Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
65 results
CVE-2025-55182-Scanner preview

CVE-2025-55182-Scanner

GitHubsainionhacks/cve-2025-55182-scanner

A standalone GUI tool to detect and demonstrate the **React Server Components Remote Code Execution (RCE)** vulnerability (CVE-2025-55182) in Next.js…

educationexploitationpayload-generation+3
2
8 months ago
Next.js-RSC-RCE-Scanner-Burp-Suite-Extension preview

Next.js-RSC-RCE-Scanner-Burp-Suite-Extension

GitHubtobiasguta/next.js-rsc-rce-scanner-burp-suite-extension

Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).

dynamic-analysis-sandboxingexploitationpenetration-testing+3
248 months ago
watchTowr-vs-Fortiweb-AuthBypass preview

watchTowr-vs-Fortiweb-AuthBypass

GitHubwatchtowrlabs/watchtowr-vs-fortiweb-authbypass
exploitationpenetration-testingvulnerability-analysis+2
769 months ago
WordPress-File-Upload-4.24.11---Unauthenticated-Path-Traversal preview

WordPress-File-Upload-4.24.11---Unauthenticated-Path-Traversal

GitHubamirqusairy99/wordpress-file-upload-4.24.11---unauthenticated-path-traversal

CVE-2024-9047

exploitationinformation-gatheringpenetration-testing+2
9 months ago
CVE-2025-31161 preview

CVE-2025-31161

GitHubtdawg506/cve-2025-31161

Scans target to see if its vulnerable to CVE-2025-31161

authenticationeducationexploitation+3
10 months ago
CVE-2025-29927 preview

CVE-2025-29927

GitHubhoumanpashaei/cve-2025-29927

This is a CVE-2025-29927 Scanner.

crawlerpenetration-testingreconnaissance+3
51 year ago
CVE-2025-53770-Scanner preview

CVE-2025-53770-Scanner

GitHub0xkr1x/cve-2025-53770-scanner

🎯 Vulnerability scanner for SharePoint servers affected by CVE-2025-53770. Detects unsafe deserialization using ToolPane.aspx with a crafted…

exploitationpenetration-testingvulnerability-analysis+3
21 year ago
cve-2025-5755 preview

cve-2025-5755

GitHubcybertechajju/cve-2025-5755
educationexploitationinformation-gathering+3
81 year ago
ExploitVeer preview

ExploitVeer

GitHubcyberleelawat/exploitveer

An advanced, powerful, and easy-to-use tool designed to detect and exploit CVE-2025-5777 (CitrixBleed 2). This script not only identifies the…

exploitationinformation-gatheringpenetration-testing+3
31 year ago
CVE-2024-4577 preview

CVE-2024-4577

GitHubr0otk3r/cve-2024-4577
command-and-controleducationexploitation+3
1 year ago
CVE-2025-30208 preview

CVE-2025-30208

GitHubth-secforge/cve-2025-30208

CVE‑2025‑30208 is a medium-severity arbitrary file read vulnerability in the Vite development server (a popular frontend build tool)

exploitationinformation-gatheringpenetration-testing+3
11 year ago
CVE-2025-0054 preview

CVE-2025-0054

GitHubz3usx01/cve-2025-0054
educationpenetration-testingvulnerability-analysis+2
1 year ago
CVE-2025-5815-Nuclei-Template preview

CVE-2025-5815-Nuclei-Template

GitHubrootharpy/cve-2025-5815-nuclei-template

CVE-2025-5815: An unauthenticated vulnerability in the WordPress Traffic Monitor plugin (≤ 3.2.2) allowing remote attackers to disable bot logging…

exploitationmisconfigurationpenetration-testing+3
1 year ago
CVE-2025-29927 preview

CVE-2025-29927

GitHubsagsooz/cve-2025-29927

🔐 Python-based smart scanner for CVE-2025-29927 — Next.js middleware authentication bypass vulnerability. Detects meta refresh, keyword-based…

authenticationeducationpenetration-testing+3
1 year ago
BugId preview

BugId

GitHubskylined/bugid

Detect, analyze and uniquely identify crashes in Windows applications

binary-analysisdebuggersdynamic-code-analysis+2
5251 year ago
Burp_CVE-2025-31324 preview

Burp_CVE-2025-31324

GitHubblueowl-overlord/burp_cve-2025-31324

Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324

api-security-testingexploitationpenetration-testing+3
1 year ago
SAP-CVE-2025-31324 preview

SAP-CVE-2025-31324

GitHubalizngnc/sap-cve-2025-31324

SAP NetWeaver Unauthenticated Remote Code Execution

exploitationpenetration-testingred-teaming+2
1 year ago
CVE-2019-15107-Scanner preview

CVE-2019-15107-Scanner

GitHubmattb709/cve-2019-15107-scanner

CVE-2019-15107-Scanner is a Python-based scanner that detects vulnerable Webmin (1.890 - 1.920) servers affected by CVE-2019-15107, an…

exploitationinformation-gatheringpenetration-testing+3
31 year ago
Previous1234Next