Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1170 results
CVE-2021-38314 preview

CVE-2021-38314

GitHubc0ff33b34n/cve-2021-38314

Python exploit for CVE-2021-38314 targeting unauthenticated sensitive information disclosure in WordPress Gutenberg Template Library & Redux…

exploitationinformation-gatheringpenetration-testing+3
1
4 years ago
CVE-2025-11973 preview

CVE-2025-11973

GitHubjfriedli/cve-2025-11973

Proof-of-concept exploit for CVE-2025-11973 demonstrating local file inclusion (LFI) in WordPress via file:// protocol, with automated exfiltration…

data-exfiltrationexploitationinformation-gathering+2
5 months ago
CYBERDUDEBIVASH-Modular-DS-CVE-2026-23550-Detector preview

CYBERDUDEBIVASH-Modular-DS-CVE-2026-23550-Detector

GitHubcyberdudebivash/cyberdudebivash-modular-ds-cve-2026-23550-detector

authorized CYBERDUDEBIVASH ECOSYSTEM tool for detecting CVE-2026-23550 in WordPress Modular DS plugin

information-gatheringthreat-intelligencevulnerability-scanners+1
17 months ago
wpUsersScan preview

wpUsersScan

GitHubr3k1ng/wpusersscan

Wordpress Username Enumeration /CVE-2017-5487,WordPress < 4.7.1 -

information-gatheringosintreconnaissance+2
18 years ago
CVE-2018-7422 preview

CVE-2018-7422

GitHub0x00-0x00/cve-2018-7422

Wordpress plugin Site-Editor v1.1.1 LFI exploit

exploitationinformation-gatheringpenetration-testing+2
17 years ago
CVE-2024-43965 preview

CVE-2024-43965

GitHubrandomrobbiebf/cve-2024-43965

SendGrid for WordPress <= 1.4 - Unauthenticated SQL Injection

exploitationinformation-gatheringpenetration-testing+2
11 year ago
CVE-2024-7514 preview

CVE-2024-7514

GitHubrandomrobbiebf/cve-2024-7514

WordPress Comments Import & Export <= 2.3.7 - Authenticated (Author+) Arbitrary File Read via Directory Traversal

exploitationinformation-gatheringpenetration-testing+2
11 year ago
CVE-2025-30567 preview

CVE-2025-30567

GitHuboyst3r1ng/cve-2025-30567

Unauthorized Arbitrary File Download in WordPress WP01

exploitationinformation-gatheringpayload-generation+3
11 year ago
CVE-2025-25163-Nuclei-Template preview

CVE-2025-25163-Nuclei-Template

GitHubrootharpy/cve-2025-25163-nuclei-template

This repository features a Nuclei template specifically designed to detect the Path Traversal vulnerability (CVE-2025-25163) in the Plugin A/B Image…

exploitationinformation-gatheringpenetration-testing+3
11 year ago
CVE-2016-10924 preview

CVE-2016-10924

GitHubrvzsec/cve-2016-10924

CVE-2016-10924 - Directory traversal vulnerability in WordPress ebook-download plugin(<1.2). PoC + PID Bruteforce in Python.

exploitationinformation-gatheringpenetration-testing+3
14 years ago
everest-backup-cve-2025-11380 preview

everest-backup-cve-2025-11380

GitHubfleetcaptain/everest-backup-cve-2025-11380

Proof-of-concept exploit for CVE-2025-11380 demonstrating unauthenticated backup access in the Everest Backup WordPress plugin, enabling security…

exploitationinformation-gatheringpenetration-testing+2
7 months ago
CVE-2018-7422 preview

CVE-2018-7422

GitHubndr-repo/cve-2018-7422

Exploit for CVE-2018-7422: Local File Inclusion in WordPress Plugin Site Editor 1.1.1 [T1574.008]

exploitationinformation-gatheringlabs-practice+3
11 year ago
CVE-2025-9215 preview

CVE-2025-9215

GitHubd0n601/cve-2025-9215

StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More <= 1.4.0 - Authenticated (Subscriber+)…

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2025-12139-WordPress-Integrate-Google-Drive-Exploit preview

CVE-2025-12139-WordPress-Integrate-Google-Drive-Exploit

GitHubgalaxy-sc/cve-2025-12139-wordpress-integrate-google-drive-exploit

Golang PoC exploit for CVE-2025-12139 targeting the Integrate Google Drive WordPress plugin. Extracts sensitive OAuth credentials (Client ID, Secret,…

exploitationinformation-gatheringpenetration-testing+3
8 months ago
CVE-2025-13380 preview

CVE-2025-13380

GitHubd0n601/cve-2025-13380

AI Engine for WordPress: ChatGPT, GPT Content Generator <= 1.0.1 - Authenticated (Contributor+) Arbitrary File Read

exploitationinformation-gatheringpenetration-testing+3
9 months ago
CVE-2023-23488-PoC preview

CVE-2023-23488-PoC

GitHublong-rookie/cve-2023-23488-poc

Unauthenticated SQL Injection - Paid Memberships Pro < 2.9.8 (WordPress Plugin)

exploitationinformation-gatheringpenetration-testing+2
3 years ago
wpUsersScan preview

wpUsersScan

GitHubteambugsbunny/wpusersscan

Wordpress Username Enumeration /CVE-2017-5487,WordPress < 4.7.1 -

information-gatheringosintreconnaissance+2
9 years ago
CVE-2024-10858 preview

CVE-2024-10858

GitHubiamarit/cve-2024-10858

Proof-of-concept exploit for CVE-2024-10858 targeting a vulnerable WordPress Jetpack plugin. Demonstrates exploitation of a security flaw in a…

exploitationinformation-gatheringpenetration-testing+2
1 year ago
Previous1…62636465Next