Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
351 results
BurpCrypto preview

BurpCrypto

GitHubwhwlsfb/burpcrypto

BurpSuite plugin for encrypting payloads with AES, RSA, DES, or custom JS code, enabling automated decryption of front-end encrypted traffic during…

encryption-decryption-toolsfuzzingpayload-generation+1
1.6k
3 years ago
CVE-2022-21661 preview

CVE-2022-21661

GitHubguestzz/cve-2022-21661

Exploit for CVE-2022-21661 targeting Elementor WordPress plugin, enabling SQL injection-based privilege escalation and data extraction.

exploitationpenetration-testingvulnerability-analysis+2
74 years ago
CVE-2024-1512 preview

CVE-2024-1512

GitHubrat-c/cve-2024-1512

PoC for CVE-2024-1512 in MasterStudy LMS WordPress Plugin.

code-analysisexploitationpenetration-testing+3
22 years ago
CVE-2023-6567-poc preview

CVE-2023-6567-poc

GitHubmimiloveexe/cve-2023-6567-poc

Proof-of-concept exploit for a time-based blind SQL injection in the LearnPress WordPress plugin, allowing unauthenticated attackers to extract…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2022-0236 preview
Archived

CVE-2022-0236

GitHubqurbat/cve-2022-0236

Proof of concept for unauthenticated sensitive data disclosure affecting the wp-import-export WordPress plugin (CVE-2022-0236)

exploitationinformation-gatheringpenetration-testing+2
34 years ago
CVE-2025-0924-different preview

CVE-2025-0924-different

GitHubskrkcb2/cve-2025-0924-different

Technical analysis of CVE-2025-0924, a Stored XSS vulnerability in WP Activity Log plugin for WordPress. Includes root cause analysis, exploitation…

educationexploitationpapers-research+2
1 year ago
CVE-2024-50491 preview

CVE-2024-50491

GitHubrandomrobbiebf/cve-2024-50491

RSVP ME <= 1.9.9 - Unauthenticated SQL Injection

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2025-7431 preview

CVE-2025-7431

GitHubnagisayumaa/cve-2025-7431

CVE-2025-7431

educationexploitationpenetration-testing+3
1 year ago
nex-forms_SQL-Injection-CVE-2023-2114 preview

nex-forms_SQL-Injection-CVE-2023-2114

GitHubschmidalex/nex-forms_sql-injection-cve-2023-2114

Quick Review about the SQL-Injection in the NEX-Forms Plugin for WordPress

exploitationpenetration-testingvulnerability-analysis+2
23 years ago
CVE-2015-6668 preview

CVE-2015-6668

GitHubh3x0v3rl0rd/cve-2015-6668

Exploit for CVE-2015-6668: CV filename disclosure vulnerability in the Job-Manager WordPress plugin. Demonstrates information gathering via path…

exploitationinformation-gatheringvulnerability-analysis+2
25 years ago
CVE-2023-0099-exploit preview

CVE-2023-0099-exploit

GitHubamirzargham/cve-2023-0099-exploit

simple urls < 115 - Reflected XSS

exploitationpayload-generationpenetration-testing+3
62 years ago
yakit preview

yakit

GitHubyaklang/yakit

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

command-and-controlexploit-frameworksfuzzing+9
7.7k6h 9m ago
WordPress-KeepInMind-CVE-2026-9271-Exploit preview

WordPress-KeepInMind-CVE-2026-9271-Exploit

GitHubcerberusmrxi/wordpress-keepinmind-cve-2026-9271-exploit

Authorized stored XSS assessment tool for CVE-2026-9271 in WordPress KeepInMind plugin. Detects vulnerable versions, injects safe test payloads, and…

educationexploitationpenetration-testing+3
11 month ago
CVE-2023-4549 preview

CVE-2023-4549

GitHubb0marek/cve-2023-4549

Repository for CVE-2023-4549 vulnerability.

exploitationpenetration-testingphishing-tools+3
2 years ago
wp2shell-compromise-scanner-plugin preview

wp2shell-compromise-scanner-plugin

GitHubeyesecurity/wp2shell-compromise-scanner-plugin

Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

database-securitydigital-forensicsforensics+5
1 month ago
Sitadel preview

Sitadel

GitHubshenril/sitadel

Web Application Security Scanner

information-gatheringpenetration-testingvulnerability-scanners+3
6123 days ago
CVE-2023-4800 preview

CVE-2023-4800

GitHubb0marek/cve-2023-4800

Repository for CVE-2023-4800 vulnerability.

authentication-authorizationinformation-gatheringmisconfiguration+2
2 years ago
wordpress-skelersecurity-core-security-CVE-2026-63030 preview

wordpress-skelersecurity-core-security-CVE-2026-63030

GitHubskelersecurity/wordpress-skelersecurity-core-security-cve-2026-63030

Temporary WordPress plugin requiring authentication for the Core REST Batch API endpoint to mitigate the wp2shell vulnerability chain…

api-securityauthentication-authorizationdefensive-tools+3
1 month ago
Previous12…20Next