Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
73 results
moveit-transfer-2023-breach preview

moveit-transfer-2023-breach

GitHubkhengar9274-web/moveit-transfer-2023-breach

Educational case study of the MOVEit Transfer SQL injection breach (CVE-2023-34362) by Cl0p ransomware group, covering attack timeline, exploitation,…

database-securityeducationincident-response+3
7 months ago
CVE-2024-34226 preview

CVE-2024-34226

GitHubdovankha/cve-2024-34226

Proof-of-concept for SQL injection in SourceCodester Visitor Management System 1.0 via the id parameter, allowing arbitrary SQL command execution.

database-securityexploitationpenetration-testing+2
2 years ago
CVE-2023-49548 preview

CVE-2023-49548

GitHubgeraldoalcantara/cve-2023-49548

Customer Support System 1.0 - SQL Injection Vulnerability in the "lastname" Parameter During "save_user" Operation

database-securityexploitationpenetration-testing+3
2 years ago
CVE-2023-43144 preview

CVE-2023-43144

GitHubpegasus0xx/cve-2023-43144

Assets Management System 1.0 is vulnerable to SQL injection via the id parameter in delete.php

code-analysisdatabase-securityexploitation+2
2 years ago
bbscope preview

bbscope

GitHubsw33tlie/bbscope

Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!

cloud-securitydatabase-securityinformation-gathering+6
1.4k1 month ago
CVE-2017-12635 preview

CVE-2017-12635

GitHubassalielmehdi/cve-2017-12635

Case study and POC of CVE-2017-12635: Apache CouchDB 1.7.0 / 2.x < 2.1.1 - Remote Privilege Escalation

database-securityeducationexploitation+4
106 years ago
CVE-2026-74251 preview

CVE-2026-74251

GitHubtoanln-cov/cve-2026-74251

Unauthenticated SQL Injection via Attribute Filter in Phoca Cart - CVSS 9.3

database-securitydata-exfiltrationexploitation+3
9 days ago
CVE-2026-1337 preview

CVE-2026-1337

GitHubjoakimbulow/cve-2026-1337

CVE-2026-1337 - Neo4j - Log Injection

database-securityexploitationlog-analysis+2
56 months ago
CVE-2026-30655 preview

CVE-2026-30655

GitHubbrynax/cve-2026-30655

Security advisory for CVE-2026-30655: unauthenticated SQL injection in esiclivre (/reset/index.php).

database-securityexploitationinformation-gathering+2
5 months ago
CVE-2025-63943 preview

CVE-2025-63943

GitHubredopsx/cve-2025-63943

SQL Injection vulnerability discovered in Grocery Store Management System 1.0

code-analysisdatabase-securityexploitation+3
9 months ago
MongoBleed-CVE-2025-14847 preview

MongoBleed-CVE-2025-14847

GitHubsystemhaus-schulz/mongobleed-cve-2025-14847

MongoBleed CVE-2025-14847 Vulnerability Checker

database-securityexploitationinformation-gathering+3
7 months ago
CVE-2021-43650 preview

CVE-2021-43650

GitHubopenxp-research/cve-2021-43650

Webrun <= 3.6.0.42 SQLi

database-securityexploitationpenetration-testing+3
1 year ago
CVE-2023-45657 preview

CVE-2023-45657

GitHubrandomrobbiebf/cve-2023-45657

Nexter <= 2.0.3 - Authenticated (Subscriber+) SQL Injection via 'to' and 'from'

database-securityexploitationpenetration-testing+3
2 years ago
CVE-2023-38890 preview

CVE-2023-38890

GitHubakshadjoshi/cve-2023-38890

poc

database-securityexploitationpenetration-testing+3
3 years ago
CVE-2023-41652 preview

CVE-2023-41652

GitHubrandomrobbiebf/cve-2023-41652

RSVPMarker <= 10.6.6 - Unauthenticated SQL Injection

database-securityexploitationpenetration-testing+3
1 year ago
dashbuilder preview

dashbuilder

GitHubshanika04/dashbuilder

CVE-2016-4999

database-securitygeneral-purpose-utilitieslog-analysis+3
5 years ago
CVE-2026-31891 preview

CVE-2026-31891

GitHubffasterss/cve-2026-31891

SQL Injection in MongoLite Aggregation Optimizer via toJsonExtractRaw()

database-securityexploitationpenetration-testing+3
5 months ago
CVE-2021-35042 preview

CVE-2021-35042

GitHubzer0qs/cve-2021-35042

A basic analysis about CVE-2021-35942. SQL injection in Django.

educationexploitationpapers-research+2
24 years ago
Previous12345Next