Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems Security
General Purpose Utilities
Indicator of Compromise (IOC) Management
OSINT (Open Source Intelligence)
Packet Sniffing & Analysis
Password Cracking
Penetration Testing Frameworks
Phishing Tools
Privilege Escalation
Reconnaissance
Static Analysis
Vulnerability Scanners
Web Vulnerability Scanners
Wi-Fi Auditing
Bluetooth Security
Container Security
Dynamic Analysis (Sandboxing)
Encryption/Decryption Tools
Exploit Frameworks
Identity Management
iOS Security
IoT Security
Memory Forensics
Network Mapping
OSINT for Social Engineering
Password Attacks
Payload Generation
Persistence Mechanisms
Port Scanning
Static Code Analysis (SAST)
Threat Feeds & Aggregators
Vulnerability Analysis
Web Proxies & Interception
Code Analysis
DNS & Subdomain Enumeration
Dynamic Code Analysis (DAST)
Exploitation
Hash Analysis
IDS/IPS Evasion
Impersonation Tools
Lateral Movement
Mobile App Pentesting
Network Forensics
Reverse Engineering
RFID/NFC Tools
SCADA/ICS Security
Scripting & Automation
Serverless Security
Shellcode
Web Application Exploitation
API Security Testing
Configuration Auditing
Data Exfiltration
Debuggers
Forensics
Information Gathering
Mobile Forensics
Network Access Control
Post-Exploitation
Security Virtualization
Phishing
WAF Bypass
Web Security
Fuzzing
Network Security
Steganography
Wireless Security
Data Recovery
Malware Analysis
Digital Forensics
Hardware Hacking
Cryptography
CTF
Penetration Testing
Cloud Security
DevSecOps
Mobile Security
Privacy
Command and Control
Social Engineering
Hardware Security
Utilities & Frameworks
Hardware & IoT Security
Secret Detection
Binary Analysis
Threat Intelligence
Identity & Access Management (IAM)
Supply Chain Security
Authentication
Machine Learning
Intrusion Detection
Papers & Research
Misconfiguration
Subdomain Enumeration
Email Harvesting
Learning & Education
AI-Assisted Reversing
DNS Fuzzing
Red Teaming
Incident Response
Crawler
Curated Resources
Remote Access Tool
Shellcode Generation
Payload Development
Remote Access Trojan
API Security
Anti-Bot
Fingerprint Spoofing
CAPTCHA Bypass
Email Security
DNS Analysis
Chaos Engineering
Learning Paths & Courses
Container Escape
AI Security
Database Security
Firmware Analysis
Anomaly Detection
Log Analysis
Adversarial Attack
Binary Exploitation
Labs & Practice
NewestRelevanceMost popularRecently updated
1170 results
CVE-2018-6389 preview

CVE-2018-6389

GitHubknqyf263/cve-2018-6389

Proof-of-concept DoS exploit for CVE-2018-6389 targeting WordPress load-scripts.php, with Docker-based test environment and automated doser.py…

exploitationpenetration-testingvulnerability-analysis+1
108 years ago
POC-CVE-2026-63030-CVE-2026-60137- preview

POC-CVE-2026-63030-CVE-2026-60137-

GitHubtrandonga3/poc-cve-2026-63030-cve-2026-60137-

Exploit chain for WordPress Core using REST API route-confusion and SQL injection for unauthenticated RCE, privilege escalation, and full server…

api-securityeducationexploitation+6
14 days ago
Python-CVE-2020-25213 preview

Python-CVE-2020-25213

GitHube1tex/python-cve-2020-25213

Python Interactive Exploit for WP File Manager Vulnerability. The File Manager (wp-file-manager) plugin before 6.9 for WordPress allows remote…

educationexploitationpenetration-testing+2
33 years ago
CVE-2025-6440-Poc-Exploit preview

CVE-2025-6440-Poc-Exploit

GitHubm2hcz/cve-2025-6440-poc-exploit

Unauthenticated remote code execution exploit for the WC Designer Pro WordPress plugin. Automates detection, file upload, and shell access via a…

exploitationpayload-generationpenetration-testing+3
11 month ago
CVE-2026-63030-CVE-2026-60137 preview

CVE-2026-63030-CVE-2026-60137

GitHubgiangdurian/cve-2026-63030-cve-2026-60137

Pre-auth RCE exploit for WordPress (CVE-2026-63030 + CVE-2026-60137) chaining route confusion and SQL injection into full shell access. Includes…

ctfeducationexploitation+4
1 month ago
CVE-2026-49085 preview

CVE-2026-49085

GitHubizxci/cve-2026-49085

PHP Object Injection exploit for WP Insightly (CVE-2026-49085). Provides proof-of-concept code to demonstrate and test the vulnerability in affected…

code-analysisexploitationpenetration-testing+2
2 months ago
CVE-2025-11177 preview

CVE-2025-11177

GitHubjfriedli/cve-2025-11177

Time-based SQL injection exploit for CVE-2025-11177 targeting WordPress login with curl-based payload delivery and pg_sleep timing detection.

exploitationpenetration-testingvulnerability-analysis+2
5 months ago
CVE-2026-4350 preview

CVE-2026-4350

GitHubwhyiamsobusy/cve-2026-4350

Exploit and proof-of-concept for arbitrary file deletion in Perfmatters WordPress plugin (CVE-2026-4350), with Python exploit and bash POC scripts…

exploitationpenetration-testingvulnerability-analysis+2
4 months ago
CVE-2025-11986 preview

CVE-2025-11986

GitHubjfriedli/cve-2025-11986

Proof-of-concept exploit for CVE-2025-11986 demonstrating unauthenticated access bypass in WordPress crypto_connect plugin via nonce extraction and…

authenticationexploitationpayload-generation+3
5 months ago
CVE-2026-1357 preview

CVE-2026-1357

GitHubcves-labs/cve-2026-1357

Lab environment and proof-of-concept exploit for CVE-2026-1357, a WordPress plugin vulnerability, with Docker setup and automated exploitation…

educationexploitationlabs-practice+3
4 months ago
EpSiLoNPoInT- preview

EpSiLoNPoInT-

GitHubepsilonpoint88-glitch/epsilonpoint-

Modular exploit framework targeting CVE-2026-23550 in WordPress, featuring mass exploitation, obfuscation, post-exploitation, and Docker-based C2…

command-and-controlexploitationpayload-development+7
16 months ago
CVE-2024-27956 preview

CVE-2024-27956

GitHubfoxyproxys/cve-2024-27956

Proof-of-concept exploit for CVE-2024-27956: SQL injection in WordPress leading to admin account creation and remote code execution. Written in…

exploitationpenetration-testingvulnerability-analysis+1
12 years ago
CVE-2025-8625 preview

CVE-2025-8625

GitHubret0x2a/cve-2025-8625

Proof-of-concept exploit for CVE-2025-8625 targeting WordPress, with Docker-based isolated lab environment and demonstration web shell for…

educationexploitationlabs-practice+3
111 months ago
CVE-2025-48129 preview

CVE-2025-48129

GitHubnxploited/cve-2025-48129

WordPress Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light Plugin <= 2.4.37 is vulnerable to Privilege Escalation

authenticationexploitationpenetration-testing+3
11 year ago
CVE-2022-21661-Technical-Analysis preview

CVE-2022-21661-Technical-Analysis

GitHub7rootsec/cve-2022-21661-technical-analysis

Proof-of-concept and technical analysis for CVE-2022-21661, a WordPress SQL injection vulnerability, including root-cause breakdown, exploitation…

educationlabs-practicepenetration-testing+3
5 months ago
cve-2020-9006 preview

cve-2020-9006

GitHubs3rgeym/cve-2020-9006

Exploit for CVE-2020-9006 targeting WordPress Popup-Builder plugin via SQL injection and PHP deserialization, with payload generation and Nmap…

exploitationpayload-generationpenetration-testing+2
4 months ago
WordPress--CVE-2022-21661 preview

WordPress--CVE-2022-21661

GitHubcharondefalt/wordpress--cve-2022-21661

Proof-of-concept exploit for CVE-2022-21661, a SQL injection vulnerability in WordPress Core WP_Query, demonstrating the attack and providing…

database-securityexploitationpenetration-testing+3
2 years ago
CVE-2024-25600 preview

CVE-2024-25600

GitHubwanlichangchengwanlichang/cve-2024-25600

Exploit script for CVE-2024-25600, a remote code execution vulnerability in WordPress Bricks Builder, with multi-POC support and configurable threads.

exploitationpayload-generationpenetration-testing+3
2 years ago
Previous1…8910…65Next