Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
53 results
CVE-2024-46987 preview

CVE-2024-46987

GitHubik0nw/cve-2024-46987

Exploit for CVE-2024-46987 path traversal in Camaleon CMS enabling arbitrary file download and automated SSH key extraction via brute-force.

exploitationinformation-gatheringpassword-attacks+3
7 months ago
CVE-2025-32433 preview

CVE-2025-32433

GitHub0xblackash/cve-2025-32433

CVE-2025-32433

exploitationpenetration-testingred-teaming+3
5 months ago
CVE-2018-17431-Comodo preview

CVE-2018-17431-Comodo

GitHubsanan2004/cve-2018-17431-comodo

Comodo

command-and-controlexploitationpenetration-testing+3
2 years ago
CVE-2025-32433 preview

CVE-2025-32433

GitHubvigilante-1337/cve-2025-32433

A critical flaw has been discovered in Erlang/OTP's SSH server allows unauthenticated attackers to gain remote code execution. One malformed SSH…

exploitationnetwork-securitypenetration-testing+3
1 year ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubiveresk/cve-2022-40684

Proof-of-concept exploit for CVE-2022-40684 authentication bypass in Fortinet FortiOS, FortiProxy, and FortiSwitchManager. Injects SSH keys via…

authentication-authorizationexploitationpayload-development+3
13 years ago
CVE-2024-39930-PoC preview

CVE-2024-39930-PoC

GitHubthemcsam/cve-2024-39930-poc

Exploit Code for CVE-2024-39930 gogs ssh server RCE

exploitationpenetration-testingremote-access-tool+2
1 year ago
CVE-2019-7192_QNAP_Exploit preview

CVE-2019-7192_QNAP_Exploit

GitHubth3gundy/cve-2019-7192_qnap_exploit

QNAP pre-auth root RCE Exploit (CVE-2019-7192 ~ CVE-2019-7195)

exploitationpenetration-testingremote-access-tool+2
876 years ago
CVE-2023-33381-MitraStar-GPT-2741GNAC preview

CVE-2023-33381-MitraStar-GPT-2741GNAC

GitHubduality084/cve-2023-33381-mitrastar-gpt-2741gnac

Proof-of-concept exploit for OS command injection (CVE-2023-33381) in MitraStar GPT-2741GNAC routers. Demonstrates bypass of restricted shell via…

binary-analysisembedded-systems-securityexploitation+4
133 years ago
Weblate-CVE-2026-24126 preview

Weblate-CVE-2026-24126

GitHubalexb616/weblate-cve-2026-24126

Proof-of-concept exploit for CVE-2026-24126, an arbitrary file read in Weblate via SSH host argument injection, allowing authenticated admins to read…

educationexploitationpenetration-testing+3
15 months ago
hook preview

hook

GitHubjbaines-r7/hook

Proof of Concept for WatchGuard Authenticated Arbitrary File Read (CVE-2022-31749)

exploitationpassword-crackingpenetration-testing+3
104 years ago
CVE-2026-21994 preview

CVE-2026-21994

GitHubg0w6y/cve-2026-21994

Proof-of-concept exploit for CVE-2026-21994, demonstrating unauthenticated admin session forgery via a hardcoded Flask SECRET_KEY and SSH host…

authenticationcloud-securityexploitation+3
6 months ago
CVE-2022-22965 preview

CVE-2022-22965

GitHubp1ckzi/cve-2022-22965

spring4shell | CVE-2022-22965

exploitationpayload-generationpenetration-testing+3
234 years ago
Trickster-HTB preview

Trickster-HTB

GitHubpallangyo98/trickster-htb

This report details exploiting Trickster via an XSS in PrestaShop (CVE-2024-34716) to gain www-data access, extracting database credentials for SSH…

ctfeducationexploitation+5
1 year ago
Fortinet-CVE-2022-40684 preview

Fortinet-CVE-2022-40684

GitHubjsongmax/fortinet-cve-2022-40684

Go-based exploit tool for CVE-2022-40684 (Fortinet authentication bypass). Automates SSH key injection for authorized penetration testing and…

exploitationnetwork-securitypenetration-testing+3
23 years ago
CVE-2014-6271 preview

CVE-2014-6271

GitHubmritunjay-k/cve-2014-6271

Python exploit for CVE-2014-6271 (ShellShock) enabling remote code execution via crafted environment variables in GNU Bash, targeting web servers and…

command-and-controlexploitationpayload-generation+3
3 years ago
CVE-2018-15473 preview

CVE-2018-15473

GitHubkaktus5454/cve-2018-15473

SSH username enumeration exploit for CVE-2018-15473 (OpenSSH 2.3-7.7). Sends malformed authentication packets to identify valid users on vulnerable…

exploitationinformation-gatheringpenetration-testing+3
5 months ago
vaultize_CVE-2024-36079 preview

vaultize_CVE-2024-36079

GitHubdxrvs/vaultize_cve-2024-36079

Proof-of-concept exploit for CVE-2024-36079, demonstrating arbitrary file upload in Vaultize DRM v21.07.27 via path traversal, enabling SSH key…

exploitationpenetration-testingprivilege-escalation+3
12 years ago
CVE-2025-27590 preview

CVE-2025-27590

GitHubfatkz/cve-2025-27590

Proof-of-concept exploit for CVE-2025-27590, a command injection vulnerability in multipart form uploads enabling remote shell execution and SSH key…

command-and-controlexploitationpenetration-testing+2
11 year ago
Previous123Next