Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
487 results
CVE-2024-28995-Nuclei-Template preview

CVE-2024-28995-Nuclei-Template

GitHubhuseyinstif/cve-2024-28995-nuclei-template

Nuclei template for detecting CVE-2024-28995, a directory traversal vulnerability in Serv-U FTP server, enabling file read via crafted HTTP requests.

exploitationpenetration-testingvulnerability-analysis+3
1
2 years ago
CVE-2023-47529 preview

CVE-2023-47529

GitHubrandomrobbiebf/cve-2023-47529

Cloud Templates & Patterns collection <= 1.2.2 - Sensitive Information Exposure via Log File

exploitationinformation-gatheringlog-analysis+3
12 years ago
CVE-2025-2294 preview

CVE-2025-2294

GitHub0xwhoami35/cve-2025-2294

Python PoC for CVE-2025-2294, an unauthenticated Local File Inclusion in the Kubio AI Page Builder WordPress plugin (≤2.5.1), demonstrating arbitrary…

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2017-15715 preview

CVE-2017-15715

GitHubwhisp1830/cve-2017-15715

Proof-of-concept exploit for CVE-2017-15715, an Apache HTTP Server vulnerability allowing file upload bypass via crafted Content-Disposition headers.

exploitationpenetration-testingvulnerability-analysis+2
7 years ago
-CVE-2018-5158.pdf preview

-CVE-2018-5158.pdf

GitHubpuzzle-tools/-cve-2018-5158.pdf

a simple PDF file for CVE-2018-5158

exploitationvulnerability-analysisweb-security
12 years ago
CVE-2021-41773 preview

CVE-2021-41773

GitHubranggaggngntt/cve-2021-41773

Python exploit script for CVE-2021-41773, a path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49, enabling automated…

exploitationinformation-gatheringpenetration-testing+2
4 years ago
CVE-2024-50482 preview

CVE-2024-50482

GitHubrandomrobbiebf/cve-2024-50482

Woocommerce Product Design <= 1.0.0 - Unauthenticated Arbitrary File Upload

code-analysisexploitationpenetration-testing+3
1 year ago
CVE-2022-4047 preview

CVE-2022-4047

GitHubentroychang/cve-2022-4047

Unauthenticated arbitrary file upload exploit for WooCommerce Return Refund and Exchange plugin (CVE-2022-4047). Scans targets, uploads webshell, and…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2020-12640 preview

CVE-2020-12640

GitHubmbadanoiu/cve-2020-12640

CVE-2020-12640: Local PHP File Inclusion via "Plugin Value" in Roundcube Webmail

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2024-50510 preview

CVE-2024-50510

GitHubrandomrobbiebf/cve-2024-50510

AR For Woocommerce <= 6.2 - Unauthenticated Arbitrary File Upload

exploitationpayload-generationpenetration-testing+3
1 year ago
CVE-2024-10516 preview

CVE-2024-10516

GitHubrandomrobbiebf/cve-2024-10516

Swift Performance Lite <= 2.3.7.1 - Unauthenticated Local PHP File Inclusion via 'ajaxify'

code-analysisexploitationpenetration-testing+3
1 year ago
CVE-2024-50493 preview

CVE-2024-50493

GitHubrandomrobbiebf/cve-2024-50493

Automatic Translation <= 1.0.4 - Unauthenticated Arbitrary File Upload

exploitationpayload-developmentpenetration-testing+3
1 year ago
CVE-2024-10571 preview

CVE-2024-10571

GitHubrandomrobbiebf/cve-2024-10571

Chartify – WordPress Chart Plugin <= 2.9.5 - Unauthenticated Local File Inclusion via source

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2024-50508 preview

CVE-2024-50508

GitHubrandomrobbiebf/cve-2024-50508

Woocommerce Product Design <= 1.0.0 - Unauthenticated Arbitrary File Download

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2024-49607 preview

CVE-2024-49607

GitHubrandomrobbiebf/cve-2024-49607

WP Dropbox Dropins <= 1.0 - Unauthenticated Arbitrary File Upload

exploitationpenetration-testingvulnerability-analysis+2
1 year ago
CVE-2023-43494 preview

CVE-2023-43494

GitHubmqxmm/cve-2023-43494

Jenkins 2.50 through 2.423 (both inclusive), LTS 2.60.1 through 2.414.1 (both inclusive) File Read

exploitationinformation-gatheringpenetration-testing+2
2 years ago
CVE-2023-50465 preview

CVE-2023-50465

GitHubev3rr3d/cve-2023-50465

Proof-of-concept exploit for a stored XSS vulnerability in MonicaHQ CRM via malicious SVG file upload, demonstrating cross-site scripting in document…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2025-28915 preview

CVE-2025-28915

GitHubpei4an/cve-2025-28915

Exploit for CVE-2025-28915: WordPress ThemeEgg ToolKit arbitrary file upload vulnerability allowing remote Web Shell deployment. Includes…

code-analysisexploitationpenetration-testing+3
1 year ago
Previous1…192021…28Next