Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
CVE-2026-45140 preview

CVE-2026-45140

GitHubabraxas/cve-2026-45140

Disclosure pack and PoC script for CVE-2026-45140, an unauthenticated path traversal and RCE in Chamilo LMS CStudio upload, with a loopback Docker…

educationexploitationlabs-practice+5
5 days ago
training-security-awareness preview

training-security-awareness

GitHubransomleak/training-security-awareness

Open-source interactive security awareness training library with 130+ SCORM exercises covering phishing, vishing, BEC, MFA fatigue, and OWASP AI/LLM…

ai-securityeducationemail-security+5
19713 days ago
CVE-2026-34160 preview

CVE-2026-34160

GitHubromain-deperne/cve-2026-34160

Unauthenticated SSRF in the Chamilo LMS PENS plugin — CVE-2026-34160 / CVSS 8.6

exploitationpenetration-testingreconnaissance+3
16 days ago
CVE-2026-31281 preview

CVE-2026-31281

GitHubsaykino/cve-2026-31281

Advisory detailing an authenticated HTML injection vulnerability in Totara LMS affecting versions before 19.1.5, enabling session hijacking and…

curated-resourceseducationexploitation+2
5 months ago
CVE-2026-26717 preview

CVE-2026-26717

GitHubrickidevs/cve-2026-26717

Technical write-up of CVE-2026-26717, an HMAC timing attack in OpenFUN Richie LMS webhook authentication, including vulnerable code, impact, and fix…

authenticationcode-analysisexploitation+2
7 months ago
CVE-2025-69581 preview

CVE-2025-69581

GitHubrivek619/cve-2025-69581

An issue was discovered in Chamillo LMS 1.11.2. The Social Network /personal_data endpoint exposes full sensitive user information even after logout…

educationinformation-gatheringprivacy+2
8 months ago
CVE-2025-67730 preview

CVE-2025-67730

GitHubdharan10/cve-2025-67730

A public disclourse of CVE-2025-67730 in Frape lms By dharan ragunathan

educationpapers-researchvulnerability-analysis+2
8 months ago
CVE-2025-65676 preview

CVE-2025-65676

GitHubrivek619/cve-2025-65676

Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arbitrary code via crafted SVG…

educationpenetration-testingvulnerability-analysis+2
10 months ago
CVE-2025-65675 preview

CVE-2025-65675

GitHubrivek619/cve-2025-65675

Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arbitrary code via crafted SVG…

educationpenetration-testingvulnerability-analysis+2
10 months ago
CVE-2024-10400 preview

CVE-2024-10400

GitHubk0ns0l/cve-2024-10400

Proof-of-concept exploit for CVE-2024-10400, a time-based blind SQL injection in Tutor LMS WordPress plugin, allowing unauthenticated attackers to…

exploitationpenetration-testingvulnerability-analysis+2
41 year ago
CVE-2024-8349-and-CVE-2024-8350 preview

CVE-2024-8349-and-CVE-2024-8350

GitHubkarlemilnikka/cve-2024-8349-and-cve-2024-8350

Authenticated Privilege Escalation to Admin exploiting Uncanny Groups for LearnDash.

authentication-authorizationexploitationpenetration-testing+3
1 year ago
CVE-2022-47130 preview

CVE-2022-47130

GitHubopenxp-research/cve-2022-47130

Academy LMS <= 5.10 CSRF

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2024-1208 preview

CVE-2024-1208

GitHubcappricio-securities/cve-2024-1208

LearnDash LMS < 4.10.3 - Sensitive Information Exposure

exploitationinformation-gatheringpenetration-testing+2
12 years ago
CVE-2024-1512 preview

CVE-2024-1512

GitHubrat-c/cve-2024-1512

PoC for CVE-2024-1512 in MasterStudy LMS WordPress Plugin.

code-analysisexploitationpenetration-testing+3
22 years ago
CVE-2022-38553 preview

CVE-2022-38553

GitHub4websecurity/cve-2022-38553

Proof-of-concept for reflected cross-site scripting in Academy LMS versions before 5.9.1, triggered via the search?query parameter to execute…

exploitationpenetration-testingvulnerability-analysis+2
24 years ago