Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
95 results
CVE-2026-9999-exploit preview

CVE-2026-9999-exploit

GitHubjosephfarah-ciso/cve-2026-9999-exploit

Proof-of-concept and GLSL fuzzer for CVE-2026-9999 in Chrome's ANGLE/Metal WebGL backend, with build fingerprinting, curated shaders, and crash…

exploitationfuzzingvulnerability-analysis+1
8 days ago
cve-2020-16012 preview

cve-2020-16012

GitHubaleksejspopovs/cve-2020-16012

PoC for CVE-2020-16012, a timing side channel in drawImage in Firefox & Chrome

exploitationinformation-gatheringreconnaissance+2
115 years ago
CVE-2021-34429 preview

CVE-2021-34429

GitHubcoldfusionx/cve-2021-34429

POC for CVE-2021-34429 - Eclipse Jetty 11.0.5 Sensitive File Disclosure

exploitationinformation-gatheringmisconfiguration+3
64 years ago
NginxHunter preview

NginxHunter

GitHubemrekybs/nginxhunter

Analyzes Nginx access logs to detect SQL injection, scanner tools, webshells, and exploitation attempts, aiding system administrators in server…

defensive-toolsincident-responselog-analysis+2
51 year ago
CVE-2026-2764-but-with-wasm preview

CVE-2026-2764-but-with-wasm

GitHubsneakynachos/cve-2026-2764-but-with-wasm

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

binary-exploitationexploitationpayload-development+3
110 days ago
CVE-2020-8248 preview

CVE-2020-8248

GitHubmbadanoiu/cve-2020-8248

CVE-2020-8248: Privilege Escalation via Zip Wildcard Exploit in Pulse Secure VPN Linux Client

exploitationpenetration-testingprivilege-escalation+3
2 years ago
nginx_log_check preview

nginx_log_check

GitHubal0ne/nginx_log_check

Nginx日志安全分析脚本

log-analysisvulnerability-analysisweb-security
4425 years ago
CVE-2020-6308-PoC preview

CVE-2020-6308-PoC

GitHubinitroot/cve-2020-6308-poc

PoC CVE-2020-6308

exploitationnetwork-mappingpenetration-testing+3
365 years ago
CVE-2025-0133 preview

CVE-2025-0133

GitHubinteleon404/cve-2025-0133

Reflected XSS vulnerability found in Palo Alto GlobalProtect Gateway & Portal. Attackers can inject malicious scripts via crafted requests.

exploitationpenetration-testingreconnaissance+3
101 year ago
TP-Link-Archer-CR-700-XSS-Exploit preview

TP-Link-Archer-CR-700-XSS-Exploit

GitHubayushman4/tp-link-archer-cr-700-xss-exploit

Exploiting TP-Link Archer CR-700 Router. (Responsibly Disclosed to TP-Link)

exploitationiot-securitypenetration-testing+3
39 years ago
CVE-2023-29808 preview

CVE-2023-29808

GitHubzprototype/cve-2023-29808
exploitationpenetration-testingvulnerability-analysis+2
43 years ago
HTC preview

HTC

GitHubawesome-consumer-iot/htc

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

exploitationpassword-attacksreconnaissance+2
16 years ago
CVE-2020-9470 preview

CVE-2020-9470

GitHubal1ex/cve-2020-9470

Wing FTP Server 6.2.5 - Privilege Escalation

exploitationpenetration-testingprivilege-escalation+3
5 years ago
CVE-2019-19945_Test preview

CVE-2019-19945_Test

GitHubdelicatebyte/cve-2019-19945_test
exploitationpenetration-testingvulnerability-analysis+2
4 years ago
CVE-2026-20217 preview

CVE-2026-20217

GitHubsecurifera/cve-2026-20217

Reproduces ZendTo unauthenticated ClamAV RCE and root privilege escalation in an authorized lab, with pinned Docker target, fail-closed verification,…

exploitationpenetration-testingpost-exploitation+5
3 days ago
CVE-2022-23808 preview

CVE-2022-23808

GitHubdipakpanchal05/cve-2022-23808

phpMyAdmin XSS

exploitationpenetration-testingred-teaming+3
1141 year ago
cve-2020-9375 preview

cve-2020-9375

GitHubthewhiteh4t/cve-2020-9375

TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a crafted HTTP Header…

exploitationhardware-iot-securityiot-security+2
206 years ago
CVE-2018-19131 preview

CVE-2018-19131

GitHubjonathanwilbur/cve-2018-19131

Proof-of-Concept exploit of CVE-2018-19131: Squid Proxy XSS via X.509 Certificate

exploitationvulnerability-analysisweb-application-exploitation+1
187 years ago
Previous123456Next