Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
172 results
CVE-2026-84118-who-labeled-the-crit-as-a-high preview

CVE-2026-84118-who-labeled-the-crit-as-a-high

GitHubsneakynachos/cve-2026-84118-who-labeled-the-crit-as-a-high

Proof-of-concept for CVE-2026-84118, a SpiderMonkey GC use-after-free leading to out-of-bounds read/write and potential code execution. Includes…

binary-exploitationexploitationmemory-forensics+2
1
19 days ago
CVE-2022-31626 preview

CVE-2022-31626

GitHubamitlttwo/cve-2022-31626

Proof-of-concept exploit for CVE-2022-31626, a buffer overflow in PHP's pdo_mysql with mysqlnd driver that can lead to remote code execution.

binary-exploitationdatabase-securityexploitation+2
62 years ago
cve-2026-42945-nginx32-lab preview

cve-2026-42945-nginx32-lab

GitHubdinosn/cve-2026-42945-nginx32-lab

CVE-2026-42945 nginx 32-bit exploit lab ASLR enabled

binary-exploitationctfeducation+5
34 months ago
CVE-2026-15718-who-put-ptrs-in-my-wasm preview

CVE-2026-15718-who-put-ptrs-in-my-wasm

GitHubsneakynachos/cve-2026-15718-who-put-ptrs-in-my-wasm

PoC exploit chain for CVE-2026-15718: SpiderMonkey wasm baseline compiler array.fill missing-sync -> invalid pointer -> addrOf/fakeobj -> arbitrary…

binary-exploitationexploitationpayload-development+3
11 month ago
CVE-2024-0406-POC preview

CVE-2024-0406-POC

GitHubwalidpyh/cve-2024-0406-poc

CVE-2024-0406 POC using symlinks

binary-exploitationeducationexploitation+3
51 year ago
CVE-2021-30809-OOM preview

CVE-2021-30809-OOM

GitHubseregonwar/cve-2021-30809-oom

CVE-2021-30809 UAF use-after-free PoC

binary-exploitationeducationexploitation+2
41 year ago
CVE-2026-9256-Poc preview

CVE-2026-9256-Poc

GitHub3nou9h/cve-2026-9256-poc

Demonstrates CVE-2026-9256 heap buffer overflow in nginx's ngx_http_rewrite_module with PoC scripts for heap/libc leaks and worker crash.

binary-exploitationeducationexploitation+3
34 months ago
zero-click-exploit-analysis preview

zero-click-exploit-analysis

GitHubdanielw98/zero-click-exploit-analysis

CVE-2025-55177 + CVE-2025-43300: reverse-engineering the WhatsApp-ImageIO zero-click iOS chain, with interactive labs.

binary-exploitationeducationexploitation+7
34 months ago
CVE-2026-5281 preview

CVE-2026-5281

GitHubjaf0rk/cve-2026-5281

Proof-of-concept exploit for CVE-2026-5281, a heap-use-after-free vulnerability in Chromium's Dawn WebGPU implementation, with ASAN log and build…

binary-exploitationdebuggersexploitation+3
2 months ago
CVE-2026-9256 preview

CVE-2026-9256

GitHubsuominen/cve-2026-9256

Tracking the nginx CVE-2026-9256 rewrite-module heap overflow

binary-exploitationcurated-resourceseducation+3
1 month ago
CVE-2025-46817 preview

CVE-2025-46817

GitHubdwisiswant0/cve-2025-46817

Proof-of-concept for Redis Lua unpack integer overflow (CVE-2025-46817) demonstrating stack blow-up and potential RCE on Redis 8.2.1.

binary-exploitationdatabase-securityexploitation+2
311 months ago
cve-2024-53703-poc preview

cve-2024-53703-poc

GitHubscrt/cve-2024-53703-poc

POC for exploiting CVE-2024-53703, a stack-based buffer overflow in SonicWall SMA mod_httprp.so

binary-exploitationexploitationpenetration-testing+2
21 year ago
BAD-WEBP-CVE-2023-4863 preview

BAD-WEBP-CVE-2023-4863

GitHubtalbeerysec/bad-webp-cve-2023-4863

BAD-WEBP-CVE-2023-4863

binary-exploitationexploitationpayload-development+2
33 years ago
CVE-2024-29943-but-with-wasm preview

CVE-2024-29943-but-with-wasm

GitHubsneakynachos/cve-2024-29943-but-with-wasm

CVE-2024-29943, but with wasm

binary-exploitationexploitationshellcode+1
11 month ago
CVE-2026-2764-but-with-wasm preview

CVE-2026-2764-but-with-wasm

GitHubsneakynachos/cve-2026-2764-but-with-wasm

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

binary-exploitationexploitationpayload-development+3
11 month ago
CVE-2020-15999 preview

CVE-2020-15999

GitHubmarmeus/cve-2020-15999

Todos los materiales necesarios para la PoC en Chrome y ftview

binary-exploitationeducationexploitation+2
25 years ago
CVE-2026-42533-POC preview

CVE-2026-42533-POC

GitHub0xcyberstan/cve-2026-42533-poc

CVE-2026-42533: pre-auth nginx heap overflow and info leak from PCRE capture clobbering in the map/script engine, chained to RCE.

binary-exploitationexploitationpenetration-testing+3
11 month ago
CVE-2026-66729-Out-of-Bounds-Read-in-facil.io-MIME-Parser-leads-to-Server-Crash preview

CVE-2026-66729-Out-of-Bounds-Read-in-facil.io-MIME-Parser-leads-to-Server-Crash

GitHubtheopaid/cve-2026-66729-out-of-bounds-read-in-facil.io-mime-parser-leads-to-server-crash

Security Advisory: Out-of-Bounds Read in facil.io MIME Parser leads to Server crash

binary-exploitationeducationpapers-research+2
12 months ago
Previous1…456…10Next