Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
48 results
Project-CVE-2026-65351 preview

Project-CVE-2026-65351

GitHube4zyy/project-cve-2026-65351

Browser resource exhaustion payload that crashes target systems via memory, GPU, audio, and rendering overload. Designed for authorized security…

exploitationred-teamingvulnerability-analysis+1
3 days ago
CVE-2026-50787 preview

CVE-2026-50787

GitHubbrynax/cve-2026-50787

Security advisory detailing CVE-2026-50787, an uncontrolled resource consumption vulnerability in e-SIC Livre CAPTCHA generation, enabling remote…

curated-resourceseducationvulnerability-analysis+1
4 days ago
CVE-2026-41940 preview

CVE-2026-41940

GitHubdevtint/cve-2026-41940

Technical analysis and educational resource for CVE-2026-41940, covering root cause, scanner behavior, prevention, mitigation, IOC hunting, and VaPT…

curated-resourceseducationincident-response+3
4 months ago
CVE-2025-56223 preview

CVE-2025-56223

GitHubsaykino/cve-2025-56223

Documentation of CVE-2025-56223, a denial-of-service vulnerability in Ascertia SigningHub's Upload Document API, allowing unrestricted file uploads…

api-securitypenetration-testingvulnerability-analysis+1
10 months ago
CVE-2026-36957 preview

CVE-2026-36957

GitHubkirubel-cve/cve-2026-36957

Proof-of-concept for CVE-2026-36957, a denial-of-service vulnerability in Dbit Router firmware via HTTP flood on the Boa web server, causing resource…

exploitationpenetration-testingvulnerability-analysis+1
4 months ago
Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467 preview

Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467

GitHubgraysignal/apache-ofbiz-auth-bypass-and-rce-exploit-cve-2023-49070-cve-2023-51467

This exploit scans whether the provided target is vulnerable to CVE-2023-49070/CVE-2023-51467 and also exploits it depending on the choice of the…

authenticationexploitationpenetration-testing+3
12 years ago
CVE-2025-69848-security-advisories preview

CVE-2025-69848-security-advisories

GitHubalkimcoskun/cve-2025-69848-security-advisories

Security advisory for CVE-2025-69848 – Reflected XSS in NetBox ProtectedError handling

curated-resourcesvulnerability-analysisweb-security
6 months ago
CVE-2026-19500-poc preview

CVE-2026-19500-poc

GitHubtypedefabcd1234ntd/cve-2026-19500-poc

Proof-of-concept for CVE-2026-19500, a DoS vulnerability in the SureForms WordPress plugin that exhausts server resources via oversized key-value…

exploitationvulnerability-analysisweb-application-exploitation+1
111 days ago
Bug-Bounty-Beginner-Roadmap preview

Bug-Bounty-Beginner-Roadmap

GitHubbittentech/bug-bounty-beginner-roadmap

This is a resource factory for anyone looking forward to starting bug hunting and would require guidance as a beginner.

ctfcurated-resourceseducation+7
2.4k2 years ago
Bug-Bounty preview

Bug-Bounty

GitHubzapstiko/bug-bounty

Here Are Some Bug Bounty Resource From Twitter

curated-resourceseducationpenetration-testing+3
13318 days ago
CVE-2026-11118-HTTP-2-Rapid-Reset-DDoS preview

CVE-2026-11118-HTTP-2-Rapid-Reset-DDoS

GitHubgeorge0papasotiriou/cve-2026-11118-http-2-rapid-reset-ddos

Python PoC for CVE-2026-11118 demonstrating HTTP/2 Rapid Reset DDoS via RST_STREAM resource exhaustion; includes vulnerable server simulator and…

exploitationnetwork-securityvulnerability-analysis+1
27 days ago
JShunter preview

JShunter

GitHubcc1a2b/jshunter

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

api-securitydynamic-code-analysispenetration-testing+6
53218 days ago
CVE-2026-31899 preview

CVE-2026-31899

GitHubsnailsploit/cve-2026-31899

CVE-2026-31899: Exponential DoS via Recursive <use> Element Amplification in CairoSVG (CVSS 7.5 High)

educationexploitationpapers-research+2
3 months ago
testing-handbook preview

testing-handbook

GitHubtrailofbits/testing-handbook

Trail of Bits Testing Handbook - appsec.guide

code-analysiscryptographycurated-resources+9
1341 month ago
XSSight preview

XSSight

GitHubnu11secur1ty/xssight

Educational resource on Cross-site Scripting (XSS) attack techniques, covering non-persistent, persistent, and DOM-based vectors with practical…

educationinformation-gatheringpenetration-testing+3
105 months ago
all-my-collection-repos preview

all-my-collection-repos

GitHubalphaseclab/all-my-collection-repos

All Security Resource Collections Repos That I Published.

curated-resourceseducationforensics+6
1346 years ago
undertow-io__undertow_CVE-2014-7816_1-0-16-Final preview

undertow-io__undertow_CVE-2014-7816_1-0-16-Final

GitHubshoucheng3/undertow-io__undertow_cve-2014-7816_1-0-16-final

Proof-of-concept exploit for CVE-2014-7816 targeting Undertow Java web server, demonstrating a directory traversal vulnerability in the HTTP server's…

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
mitigate-cve-2026-23869-react-server-component-loops preview

mitigate-cve-2026-23869-react-server-component-loops

GitHubshaheryar773/mitigate-cve-2026-23869-react-server-component-loops

Technical troubleshooting repository for fixing infinite rendering vulnerability loops and resource exhaustion threats under CVE-2026-23869 cleanly.

cloud-securityeducationmisconfiguration+2
1 month ago
Previous123Next