Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
481 results
sshfinder preview

sshfinder

GitHubkabiri-labs/sshfinder

Parallel SSH service discovery and security auditor that scans any port, validates SSH banners, and audits authentication methods, weak cryptography,…

cryptographyinformation-gatheringnetwork-security+5
3
1 month ago
CVE-2026-53359-Kernel-Fix preview

CVE-2026-53359-Kernel-Fix

GitHubchuzhongyun/cve-2026-53359-kernel-fix

Linux 内核升级指南 - 修复 CVE-2026-53359

cloud-infrastructure-securityeducationvulnerability-analysis
22 months ago
selenium-node-takeover-kit preview

selenium-node-takeover-kit

GitHubjonstratton/selenium-node-takeover-kit

A collection of selenium tests that might aid it takeover of a selenium node

command-and-controldata-exfiltrationexploit-frameworks+6
39 months ago
DirtyCow preview

DirtyCow

GitHublinuxkernelcontent/dirtycow

Below code takes advantage of a known vulnerability [Dirty COW (CVE-2016-5195)] 🔥

binary-exploitationexploitationpenetration-testing+3
33 years ago
CVE-2026-74251 preview

CVE-2026-74251

GitHubtoanln-cov/cve-2026-74251

Unauthenticated SQL Injection via Attribute Filter in Phoca Cart - CVSS 9.3

database-securitydata-exfiltrationexploitation+3
1 month ago
CVE-2020-5752-Druva-inSync-Windows-Client-6.6.3---Local-Privilege-Escalation-PowerShell- preview

CVE-2020-5752-Druva-inSync-Windows-Client-6.6.3---Local-Privilege-Escalation-PowerShell-

GitHubyevh/cve-2020-5752-druva-insync-windows-client-6.6.3---local-privilege-escalation-powershell-

Druva inSync Windows Client 6.6.3 - Local Privilege Escalation (PowerShell) RCE

exploitationpayload-generationpenetration-testing+2
43 years ago
CVE-2026-13714 preview

CVE-2026-13714

GitHubnxploited/cve-2026-13714

Realtyna Organic IDX plugin + WPL Real Estate < 5.3.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution

exploitationpenetration-testingreconnaissance+2
1 month ago
NXLoader preview

NXLoader

GitHubresi-le/nxloader

An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

embedded-systems-securityexploitationhardware-hacking+2
29 months ago
CVE-2021-3899_PoC preview

CVE-2021-3899_PoC

GitHubliumuqing/cve-2021-3899_poc

race condition in apport lead to Local Privilege Escalation on Ubuntu

exploitationpenetration-testingprivilege-escalation+1
34 years ago
disclo preview

disclo

GitHubchaelsoo/disclo

Contact Search Engine

crawlerdns-analysisemail-harvesting+6
24 months ago
CVE-2024-45440 preview

CVE-2024-45440

GitHubw0r1i0g1ht/cve-2024-45440

Drupal CVE-2024-45440

exploitationinformation-gatheringmisconfiguration+3
21 year ago
Dirty-Pipe-Oneshot preview

Dirty-Pipe-Oneshot

GitHubb4dboy17/dirty-pipe-oneshot

Compled version of CVE-2022-0847 aka Dirty Pipe. Just one shot to root them all :D

binary-exploitationexploitationpenetration-testing+2
13 years ago
CVE-2025-61777 preview

CVE-2025-61777

GitHub0x0w1z/cve-2025-61777

CVE on FlagForgeCTF on versions v2.0.0 to v2.3.1. Upgraded to version 2.3.2 to fix the issue.

api-securityexploitationpenetration-testing+2
211 months ago
CVE-2020-0688-Python3 preview

CVE-2020-0688-Python3

GitHub1337-llama/cve-2020-0688-python3

Exploit updated to use Python 3.

exploitationpayload-generationpenetration-testing+2
22 years ago
Upgraded_BlueBourne-CVE-2017-0785- preview

Upgraded_BlueBourne-CVE-2017-0785-

GitHubmastercode112/upgraded_bluebourne-cve-2017-0785-

upgraded of BlueBourne CVE-2017-0785 to python3

bluetooth-securityexploitationpenetration-testing+2
12 years ago
CVE-2026-32945 preview

CVE-2026-32945

GitHubjohanneslks/cve-2026-32945

PJSIP DNS Compression Pointer Heap OOB Read (Remote DoS)

binary-analysisdynamic-analysis-sandboxingexploitation+2
5 months ago
dsa preview

dsa

GitHubalexmullins/dsa

Analysis of CVE-2016-3959 and a Proof of Concept Attack Against a Go SSH Server.

cryptographyeducationexploitation+2
110 years ago
S2-046_S2-045_POC preview

S2-046_S2-045_POC

GitHubkarzsghr/s2-046_s2-045_poc

S2-046|S2-045: Struts 2 Remote Code Execution vulnerability(CVE-2017-5638)

exploitationpayload-generationpenetration-testing+3
19 years ago
Previous1…232425…27Next