Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
360 results
activemq-rce-cve-2023-46604 preview

activemq-rce-cve-2023-46604

GitHubthinkycx/activemq-rce-cve-2023-46604

activemq-rce-cve-2023-46604

binary-analysiscode-analysisexploitation+2
2 years ago
Bludit-3-9-2-bb preview

Bludit-3-9-2-bb

GitHublucareggiannini/bludit-3-9-2-bb

Bludit 3.9.2 - bruteforce bypass - CVE-2019-17240

exploitationpassword-attackspenetration-testing+2
6 years ago
CVE-2023-22515-Scan. preview

CVE-2023-22515-Scan.

GitHubedsonjt81/cve-2023-22515-scan.

Lightweight scanner for CVE-2023-22515 that detects vulnerable Atlassian Confluence instances by probing the /server-info.action endpoint and…

exploitationinformation-gatheringpenetration-testing+3
2 years ago
Ratpack-1 preview

Ratpack-1

GitHubepicosy/ratpack-1

Lightweight Java toolkit for building high-performance web applications, with a focus on exploiting CVE-2019-17513 for security testing and…

exploitationpenetration-testingvulnerability-analysis+2
2 years ago
obridge preview

obridge

GitHubepicosy/obridge

Java source code generator that creates calling classes for Oracle PL/SQL package procedures, supporting various parameter types and automatic type…

code-analysisdatabase-securitygeneral-purpose-utilities+1
2 years ago
CVE-2025-54589 preview
Archived

CVE-2025-54589

GitHubbytereaper77/cve-2025-54589

PoC for CVE-2025-54589 – a reflected XSS vulnerability in Copyparty ≤ 1.18.6.

exploitationpenetration-testingvulnerability-analysis+2
21 year ago
CVE-2022-0169 preview

CVE-2022-0169

GitHubx3rx3ssec/cve-2022-0169

CVE-2022-0169 - WordPress Photo Gallery SQLi PoC

educationexploitationinformation-gathering+3
31 year ago
S2-057-CVE-2018-11776 preview

S2-057-CVE-2018-11776

GitHubbrianwrf/s2-057-cve-2018-11776

A simple exploit for Apache Struts RCE S2-057 (CVE-2018-11776)

educationexploitationpenetration-testing+2
168 years ago
CVE-2025-61922-PoC preview

CVE-2025-61922-PoC

GitHubg0vguy/cve-2025-61922-poc

A simple, educational proof-of-concept script demonstrating the zero-click account takeover vulnerability in the PrestaShop Checkout module…

educationexploitationpayload-generation+3
118 months ago
WordPress-Path-Traversal-CVE-2019-11447 preview

WordPress-Path-Traversal-CVE-2019-11447

GitHubcapivara-research/wordpress-path-traversal-cve-2019-11447

Detailed penetration test report demonstrating unauthenticated path traversal (CVE-2019-11447) in WordPress Simple Backup plugin, including…

educationexploitationlabs-practice+3
11 days ago
CVE-2025-34085 preview

CVE-2025-34085

GitHub0xgh057r3c0n/cve-2025-34085

WordPress Simple File List Unauthenticated RCE Exploit

educationexploitationpayload-generation+3
21 year ago
cve-2019-5420-POC preview

cve-2019-5420-POC

GitHubwildwestcybersecurity/cve-2019-5420-poc

cve-2019-5420 POC simple ruby script

educationexploitationpayload-generation+3
12 months ago
wordpress-cve-2024-10924-pentest preview

wordpress-cve-2024-10924-pentest

GitHubademto/wordpress-cve-2024-10924-pentest

Penetration testing report and exploit for CVE-2024-10924, a 2FA bypass in Really Simple SSL, including reconnaissance, exploitation, and remediation…

authenticationeducationexploitation+5
31 year ago
cms-made-simple-python3 preview

cms-made-simple-python3

GitHubjagdeepsinghceh/cms-made-simple-python3

Python3-converted exploit and research notes for CMS Made Simple (CVE-2019-9053) — Unauthenticated SQL Injection vulnerability. Includes original…

educationexploitationpassword-cracking+3
210 months ago
CVE-2017-7921-rewrite preview

CVE-2017-7921-rewrite

GitHubkelvinwin10/cve-2017-7921-rewrite

simple CVE-2017-7921 rewrite in python by me. for educational purposes only!

educationexploitationiot-security+3
27 months ago
CVE-2022-28986 preview

CVE-2022-28986

GitHubflaviupopescu/cve-2022-28986

A Insecure direct object references (IDOR) vulnerability in "Simple 2FA Plugin for Moodle" by LMS Doctor

authenticationeducationids-ips-evasion+3
24 years ago
CVE-2019-9053 preview

CVE-2019-9053

GitHubitzr1g/cve-2019-9053

Python exploit for CVE-2019-9053 targeting CMS Made Simple with SQL injection detection and password hash cracking via wordlist, featuring argparse…

educationexploitationpassword-cracking+3
5 months ago
Simple-CTF-Writeup preview

Simple-CTF-Writeup

GitHubimperialx1104/simple-ctf-writeup

Professional TryHackMe Simple CTF walkthrough covering enumeration, CMS Made Simple SQL Injection (CVE-2019-9053), credential recovery, SSH access,…

ctfeducationexploitation+6
4 months ago
Previous1…17181920Next