Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
13 results
cve-2021-26084-confluence preview

cve-2021-26084-confluence

GitHubglennpegden2/cve-2021-26084-confluence

A quick and dirty PoC of cve-2021-26084 as none of the existing ones worked for me.

command-and-controlexploitationpenetration-testing+2
1
5 years ago
omigod preview

omigod

GitHubgoofsec/omigod

Quick and dirty CVE-2021-38647 (Omigod) exploit written in Go.

command-and-controlexploitationpenetration-testing+2
15 years ago
chk-ms15-034 preview

chk-ms15-034

GitHubwiredaem0n/chk-ms15-034

Quick and dirty .py for checking (CVE-2015-1635) MS15-034 + DoS attack option

exploitationpenetration-testingvulnerability-analysis+1
10 years ago
CVE-2018-7669 preview

CVE-2018-7669

GitHubpalaziv/cve-2018-7669

Quick and dirty bruteforcer for CVE-2018-7669 (Directory Traversal Vulnerability in Sitecore)

exploitationinformation-gatheringpenetration-testing+2
5 years ago
CVE-2021-41773-PoC preview

CVE-2021-41773-PoC

GitHubzephrfish/cve-2021-41773-poc

Proof-of-concept scanner that checks hosts for CVE-2021-41773 Apache path traversal vulnerability, reporting vulnerable or not vulnerable status.

exploitationpenetration-testingreconnaissance+2
172 months ago
CVE-2008-4687-exploit preview

CVE-2008-4687-exploit

GitHubnmurilo/cve-2008-4687-exploit

Python exploit for CVE-2008-4687 targeting remote code execution in MantisBT via crafted sort parameter in manage_proj_page.php.

code-analysisexploitationpenetration-testing+2
33 years ago
CVE-2019-11043 preview

CVE-2019-11043

GitHubcorifeo/cve-2019-11043

Proof-of-concept exploit for CVE-2019-11043, a PHP remote code execution vulnerability in FPM/FastCGI, enabling unauthenticated RCE via crafted path…

exploitationpayload-generationpenetration-testing+2
6 years ago
CVE-2023-32749 preview

CVE-2023-32749

GitHubxcr-19/cve-2023-32749

PoC for CVE-2023-32749 affecting Pydio Cells

authentication-authorizationexploitationpenetration-testing+3
2 years ago
CVE-2022-1329 preview

CVE-2022-1329

GitHubagustinesi/cve-2022-1329

Educational documentation for exploiting CVE-2022-1329 in WordPress/Elementor and using Dirty Pipe (CVE-2022-0847) to escalate privileges on Ubuntu…

educationexploitationpenetration-testing+3
1 year ago
Centreon-CVE-2015-1560_1561 preview

Centreon-CVE-2015-1560_1561

GitHubiansus/centreon-cve-2015-1560_1561

A little Python tool for exploiting CVE-2015-1560 and CVE-2015-1561. Quick'n'dirty. Real dirty.

exploitationinformation-gatheringpenetration-testing+2
311 years ago
Log4J-Log4Shell-CVE-2021-44228-Spring-Boot-Test-Service preview

Log4J-Log4Shell-CVE-2021-44228-Spring-Boot-Test-Service

GitHubzsolt-halo/log4j-log4shell-cve-2021-44228-spring-boot-test-service

Dockerized Spring Boot service intentionally vulnerable to Log4Shell (CVE-2021-44228) for testing detection tools, payloads, and exploit capabilities…

educationexploitationlabs-practice+3
134 years ago
Penetration-Test preview

Penetration-Test

GitHubjeevananand1202/penetration-test

Full penetration test report against `IP` (Ubuntu VM). Attack chain: directory enumeration → backup file discovery → password cracking → CMS file…

educationexploitationpassword-cracking+6
6 months ago
commons-text-goat preview

commons-text-goat

GitHubtulhan/commons-text-goat

An intentionally vulnerable webapp to get your hands dirty with CVE-2022-42889.

educationexploitationlabs-practice+3
13 years ago