Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
116 results
CVE-2026-27541-Analysis-Lab preview

CVE-2026-27541-Analysis-Lab

GitHubrootdirective-sec/cve-2026-27541-analysis-lab

Docker lab for reproducing CVE-2026-27541, an authenticated privilege escalation in WooCommerce Wholesale Prices. Compares vulnerable and patched…

educationexploitationlabs-practice+4
6 months ago
CVE-2026-26416 preview

CVE-2026-26416

GitHubaksalsalimi/cve-2026-26416

Detailed write-up of CVE-2026-26416, an authorization bypass vulnerability in TCS Cognix Recon Client v3.0 allowing privilege escalation via crafted…

educationexploitationpenetration-testing+2
7 months ago
CVE-2025-63314 preview

CVE-2025-63314

GitHubpadayali-jd/cve-2025-63314

Detailed disclosure of CVE-2025-63314: static, non-expiring password reset token in Acora CMS 10.7.1 enabling account takeover and privilege…

authenticationeducationexploitation+3
8 months ago
BACkupCVE-2026-29971 preview

BACkupCVE-2026-29971

GitHubtharunchidurala-cyber/backupcve-2026-29971

An attacker can execute arbitrary JavaScript in the victim's browser, potentially leading to session hijacking or privilege escalation.

exploitationvulnerability-analysisweb-security
6 months ago
CVE-2026-29971 preview

CVE-2026-29971

GitHubtharooon/cve-2026-29971

An attacker can execute arbitrary JavaScript in the victim's browser, potentially leading to session hijacking or privilege escalation.

educationpapers-researchpenetration-testing+3
4 months ago
CVE-2023-39144 preview

CVE-2023-39144

GitHubcduram/cve-2023-39144

CVE-2023-39144 disclosure: cleartext password exposure in Element55 Maketime appliance admin pages, enabling privilege escalation via…

exploitationinformation-gatheringmisconfiguration+3
3 years ago
CVE-2024-56116 preview

CVE-2024-56116

GitHubcompliancecontrol/cve-2024-56116

Documentation for CVE-2024-56116: a Cross-Site Request Forgery vulnerability in Amiro.CMS before 7.8.4 allowing remote attackers to create an…

authentication-authorizationexploitationprivilege-escalation+2
1 year ago
CVE-2024-8349-and-CVE-2024-8350 preview

CVE-2024-8349-and-CVE-2024-8350

GitHubkarlemilnikka/cve-2024-8349-and-cve-2024-8350

Authenticated Privilege Escalation to Admin exploiting Uncanny Groups for LearnDash.

authentication-authorizationexploitationpenetration-testing+3
2 years ago
CVE-2020-24030 preview

CVE-2020-24030

GitHubunderprotection/cve-2020-24030

Proof-of-concept for CVE-2020-24030: weak token expiration in ForLogic Qualiex v1/v3 enabling remote unauthenticated privilege escalation and…

authentication-authorizationexploitationpenetration-testing+3
6 years ago
CVE-2020-24029 preview

CVE-2020-24029

GitHubunderprotection/cve-2020-24029

Proof-of-concept for CVE-2020-24029: unauthenticated password change vulnerability in ForLogic Qualiex v1 and v3, enabling remote privilege…

authenticationexploitationinformation-gathering+3
6 years ago
CVE-2025-4162030 preview

CVE-2025-4162030

GitHubnotitssixtyn3in/cve-2025-4162030

Security advisory detailing a critical authentication vulnerability (CVE-2025-4162030) in Copilot, involving user ID switching that could lead to…

authenticationauthentication-authorizationincident-response+3
1 year ago
CVE-2023-45992 preview

CVE-2023-45992

GitHubharry935/cve-2023-45992

Proof-of-concept exploit for CVE-2023-45992: Stored Cross-Site Scripting and CSRF in Ruckus CloudPath 5.12 enabling unauthenticated full admin…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
CVE-2025-4172025 preview

CVE-2025-4172025

GitHubnotitssixtyn3in/cve-2025-4172025

Security advisory for CVE-2025-4172025: an authentication bypass vulnerability in Copilot enabling unauthorized account access, session hijacking,…

authenticationcloud-securityidentity-access-management+3
1 year ago
SOC227-Microsoft-SharePoint-Server-Elevation-of-Privilege-Possible-CVE-2023-29357-Exploitation preview

SOC227-Microsoft-SharePoint-Server-Elevation-of-Privilege-Possible-CVE-2023-29357-Exploitation

GitHubdeividasterechovas/soc227-microsoft-sharepoint-server-elevation-of-privilege-possible-cve-2023-29357-exploitation

SOC case analysis walkthrough demonstrating detection and response to CVE-2023-29357 privilege escalation in Microsoft SharePoint Server, including…

educationincident-responselog-analysis+3
1 year ago
CVE-2023-32243-Detection-and-Mitigation-in-WordPress preview

CVE-2023-32243-Detection-and-Mitigation-in-WordPress

GitHubdev0558/cve-2023-32243-detection-and-mitigation-in-wordpress

Educational lab demonstrating detection and mitigation of CVE-2023-32243 privilege escalation in WordPress Essential Addons for Elementor, using…

educationexploitationlabs-practice+6
1 year ago
Burp-SessionAuthTool preview
Archived

Burp-SessionAuthTool

GitHubthomaspatzke/burp-sessionauthtool

Burp plugin which supports in finding privilege escalation vulnerabilities

authentication-authorizationpenetration-testingprivilege-escalation+3
424 years ago
CVE-2026-15989 preview

CVE-2026-15989

GitHubfl0ydsec/cve-2026-15989

Mass scanner and exploit for CVE-2026-15989, the unauthenticated privilege escalation in Super Forms <= 6.3.316 that creates administrator accounts…

exploitationpayload-generationpenetration-testing+6
3 days ago
CTFs preview

CTFs

GitHubadamkadaban/ctfs

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

binary-exploitationcryptographyctf+9
86410 months ago
Previous1234567Next