTea-git-hooks-rce

GitHubp0dalirius/cve-2020-14144-gitea-git-hooks-rce

A script to exploit CVE-2020-14144 - GiTea authenticated Remote Code Execution using git hooks

exploitationpayload-generationpenetration-testing+3
326 months ago
CVE-2026-60004-POC preview

CVE-2026-60004-POC

GitHubimbas007/cve-2026-60004-poc

CVE-2026-60004 Pre-Auth RCE Exploit — Gitea <= 1.27.0 diffpatch git hook injection (CVSS 9.8)

exploitationpayload-developmentpenetration-testing+4
162 months ago
Previous123Next