Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
63 results
the-sanitizer-is-the-weapon-cve-2026-68749-cve-2026-68750-quadratic-dos-in-elixir-html-sanitize-ex preview

the-sanitizer-is-the-weapon-cve-2026-68749-cve-2026-68750-quadratic-dos-in-elixir-html-sanitize-ex

GitHubhunt-benito/the-sanitizer-is-the-weapon-cve-2026-68749-cve-2026-68750-quadratic-dos-in-elixir-html-sanitize-ex
adversarial-attackexploitationpayload-generation+3
10 days ago
CVE-2026-67846-BOOM-NBDTLB preview

CVE-2026-67846-BOOM-NBDTLB

GitHubduan528/cve-2026-67846-boom-nbdtlb

Public vulnerability advisory and supporting evidence for CVE-2026-67846 affecting the BOOM v3/v4 NBDTLB implementation.

hardware-securityprivilege-escalationvulnerability-analysis
11 days ago
CVE-2026-44401 preview

CVE-2026-44401

GitHubsn0x-sharma/cve-2026-44401

Persistent XSS in Typemill CMS: the Markdown parser lets javascript: URIs through unfiltered. Writeup + PoC.

educationexploitationpenetration-testing+3
12 days ago
CVE-2026-52886 preview

CVE-2026-52886

GitHubv3s9er/cve-2026-52886

Notepad++ CVE-2026-52886 — session.xml backupFilePath starts_with() path traversal (GHSA-rqfm-pw34-r7j6)

data-exfiltrationexploitationvulnerability-analysis
10 days ago
cve-2026-43499 preview

cve-2026-43499

GitHubcatxiaoshi/cve-2026-43499

PD2229B的43499(ghostlock)可行性研究

android-securitybinary-exploitationexploitation+4
19 days ago
pgadmin-ai-assistant-sql-injection-cve-2026-17351-lexer-differential-bypass preview

pgadmin-ai-assistant-sql-injection-cve-2026-17351-lexer-differential-bypass

GitHubhunt-benito/pgadmin-ai-assistant-sql-injection-cve-2026-17351-lexer-differential-bypass
ai-securitydatabase-securityeducation+4
23 days ago
CVE-2026-66748-Camaleon-CMS---Authenticated-RCE-via-select_eval-Custom-Field preview

CVE-2026-66748-Camaleon-CMS---Authenticated-RCE-via-select_eval-Custom-Field

GitHubtheopaid/cve-2026-66748-camaleon-cms---authenticated-rce-via-select_eval-custom-field

Security Advisory: Camaleon CMS - Authenticated RCE via `select_eval` Custom Field

code-analysisexploitationpapers-research+4
25 days ago
CVE-2013-2028-Exploit preview

CVE-2013-2028-Exploit

GitHubm4drat/cve-2013-2028-exploit

CVE-2013-2028 python exploit

binary-exploitationexploitationpayload-development+4
196 years ago
CVE-2021-21311 preview

CVE-2021-21311

GitHubomoknooni/cve-2021-21311
educationexploitationvulnerability-analysis+2
33 years ago
xwiki__xwiki-commons_CVE-2022-24897_12-6-6 preview

xwiki__xwiki-commons_CVE-2022-24897_12-6-6

GitHubshoucheng3/xwiki__xwiki-commons_cve-2022-24897_12-6-6
general-purpose-utilities
1 year ago
xwiki__xwiki-commons_CVE-2023-29201_14-5 preview

xwiki__xwiki-commons_CVE-2023-29201_14-5

GitHubshoucheng3/xwiki__xwiki-commons_cve-2023-29201_14-5
code-analysisgeneral-purpose-utilitiesstatic-analysis+1
10 months ago
xwiki__xwiki-commons_CVE-2023-29528_14-9-rc-1 preview

xwiki__xwiki-commons_CVE-2023-29528_14-9-rc-1

GitHubshoucheng3/xwiki__xwiki-commons_cve-2023-29528_14-9-rc-1
general-purpose-utilities
9 months ago
xwiki__xwiki-commons_CVE-2023-31126_14-10-3 preview

xwiki__xwiki-commons_CVE-2023-31126_14-10-3

GitHubshoucheng3/xwiki__xwiki-commons_cve-2023-31126_14-10-3
code-analysisgeneral-purpose-utilitiesstatic-analysis+1
10 months ago
xwiki__xwiki-commons_CVE-2023-36471_14-10-5 preview

xwiki__xwiki-commons_CVE-2023-36471_14-10-5

GitHubshoucheng3/xwiki__xwiki-commons_cve-2023-36471_14-10-5
code-analysisgeneral-purpose-utilitiesstatic-analysis+1
10 months ago
xwiki__xwiki-rendering_CVE-2023-32070_14-5 preview

xwiki__xwiki-rendering_CVE-2023-32070_14-5

GitHubshoucheng3/xwiki__xwiki-rendering_cve-2023-32070_14-5
code-analysiseducationgeneral-purpose-utilities+2
9 months ago
xwiki__xwiki-rendering_CVE-2023-37908_14-10-3 preview

xwiki__xwiki-rendering_CVE-2023-37908_14-10-3

GitHubshoucheng3/xwiki__xwiki-rendering_cve-2023-37908_14-10-3
code-analysisgeneral-purpose-utilitiesvulnerability-analysis+1
1 year ago
srikanth-lingala__zip4j_CVE-2018-1002202_1-3-2 preview

srikanth-lingala__zip4j_CVE-2018-1002202_1-3-2

GitHubshoucheng3/srikanth-lingala__zip4j_cve-2018-1002202_1-3-2
code-analysiscurated-resourceseducation+3
1 year ago
prefect-cve-2026-5366 preview

prefect-cve-2026-5366

GitHubrenat0z3r0/prefect-cve-2026-5366

PoC for CVE-2026-5366: git argument injection in Prefect's GitRepository leading to RCE on the worker.

code-analysiseducationexploitation+3
1 month ago
Previous1234Next