Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
4240 results
cve-2022-36804 preview

cve-2022-36804

GitHubtahtaciburak/cve-2022-36804

A simple PoC for Atlassian Bitbucket RCE [CVE-2022-36804]

exploitationpenetration-testingreconnaissance+2
7
4 years ago
CVE-2022-36163 preview

CVE-2022-36163

GitHubmaherazzouzi/cve-2022-36163

Proof-of-concept exploit for CVE-2022-36163, a format string vulnerability in pdftoroff hovacui 1.1.0 PDF reader, demonstrating local…

binary-analysisexploitationfuzzing+2
14 years ago
CVE-2022-35497 preview

CVE-2022-35497

GitHubpn-tester/cve-2022-35497

TM4WEB Vulnerability - CVE-2022-35497

exploitationmisconfigurationvulnerability-analysis+1
2 months ago
CVE-2022-3546 preview

CVE-2022-3546

GitHubthehackingverse/cve-2022-3546

Proof-of-concept exploit for CVE-2022-3546, a stored XSS vulnerability in SourceCodester Simple Cold Storage Management System 1.0 via the Create…

exploitationinformation-gatheringpenetration-testing+2
3 years ago
CVE-2022-3518 preview

CVE-2022-3518

GitHublohith19/cve-2022-3518

Proof-of-concept exploit for CVE-2022-3518, demonstrating the vulnerability and providing a basis for security testing and analysis.

exploitationinformation-gatheringvulnerability-analysis
13 years ago
CVE-2022-3464 preview

CVE-2022-3464

GitHubgylq/cve-2022-3464

A vulnerability classified as problematic has been found in puppyCMS up to 5.1. This affects an unknown part of the file /admin/settings.php. The…

curated-resourceseducationinformation-gathering+2
3 years ago
CVE-2022-33679_Checker preview

CVE-2022-33679_Checker

GitHubsoy-oreocato/cve-2022-33679_checker

Lightweight Python checker that tests Active Directory credentials for exposure to CVE-2022-33679 (Kerberos AS-REP roast without pre-authentication).…

authenticationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2026-8732-POC preview

CVE-2026-8732-POC

GitHubp3nt3st3r-star/cve-2026-8732-poc

Multi-threaded mass scanner for CVE-2026-8732 in WordPress WP Google Map Pro. Automates nonce extraction, token exploitation, and hidden admin…

exploitationinformation-gatheringpenetration-testing+4
84 months ago
CVE-2022-30525 preview

CVE-2022-30525

GitHubm4fiab0y/cve-2022-30525

Zyxel Firewall Remote Command Injection Vulnerability (CVE-2022-30525) Batch Detection Script

exploitationinformation-gatheringpenetration-testing+3
14 years ago
Bluekeep-Hunter preview

Bluekeep-Hunter

GitHubravaan21/bluekeep-hunter

CVE-2019-0708, A tool which mass hunts for bluekeep vulnerability for exploitation.

exploitationexploit-frameworksnetwork-security+3
43 years ago
CVE-2022-30190_Temporary_Fix preview

CVE-2022-30190_Temporary_Fix

GitHubjotaqc/cve-2022-30190_temporary_fix

These are two Python scripts compiled to easily and quickly apply temporary protection against the CVE-2022-30190 vulnerability (Follina)

configuration-auditingdefensive-toolsexploitation+2
4 years ago
CVE-2022-30075 preview

CVE-2022-30075

GitHubm4fiab0y/cve-2022-30075

Proof-of-concept exploit for CVE-2022-30075, demonstrating a remote code execution vulnerability in a web application. Includes Python-based payload…

exploitationpenetration-testingreconnaissance+2
14 years ago
CVE-2022-29464 preview

CVE-2022-29464

GitHubpushkarup/cve-2022-29464

A PoC and Exploit for CVE 2022-29464

exploitationpayload-generationpenetration-testing+3
12 years ago
CVE-2022-30023 preview

CVE-2022-30023

GitHubhaniwa0x01/cve-2022-30023

Authenticated command injection exploit for Tenda HG9 routers. Provides interactive remote shell access via Python script for penetration testing and…

command-and-controlexploitationiot-security+3
84 years ago
-CVE-2022-29464 preview

-CVE-2022-29464

GitHubr4x0r1337/-cve-2022-29464

Python exploit for CVE-2022-29464 targeting a remote code execution vulnerability in WSO2 API Manager and Identity Server.

exploitationinformation-gatheringpenetration-testing+2
43 years ago
CocoaPods-RCE_CVE-2024-38366 preview

CocoaPods-RCE_CVE-2024-38366

GitHubreefspek/cocoapods-rce_cve-2024-38366

CocoaPods RCE Vulnerability CVE-2024-38366

command-and-controlexploitationpayload-development+5
12 years ago
CVE-2022-27925 preview

CVE-2022-27925

GitHubmiko550/cve-2022-27925

Python exploit script for CVE-2022-27925 targeting Zimbra Collaboration Suite. Supports single URL or list-based scanning for remote code execution…

exploitationpenetration-testingreconnaissance+2
4 years ago
CVE-2022-26138 preview

CVE-2022-26138

GitHubshavchen/cve-2022-26138

Exploit for CVE-2022-26138, a SAML SSO bypass vulnerability in Atlassian products, with a FOFA dork for identifying vulnerable instances.

exploitationinformation-gatheringreconnaissance+2
4 years ago
Previous1…99100Next