Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
405 results
CVE-2026-3227-TP-Link-authenticated-RCE preview

CVE-2026-3227-TP-Link-authenticated-RCE

GitHubdo4choo/cve-2026-3227-tp-link-authenticated-rce

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

binary-exploitationeducationexploitation+6
43
3 months ago
CVE-2025-14174-Poc preview

CVE-2025-14174-Poc

GitHubsatirush/cve-2025-14174-poc

Proof-of-Concept exploit for CVE-2025-14174 (EUVD-2025-203113) - Memory corruption in ANGLE allowing out-of-bounds access and RCE in web browsers.…

android-securitybinary-exploitationexploitation+8
109 months ago
CVE-2020-6514 preview

CVE-2020-6514

GitHubhasan-khalil/cve-2020-6514

Exploit for CVE-2020-6514 targeting WebRTC SCTP memory corruption in Android applications. Uses Frida to hook native functions and alter SCTP packets…

android-securitybinary-exploitationdynamic-analysis-sandboxing+4
26 years ago
CVE-2025-56799 preview

CVE-2025-56799

GitHubshinycolumn/cve-2025-56799

OS Command Injection Vulnerability via Cache Clearing Scheduler in Reolink Desktop Application

binary-exploitationexploitationmalware-analysis+3
111 months ago
CVE-2013-2729 preview

CVE-2013-2729

GitHubfeliam/cve-2013-2729

Python-based exploit generator for Adobe Reader BMP/RLE heap corruption (CVE-2013-2729). Demonstrates arbitrary code execution via malicious BMP…

binary-exploitationexploitationfuzzing+3
246 years ago
CVE-2026-6307-Longinus preview

CVE-2026-6307-Longinus

GitHubj4ck3lsyn-gen2/cve-2026-6307-longinus

CVE-2026-6307 PoC: Longinus - 2 Boundaries in One Bug https://nebusec.ai/research/v8-cve-2026-6307-writeup/)

binary-exploitationeducationexploitation+6
102 months ago
POC-CVE-2026-0300-exploit preview

POC-CVE-2026-0300-exploit

GitHubsam00/poc-cve-2026-0300-exploit

Palo Alto - CVE-2026-0300 exploit

binary-exploitationexploitationnetwork-security+6
1 month ago
PAN-OS-User-ID-Buffer-Overflow-PoC preview

PAN-OS-User-ID-Buffer-Overflow-PoC

GitHubqassam-315/pan-os-user-id-buffer-overflow-poc

A research-grade Proof-of-Concept (PoC) for CVE-2026-0300, targeting the Buffer Overflow vulnerability in Palo Alto Networks PAN-OS User-ID™…

binary-exploitationexploitationpenetration-testing+2
34 months ago
ipfire-2-25-auth-rce preview

ipfire-2-25-auth-rce

GitHubkaanaryoverflow/ipfire-2-25-auth-rce

ipfire 2.25 authenticated remote code execution

binary-exploitationexploitationpayload-development+3
25 years ago
Bad_Hoist-WriteUp preview

Bad_Hoist-WriteUp

GitHuba0zhar/bad_hoist-writeup

A Writeup for Sleirsgoevy's version of the Exploit Implementation of CVE-2018-4386 by Fire30 called Bad_Hoist

binary-exploitationeducationexploitation+3
1 year ago
CVE-2019-11043-Vulnerability preview

CVE-2019-11043-Vulnerability

GitHubmagentabear/cve-2019-11043-vulnerability

Hands-on lab reproducing CVE-2019-11043 PHP-FPM RCE behind nginx, demonstrating reverse-tunnel persistence, memory forensics, and network traffic…

educationexploitationlabs-practice+8
9 months ago
MS16-051-poc preview

MS16-051-poc

GitHubdeamwork/ms16-051-poc

Proof-of-concept exploit for CVE-2016-0189 (VBScript Memory Corruption in IE11) with patch analysis write-up and HTML-based delivery.

exploitationpayload-developmentpenetration-testing+2
310 years ago
CVE-2017-0037 preview

CVE-2017-0037

GitHubchattopadhyaykittu/cve-2017-0037

Technical analysis of CVE-2017-0037, a Microsoft browser memory corruption vulnerability enabling remote code execution via type confusion in CSS/JS…

binary-exploitationeducationexploitation+3
4 years ago
WebKit-CVE-2016-4622 preview

WebKit-CVE-2016-4622

GitHubhdbreaker/webkit-cve-2016-4622

Deep-dive analysis and exploitation walkthrough of CVE-2016-4622, a WebKit JavaScriptCore memory disclosure vulnerability via Array.slice TOCTOU race…

binary-exploitationeducationexploitation+4
231 year ago
cve-2022-22947-spring-cloud-gateway preview

cve-2022-22947-spring-cloud-gateway

GitHubenokiy/cve-2022-22947-spring-cloud-gateway

Detailed analysis and exploit for CVE-2022-22947, a remote code execution vulnerability in Spring Cloud Gateway via SpEL injection in the Actuator…

code-analysiseducationexploitation+4
184 years ago
cve-2018-8389 preview

cve-2018-8389

GitHubsandi-go/cve-2018-8389

Technical analysis and proof-of-concept for CVE-2018-8389, a use-after-free vulnerability in Internet Explorer's jscript.dll allowing remote code…

binary-exploitationexploitationmemory-forensics+2
6 years ago
Vulnerability_PoC preview

Vulnerability_PoC

GitHubnumencyber/vulnerability_poc

Collection of proof-of-concept exploits and technical analyses for high-impact CVEs, covering browser memory corruption, TCP/IP RCE, and web…

binary-exploitationcurated-resourceseducation+3
3315 months ago
CVE-2023-3079 preview

CVE-2023-3079

GitHubmistymntncop/cve-2023-3079

Proof-of-concept exploit for CVE-2023-3079, a Chrome V8 type confusion vulnerability, with curated writeups and root cause analysis resources.

binary-exploitationeducationexploitation+3
1311 year ago
Previous12…23Next