Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1170 results
learning-management-system preview

learning-management-system

GitHubrandomrobbiebf/learning-management-system

Masteriyo - LMS for WordPress <= 1.6.7 - Sensitive Information Exposure

data-exfiltrationexploitationinformation-gathering+2
3 years ago
CVE-2024-8275 preview

CVE-2024-8275

GitHubp33d/cve-2024-8275

Exploit script for CVE-2024-8275, a critical unauthenticated SQL injection in The Events Calendar WordPress plugin, enabling database information…

exploitationinformation-gatheringpenetration-testing+2
1 year ago
PoC---CVE-2018-6389 preview

PoC---CVE-2018-6389

GitHubthechrono13/poc---cve-2018-6389

Proof of Concept of vunerability CVE-2018-6389 on Wordpress 4.9.2

exploitationinformation-gatheringpenetration-testing+2
8 years ago
CVE-2023-47668 preview

CVE-2023-47668

GitHubnxploited/cve-2023-47668

Python exploit for CVE-2023-47668 that extracts sensitive log information from vulnerable Restrict Content WordPress plugin versions <= 3.2.7.

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2024-13184 preview

CVE-2024-13184

GitHubrandomrobbiebf/cve-2024-13184

The Ultimate WordPress Toolkit – WP Extended <= 3.0.12 - Unauthenticated SQL Injection via Login Attempts Module

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2024-10571 preview

CVE-2024-10571

GitHubrandomrobbiebf/cve-2024-10571

Chartify – WordPress Chart Plugin <= 2.9.5 - Unauthenticated Local File Inclusion via source

exploitationinformation-gatheringpenetration-testing+3
1 year ago
CVE-2024-12542-PoC preview

CVE-2024-12542-PoC

GitHubnxploited/cve-2024-12542-poc

Proof-of-concept exploit for CVE-2024-12542 targeting unauthenticated sensitive information exposure in WordPress linkID plugin via missing…

exploitationinformation-gatheringmisconfiguration+3
1 year ago
CVE-2024-0235-PoC preview

CVE-2024-0235-PoC

GitHubnxploited/cve-2024-0235-poc

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing…

exploitationinformation-gatheringpenetration-testing+2
1 year ago
CVE-2017-5487 preview

CVE-2017-5487

GitHubndr-repo/cve-2017-5487

PoC for CVE-2017-5487 - WordPress User Enumeration via REST

information-gatheringpenetration-testingred-teaming+3
1 year ago
CVE-2017-5487 preview

CVE-2017-5487

GitHubdream434/cve-2017-5487

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

information-gatheringosintreconnaissance+2
1 year ago
CVE-2015-6668 preview

CVE-2015-6668

GitHubg01d3nw01f/cve-2015-6668

exploit script for job manager plugin of wordpress

exploitationinformation-gatheringpenetration-testing+2
5 years ago
39646 preview

39646

GitHubgtech/39646

WordPress Plugin Advanced Video 1.0 - Local File Inclusion Update

exploitationinformation-gatheringvulnerability-analysis+1
39 years ago
CYBERDUDEBIVASH-Modular-DS-CVE-2026-23550-Detector preview

CYBERDUDEBIVASH-Modular-DS-CVE-2026-23550-Detector

GitHubcyberdudebivash/cyberdudebivash-modular-ds-cve-2026-23550-detector

authorized CYBERDUDEBIVASH ECOSYSTEM tool for detecting CVE-2026-23550 in WordPress Modular DS plugin

information-gatheringthreat-intelligencevulnerability-scanners+1
17 months ago
Mass-CVE-2026-23550-Exploit preview

Mass-CVE-2026-23550-Exploit

GitHubdzmind2312/mass-cve-2026-23550-exploit

Multi-threaded Python scanner for CVE-2026-23550, detecting unauthenticated admin takeover in WordPress Modular DS plugin with full wp-admin…

exploitationinformation-gatheringpenetration-testing+3
26 months ago
CVE-2025-69080 preview

CVE-2025-69080

GitHubandrielsec/cve-2025-69080

Exploit for unauthenticated Local File Inclusion (LFI) in WordPress Gecko theme <=1.9.8, allowing arbitrary file read including wp-config.php. Python…

exploitationinformation-gatheringpenetration-testing+2
2 days ago
CVE-2022-0236 preview
Archived

CVE-2022-0236

GitHubqurbat/cve-2022-0236

Proof of concept for unauthenticated sensitive data disclosure affecting the wp-import-export WordPress plugin (CVE-2022-0236)

exploitationinformation-gatheringpenetration-testing+2
34 years ago
CVE-2021-32789 preview
Archived

CVE-2021-32789

GitHuband0x00/cve-2021-32789

💣 Wordpress WooCommerce users dump exploit.

exploitationinformation-gatheringpenetration-testing+2
13 years ago
cve-2022-1609-exploit preview
Archived

cve-2022-1609-exploit

GitHubitworksig/cve-2022-1609-exploit

Exploit for CVE-2022-1609 WordPress Weblizar Backdoor.

exploitationinformation-gatheringpenetration-testing+2
13 years ago
Previous1…636465Next