Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
158 results
WordPress-KeepInMind-CVE-2026-9271-Exploit preview

WordPress-KeepInMind-CVE-2026-9271-Exploit

GitHubcerberusmrxi/wordpress-keepinmind-cve-2026-9271-exploit

Authorized stored XSS assessment tool for CVE-2026-9271 in WordPress KeepInMind plugin. Detects vulnerable versions, injects safe test payloads, and…

educationexploitationpenetration-testing+3
1
1 month ago
NetLogic preview

NetLogic

GitHubdmitryflynn/netlogic

NetLogic is an advanced network analysis and cybersecurity toolkit for traffic inspection, packet analysis, and threat detection

ai-securitycloud-securitydns-analysis+7
11 month ago
kirki-wordpress-account-security-assessment preview

kirki-wordpress-account-security-assessment

GitHubamnsecurity/kirki-wordpress-account-security-assessment

Professional vulnerability assessment report for Kirki WordPress account security risk, including technical impact, remediation, and mitigation…

educationpapers-researchpenetration-testing+2
11 month ago
CVE-2023-37191 preview

CVE-2023-37191

GitHubsahiloj/cve-2023-37191

A Stored Cross-Site Scripting (XSS) vulnerability exists in Issabel PBX version 4.0.0-6. This allows an authenticated attacker to inject arbitrary…

educationexploitationpenetration-testing+3
16 months ago
CVE-2026-11518-XSS preview

CVE-2026-11518-XSS

GitHubxmyronn/cve-2026-11518-xss

Proof-of-concept for unauthenticated stored XSS in SourceCodester Inventory System, demonstrating admin session hijacking via crafted registration…

ctfeducationpenetration-testing+3
3 months ago
CVE-2025-31161 preview

CVE-2025-31161

GitHub0xblackash/cve-2025-31161

CVE-2025-31161

authentication-authorizationeducationexploitation+3
14 months ago
CVE-2025-67875 preview

CVE-2025-67875

GitHublukasz-rybak/cve-2025-67875

CVE-2025-67875 - ChurchCRM has stored XSS via Person Property Assignment Leading to Admin Session Hijacking

educationexploitationpenetration-testing+3
4 months ago
CVE-2026-24415 preview

CVE-2026-24415

GitHublukasz-rybak/cve-2026-24415

CVE-2026-24415 - OpenSTAManager Affected by XSS in modifica_iva.php via righe parameter

educationexploitationpenetration-testing+3
4 months ago
CVE-2026-3516 preview

CVE-2026-3516

GitHubd3kc4rt1/cve-2026-3516

Authenticated Stored Cross-Site Scripting (XSS) in Contact List Plugin

educationexploitationpenetration-testing+3
4 months ago
CVE-2025-63588 preview

CVE-2025-63588

GitHubcybercrewinc/cve-2025-63588

Detailed proof-of-concept for CVE-2025-63588, a reflected XSS vulnerability in CMSimple_XH 1.8, with CVSS scoring, impact analysis, and secure coding…

educationexploitationpenetration-testing+3
9 months ago
CVE-2025-65675 preview

CVE-2025-65675

GitHubrivek619/cve-2025-65675

Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arbitrary code via crafted SVG…

educationpenetration-testingvulnerability-analysis+2
9 months ago
CVE-2025-63307 preview

CVE-2025-63307

GitHubtheethat-thamwasin/cve-2025-63307

An authenticated Stored Cross-site Scripting (XSS) vulnerability in laravel-file-manager v3.3.1 and below allows attackers with access to the file…

educationexploitationpenetration-testing+3
19 months ago
CVE-2024-27632 preview

CVE-2024-27632

GitHubally-petitt/cve-2024-27632

CVE-2024–27632 Reference

cryptographyeducationpapers-research+2
12 years ago
CVE-2025-65676 preview

CVE-2025-65676

GitHubrivek619/cve-2025-65676

Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arbitrary code via crafted SVG…

educationpenetration-testingvulnerability-analysis+2
9 months ago
CVE-2025-57389 preview

CVE-2025-57389

GitHubamalcew/cve-2025-57389

A reflected cross-site scripting vulnerability in OpenWRT v18.06.2

exploitationpenetration-testingvulnerability-analysis+2
11 months ago
roller-csrf preview

roller-csrf

GitHubvanlam2001/roller-csrf

PoC exploit for a CSRF vulnerability in Apache Roller v6.1.2 profile update endpoint. Includes HTML form exploit code to demonstrate unauthorized…

exploitationpenetration-testingvulnerability-analysis+2
9 months ago
CVE-2025-7431 preview

CVE-2025-7431

GitHubnagisayumaa/cve-2025-7431

CVE-2025-7431

educationexploitationpenetration-testing+3
1 year ago
CVE-2025-9209 preview

CVE-2025-9209

GitHubnxploited/cve-2025-9209

RestroPress – Online Food Ordering System 3.0.0 - 3.1.9.2 - Unauthenticated Information Exposure to Authentication Bypass via Forged JWT

authentication-authorizationexploitationinformation-gathering+5
9 months ago
Previous1…789Next