Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
570 results
noPac preview

noPac

GitHubxltj/nopac

Go implementation of NoPac, exploiting CVE-2021-42278 and CVE-2021-42287

authentication-authorizationcommand-and-controlexploitation+3
1 month ago
FRAGNESIA-Charan-cve-2026-46300 preview

FRAGNESIA-Charan-cve-2026-46300

GitHubazdevops143/fragnesia-charan-cve-2026-46300

Hardened container staging framework with seccomp syscall whitelisting and eBPF telemetry to detect and block container escape and kernel ULP…

cloud-securitycontainer-securityeducation+3
2 months ago
CVE-2026-56782-Gorse-Auth-Bypass preview

CVE-2026-56782-Gorse-Auth-Bypass

GitHubbiitts/cve-2026-56782-gorse-auth-bypass

CVE-2026-56782 — Gorse <0.5.10 unauthenticated DB dump/restore (admin_api_key fail-open). Lab + PoC, verified e2e.

authenticationctfdata-exfiltration+6
12 months ago
CVE-2024-21338 preview

CVE-2024-21338

GitHubumu618/cve-2024-21338

Fork of https://github.com/hakaioffsec/CVE-2024-21338

binary-exploitationexploitationpenetration-testing+2
22 years ago
trust-boundary-ctf preview

trust-boundary-ctf

GitHubacseguin21/trust-boundary-ctf

Browser-based MCP CTF — OAuth token confusion and session isolation failure (CVE-2025-49596 pattern). DevTools only.

ctfeducationlabs-practice+3
4 months ago
cve-2025-7771 preview

cve-2025-7771

GitHubmein-0/cve-2025-7771

Proof-of-concept exploit for CVE-2025-7771, a Windows kernel driver vulnerability in ThrottleStop.sys enabling arbitrary physical memory read/write…

binary-exploitationeducationexploitation+3
3 months ago
cve-2026-8697 preview

cve-2026-8697

GitHubitzmetanjim/cve-2026-8697

Detailed CVE-2026-8697 writeup with POC exploit for a login rate-limit bypass on TP-Link Archer C64 routers via a debug SSH service, enabling…

educationexploitationhardware-iot-security+7
13 months ago
CVE-2022-40684 preview

CVE-2022-40684

GitHubccordeiro/cve-2022-40684

PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)

authenticationexploitationinformation-gathering+3
9 months ago
CVE-2020-24029 preview

CVE-2020-24029

GitHubunderprotection/cve-2020-24029

Proof-of-concept for CVE-2020-24029: unauthenticated password change vulnerability in ForLogic Qualiex v1 and v3, enabling remote privilege…

authenticationexploitationinformation-gathering+3
6 years ago
CVE-2024-45264 preview

CVE-2024-45264

GitHubthehermione/cve-2024-45264

CVE-2024-45264

exploitationpenetration-testingprivilege-escalation+2
2 years ago
CVE-2020-14965 preview

CVE-2020-14965

GitHubg-rubert/cve-2020-14965

TP-LINK Multiple HTML Injection Vulnerabilities

embedded-systems-securityhardware-securityiot-security+3
5 years ago
asn-search preview

asn-search

GitHubtuxotron/asn-search

Extract ASN information about a given company

information-gatheringnetwork-mappingosint+1
6 years ago
Previous1…3132Next