Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
250 results
Multi-Stage-Exploitation-and-Detection-Engineering-Analysis-of-CVE-2023-34362-in-MOVEit-Transfer preview

Multi-Stage-Exploitation-and-Detection-Engineering-Analysis-of-CVE-2023-34362-in-MOVEit-Transfer

GitHubkarmanyat28/multi-stage-exploitation-and-detection-engineering-analysis-of-cve-2023-34362-in-moveit-transfer

This repository contains an academic and technical analysis of CVE-2023-34362, a critical SQL injection vulnerability affecting the MOVEit Transfer…

educationincident-responselog-analysis+3
4 months ago
it355-lab4-enterprise-lan-security preview

it355-lab4-enterprise-lan-security

GitHubambjlou/it355-lab4-enterprise-lan-security

This repository contains a comprehensive security assessment of an enterprise LAN environment. The core focus of this project was the identification,…

educationexploitationincident-response+4
5 months ago
CVE-2024-6536 preview

CVE-2024-6536

GitHubapena-ba/cve-2024-6536

Proof-of-concept exploit for CVE-2024-6536, an authenticated stored XSS in the Zephyr Project Manager WordPress plugin, enabling admin-level script…

exploitationpenetration-testingvulnerability-analysis+2
11 year ago
CVE-2025-56807 preview

CVE-2025-56807

GitHubaqwainfosec/cve-2025-56807

Proof-of-concept for a stored XSS vulnerability in FairSketch RISE Ultimate Project Manager & CRM v3.9.4, demonstrating arbitrary JavaScript…

exploitationinformation-gatheringpenetration-testing+3
11 months ago
CVE-2025-22381 preview

CVE-2025-22381

GitHubpescada-dev/cve-2025-22381

Discovering CVE-2025-22381: Host Header Injection in the Aggie Open-Source Project

educationexploitationpassword-attacks+3
17 months ago
CVE-2018-14847 preview

CVE-2018-14847

GitHubtausifzaman/cve-2018-14847

This is a proof of concept of the critical WinBox vulnerability (CVE-2018-14847) which allows for arbitrary file read of plain text passwords. The…

exploitationinformation-gatheringnetwork-security+3
11 year ago
CVE-2025-61455 preview

CVE-2025-61455

GitHubtansique-17/cve-2025-61455

Public disclosure and proof-of-concept for CVE-2025-61455, a critical SQL injection in E-commerce Project v1.0, including technical details, PoC, and…

curated-resourceseducationexploitation+2
11 months ago
CVE-2025-61454 preview

CVE-2025-61454

GitHubtansique-17/cve-2025-61454

Public disclosure and proof-of-concept for CVE-2025-61454, a reflected XSS vulnerability in E-commerce Project v1.0's search.php, including…

educationexploitationpapers-research+3
11 months ago
CVE-2025-61456 preview

CVE-2025-61456

GitHubtansique-17/cve-2025-61456

Public disclosure and proof-of-concept for a reflected XSS vulnerability (CVE-2025-61456) in an e-commerce project, including technical details, CVSS…

educationexploitationpapers-research+3
11 months ago
firewall preview

firewall

GitHubsalo-404/firewall

🔒 Spring4Shell Firewall Defense — Cybersecurity Incident Simulation This project is part of a Cybersecurity Job Simulation I completed in August…

educationincident-responseintrusion-detection+3
11 year ago
React2Shell-Vulnerability-Verification-Script preview

React2Shell-Vulnerability-Verification-Script

GitHubdegenwithheart/react2shell-vulnerability-verification-script

Standalone Python script to verify if a project is affected by CVE-2025-55182 (React2Shell). Checks package.json dependencies and performs optional…

code-analysiseducationstatic-analysis+3
9 months ago
MOVEit-Transfer-Data-Breach-Analysis. preview

MOVEit-Transfer-Data-Breach-Analysis.

GitHubtubaaiftikhar-ui/moveit-transfer-data-breach-analysis.

​Detailed analysis of the 2023 MOVEit Transfer data breach (CVE-2023-34362) for CS50 Cybersecurity. This project explores the technical impact of…

database-securityeducationincident-response+3
6 months ago
cs50-cyber-paloalto-oauth preview

cs50-cyber-paloalto-oauth

GitHubyafiah-darwesh/cs50-cyber-paloalto-oauth

CS50 Cybersecurity final project — Palo Alto OAuth token breach (CVE-2024-3400)

authentication-authorizationctfeducation+3
0 years ago
CVE-2024-32002 preview

CVE-2024-32002

GitHubcontrolo8/cve-2024-32002

CVE-2024-32002 Private for Capstone Project CC10

exploitationinformation-gatheringpenetration-testing+2
6 months ago
log4shell-example preview

log4shell-example

GitHubchilit-nl/log4shell-example

The goal of this project is to demonstrate the log4j cve-2021-44228 exploit vulnerability in a spring-boot setup, and to show how to fix it.

code-analysiseducationexploitation+3
4 years ago
CVE-2025-46178 preview

CVE-2025-46178

GitHubsacx-7/cve-2025-46178

Documentation and proof-of-concept for a reflected XSS vulnerability in CloudClassroom PHP Project, including attack vectors and mitigation…

educationpenetration-testingvulnerability-analysis+2
1 year ago
detect-CVE-2019-15107-by-pyshark preview

detect-CVE-2019-15107-by-pyshark

GitHubgozn/detect-cve-2019-15107-by-pyshark

school project

educationexploitationintrusion-detection+4
2 years ago
f-for-java preview

f-for-java

GitHubtotallynotahaxxer/f-for-java

a project written in go and java i abandoned for CVE-2021-44228 try to fix it if you can XD

code-analysisexploitationpenetration-testing+2
3 years ago
Previous1…345…14Next