Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1488 results
ENLBufferPwn preview

ENLBufferPwn

GitHubpablomk7/enlbufferpwn

Information and PoC about the ENLBufferPwn vulnerability

binary-exploitationeducationembedded-systems-security+2
2993 years ago
CVE-2023-4966 preview

CVE-2023-4966

GitHubrevoltsecurities/cve-2023-4966

An Exploitation script developed to exploit the CVE-2023-4966 bleed citrix information disclosure vulnerability

exploitationinformation-gatheringpenetration-testing+2
102 years ago
CVE-2022-1077 preview

CVE-2022-1077

GitHubbrosck/cve-2022-1077

TEM FLEX-1080/FLEX-1085 1.6.0 log log.cgi Information Disclosure

exploitationinformation-gatheringiot-security+3
41 year ago
CVE-2025-54554 preview

CVE-2025-54554

GitHubaman-parmar/cve-2025-54554

CVE-2025-54554 – Unauthenticated Access in tiaudit REST API leading to Sensitive Information Disclosure

api-securityinformation-gatheringmisconfiguration+2
1 year ago
CVE-2026-51772-CVE-2026-51773 preview

CVE-2026-51772-CVE-2026-51773

GitHubsadandbset/cve-2026-51772-cve-2026-51773

This project describes detailed information about the CVE-2026-51772 vulnerability.

curated-resourceseducationpapers-research+1
8 days ago
CVE-2023-23752 preview

CVE-2023-23752

GitHubr3dston3/cve-2023-23752

Proof-of-concept exploit for CVE-2023-23752 (Joomla 4.0.0-4.2.8) that extracts usernames and passwords via an information disclosure vulnerability.

exploitationinformation-gatheringpenetration-testing+2
12 years ago
CVE-2024-24919_POC preview

CVE-2024-24919_POC

GitHubsar-3mar/cve-2024-24919_poc

It's Proof of Concept on CVE-2024-24919-POC , i made it after it's discoverd

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2022-39802 preview

CVE-2022-39802

GitHubredrays-io/cve-2022-39802

[CVE-2022-39802] File path traversal vulnerability in SAP Manufacturing Execution

exploitationinformation-gatheringpenetration-testing+3
33 years ago
lblfixer_cve_2022_31181 preview

lblfixer_cve_2022_31181

GitHubdrkbcn/lblfixer_cve_2022_31181

Module for PrestaShop 1.6.1.X/1.7.X to fix CVE-2022-31181 / CVE-2022-36408 vulnerability (Chain SQL Injection)

database-securitymisconfigurationvulnerability-analysis+1
4 years ago
lblfixer_cve_2023_28447 preview

lblfixer_cve_2023_28447

GitHubdrkbcn/lblfixer_cve_2023_28447

Module for PrestaShop 1.7.X to fix CVE-2023-28447 vulnerability (Smarty XSS)

code-analysismisconfigurationstatic-analysis+2
23 years ago
CVE-2025-24071 preview

CVE-2025-24071

GitHubabdelrahman0sayed/cve-2025-24071

This is a python PoC scripts for CVE-2025-24071 which is a vulnerability in Windows File Explorer that allows unauthorized access to sensitive…

exploitationinformation-gatheringpassword-cracking+4
19 months ago
f5scan preview

f5scan

GitHubhalencarjunior/f5scan

CVE-2020-5902 scanner for F5 BIG-IP with Shodan host discovery, LFI file reading, and remote command execution capabilities.

exploitationinformation-gatheringreconnaissance+2
16 years ago
CVE-2023-36845 preview

CVE-2023-36845

GitHubhalencarjunior/cve-2023-36845

Scanner for CVE-2023-36845 with Shodan and Censys integration for automated host discovery and exploitation of Juniper devices.

exploitationinformation-gatheringosint+3
13 years ago
SSI-CVE-2022-21661 preview

SSI-CVE-2022-21661

GitHubwellingtonespindula/ssi-cve-2022-21661

Study and exploit the vulnerability CVE-2022-21661 that allows SQL Injections through plugins POST requests to WordPress versions below 5.8.3.

educationexploitationlabs-practice+3
62 years ago
CVE-2025-70829 preview

CVE-2025-70829

GitHubxiaoxiaoranxxx/cve-2025-70829

An information exposure vulnerability in Datart v1.0.0-rc.3 allows authenticated attackers to access sensitive data via a custom H2 JDBC connection…

authenticationdatabase-securityexploitation+3
47 months ago
SysTracingPoc preview

SysTracingPoc

GitHubmodulexcite/systracingpoc

CVE-2020-0668 - Microsoft Windows Service Tracing Arbitrary File Move Local Privilege Escalation Vulnerability

binary-exploitationexploitationprivilege-escalation+1
26 years ago
CVE-2022-44268-MagiLeak preview

CVE-2022-44268-MagiLeak

GitHubadhikara13/cve-2022-44268-magileak

Tools for working with ImageMagick to handle arbitrary file read vulnerabilities. Generate, read, and apply profile information to PNG files using a…

educationexploitationpapers-research+2
23 years ago
Zeek-CVE-Enrichment preview

Zeek-CVE-Enrichment

GitHubcorelight/zeek-cve-enrichment

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…

incident-responseioc-managementlog-analysis+3
11 year ago
Previous123…83Next