Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
655 results
CVE-2019-11932 preview

CVE-2019-11932

GitHubdorkerdevil/cve-2019-11932

double-free bug in WhatsApp exploit poc

binary-exploitationexploitationmobile-security+3
2675 years ago
notionterm preview

notionterm

GitHubariary/notionterm

Embed a reverse shell in Notion pages using the Notion API as a proxy, enabling stealthy remote shell sessions with encrypted and authenticated…

command-and-controlexploitationpayload-generation+3
1383 years ago
CVE-2020-11932 preview

CVE-2020-11932

GitHubprojectorbug/cve-2020-11932

Double-Free BUG in WhatsApp exploit poc.

binary-exploitationexploitationmobile-security+3
986 years ago
CVE-2019-11932 preview

CVE-2019-11932

GitHubtulungagungcyberlink/cve-2019-11932

Double-Free BUG in WhatsApp exploit poc.

binary-exploitationexploitationmobile-security+3
47 years ago
CVE-2023-20198-IOS-XE-Scanner preview

CVE-2023-20198-IOS-XE-Scanner

GitHubmr-r3b00t/cve-2023-20198-ios-xe-scanner

Single-threaded PowerShell PoC scanner for CVE-2023-20198 targeting Cisco IOS XE devices. Quick proof-of-concept for vulnerability detection and…

exploitationnetwork-securitypenetration-testing+2
22 years ago
CVE-2020-11932 preview

CVE-2020-11932

GitHubcode-developers/cve-2020-11932

Proof-of-concept exploit for CVE-2020-11932, a double-free vulnerability in WhatsApp GIF processing, enabling remote code execution via crafted .gif…

binary-exploitationexploitationmobile-security+3
15 years ago
ultrasploiter preview

ultrasploiter

GitLabvqkro/ultrasploiter

A single binary that folds a port scanner, the full Exploit-DB index (47k entries) and runnable exploit modules into one tool. Written in Rust, runs…

command-and-controlexploitationexploit-frameworks+9
6 days ago
cve-2016-6662 preview

cve-2016-6662

GitHubboompig/cve-2016-6662

Exploit code for MySQL remote root code execution and privilege escalation (CVE-2016-6662), including Python and C implementations.

database-securityexploitationpayload-development+3
19 years ago
burpFakeIP preview

burpFakeIP

GitHubthekingofduck/burpfakeip

Burp Suite extension for spoofing IP addresses in HTTP requests, enabling testing of server-side IP restrictions and bypassing IP-based access…

ids-ips-evasionimpersonation-toolspenetration-testing+2
1.7k4 years ago
CVE-2017-7921-Writeup-2026 preview

CVE-2017-7921-Writeup-2026

GitHubmk-ultra-project-monarch/cve-2017-7921-writeup-2026

Vulnerability research write-up on CVE-2017-7921 — a critical unauthenticated auth bypass in Hikvision IP cameras/DVRs/NVRs, covering root cause,…

educationexploitationiot-security+3
12 months ago
Tool_Camera_Exploit_Netwave_CVE-2018-6479 preview

Tool_Camera_Exploit_Netwave_CVE-2018-6479

GitHublequockhanh2k/tool_camera_exploit_netwave_cve-2018-6479

Exploit tool for CVE-2018-6479, a denial-of-service vulnerability in Netwave IP cameras. Targets IoT devices to trigger temporary service disruption…

exploitationhardware-iot-securityiot-security+1
4 years ago
CVE-2020-25748 preview

CVE-2020-25748

GitHubjet-pentest/cve-2020-25748

Documentation of CVE-2020-25748: Cleartext transmission vulnerability in Rubetek IP cameras allowing MITM interception and modification of video…

embedded-systems-securityexploitationhardware-security+3
6 years ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubyassineaboukir/cve-2020-5902

Proof of concept for CVE-2020-5902

exploitationpenetration-testingred-teaming+2
706 years ago
CVE-2025-61304 preview

CVE-2025-61304

GitHubpentastic-be/cve-2025-61304

OS command injection vulnerability in Dynatrace ActiveGate ping extension up to 1.016 via crafted ip address

exploitationpayload-generationpost-exploitation+3
211 months ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubamitlttwo/cve-2020-5902

In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface…

exploitationinformation-gatheringpenetration-testing+2
13 years ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubdnerzker/cve-2020-5902

Proof-of-concept exploit for CVE-2020-5902, a remote code execution vulnerability in F5 BIG-IP TMUI, with file read and command execution payloads…

exploitationinformation-gatheringreconnaissance+2
6 years ago
CVE-2024-24919 preview

CVE-2024-24919

GitHubtim-hoekstra/cve-2024-24919

Multi-threaded exploit script for CVE-2024-24919 that scans a list of IP addresses and outputs results, intended for educational use.

educationexploitationpenetration-testing+2
2 years ago
ipeeyoupeewepee preview

ipeeyoupeewepee

GitHubpapayajackal/ipeeyoupeewepee

Scanner and attack suite for hosts that forward unauthenticated packets via IPIP and GRE protocols. (CVE-2020-10136 CVE-2024-7595)

dns-analysiseducationexploitation+4
121 year ago
Previous123…37Next