Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
655 results
erl_mouse preview

erl_mouse

GitHubm0usem0use/erl_mouse

python script to find vulnerable targets of CVE-2025-32433

exploitationinformation-gatheringnetwork-mapping+3
61 year ago
CVE-2026-74586 preview

CVE-2026-74586

GitHubtarpeg007/cve-2026-74586

Unprivileged proof-of-concept for CVE-2026-74586, a Linux kernel SCTP ASCONF use-after-free. Provides a raw-packet trigger, reliability metrics, and…

binary-exploitationexploitationexploit-frameworks+1
11 month ago
CVE-2020-5902 preview

CVE-2020-5902

GitHubmurataydemir/cve-2020-5902

[CVE-2020-5902] F5 BIG-IP Remote Code Execution (RCE)

exploitationexploit-frameworkspenetration-testing+3
26 years ago
CVE-2020-0688 preview

CVE-2020-0688

GitHubtvdat20004/cve-2020-0688

CVE-2020-0688: Remote Code Execution on Microsoft Exchange Server Through Fixed Cryptographic Keys

exploitationpayload-generationpenetration-testing+3
1 year ago
php-cgi-cve-2024-4577 preview

php-cgi-cve-2024-4577

GitHubtpdlshdmlrkfmcla/php-cgi-cve-2024-4577

php-cgi-cve-2024-4577

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2025-57457 preview

CVE-2025-57457

GitHubrestdone/cve-2025-57457

Proof-of-concept for OS command injection in Curo UC300 IP phone admin panel, demonstrating arbitrary command execution via the IP Addr parameter.

command-and-controlexploitationpenetration-testing+2
1 year ago
iptodomain preview

iptodomain

GitHubjevalenciap/iptodomain

This tool extract domains from IP address based in the information saved in virustotal.

information-gatheringnetwork-mappingosint+2
793 years ago
iptodomain preview

iptodomain

GitHubhackplayers/iptodomain

This tool extract domains from IP address based in the information saved in virustotal.

dns-subdomain-enumerationinformation-gatheringosint+1
239 years ago
CVE-2026-72815-poc preview

CVE-2026-72815-poc

GitHubsaku0512/cve-2026-72815-poc

Local Go PoC demonstrating CVE-2026-72815, an X-Forwarded-For IP spoofing flaw in go-chi/chi middleware.RealIP that bypasses IP-based ACLs, with a…

authenticationcode-analysisdefensive-tools+5
1 month ago
XM_ONVIF_auth_bypass preview

XM_ONVIF_auth_bypass

GitHubkostasereksonas/xm_onvif_auth_bypass

Proof-of-concept code (Bash and Python) for CVE-2025-65856 where ONVIF implementation in in Xiongmai XM530 IP cameras allows for unauthenticated …

exploitationhardware-iot-securityiot-security+3
38 months ago
DahuaLoginBypass preview

DahuaLoginBypass

GitHubbp2008/dahualoginbypass

Chrome extension that uses vulnerabilities CVE-2021-33044 and CVE-2021-33045 to log in to Dahua cameras without authentication.

authentication-authorizationexploitationiot-security+3
1993 months ago
Cisco-SNMP-Slap preview

Cisco-SNMP-Slap

GitHubnccgroup/cisco-snmp-slap

IP spoofing and SNMP community string brute-forcing tool to bypass ACLs on Cisco IOS devices, exfiltrate configuration files via TFTP.

exploitationinformation-gatheringnetwork-security+4
5911 years ago
refreshing-soap-exploit preview

refreshing-soap-exploit

GitHubrbowes-r7/refreshing-soap-exploit

A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root

command-and-controlexploitationpayload-development+7
223 years ago
CVE-2022-1388 preview

CVE-2022-1388

GitHubr0otk3r/cve-2022-1388

Python exploit for CVE-2022-1388, an unauthenticated remote command execution vulnerability in F5 BIG-IP iControl REST. Supports single commands and…

command-and-controlexploitationpenetration-testing+3
1 year ago
CVE-2019-19781_IOCs preview

CVE-2019-19781_IOCs

GitHubdigitalshadows/cve-2019-19781_iocs

Curated indicators of compromise (IOCs) for CVE-2019-19781, including IP addresses and whois data from honeypot logs to aid threat detection and…

incident-responseioc-managementnetwork-security+2
6 years ago
network-fingerprint preview

network-fingerprint

GitHubprojectdiscovery/network-fingerprint

A fingerprint generation helper for nuclei network templates

information-gatheringnetwork-mappingpacket-sniffing-analysis+3
804 years ago
CVE-2025-70962 preview

CVE-2025-70962

GitHubnamaek2/cve-2025-70962

CVE-2025-70962 PoC

exploitationfirmware-analysishardware-iot-security+3
2 months ago
BigFinger preview

BigFinger

GitHubcediegreyhat/bigfinger

CVE-2023-46747-RCE PoC

command-and-controlexploitationpenetration-testing+3
1 year ago
Previous1234…37Next