Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17584 results
CVE-2023-22496-PoC preview

CVE-2023-22496-PoC

GitHubjstjep00/cve-2023-22496-poc

PoC for CVE-2023-22496: Netdata Agent <1.37 OS Command Injection via registry_hostname

command-and-controleducationexploitation+3
1
2 months ago
CVE-2024-23897 preview

CVE-2024-23897

GitHubap0dexme0/cve-2024-23897

Perform with massive Jenkins Reading-2-RCE

command-and-controlexploitationpenetration-testing+3
22 years ago
zoneminder-rce-poc preview

zoneminder-rce-poc

GitHubinvestigato/zoneminder-rce-poc

CVE-2026-76060 PoC for a ZoneMinder vulnerability leading to RCE

code-analysisexploitationpenetration-testing+3
111 days ago
CVE-2026-46368-OpenWrt-Exploit preview

CVE-2026-46368-OpenWrt-Exploit

GitHubiwallplace/cve-2026-46368-openwrt-exploit

Proof of Concept exploit for CVE-2026-46368 — authenticated root command injection in OpenWrt luci-app-https-dns-proxy (EDB-52521)

command-and-controlexploitationpenetration-testing+3
12 months ago
motionEye-RCE-through-config-parameter preview

motionEye-RCE-through-config-parameter

GitHubprabhatverma47/motioneye-rce-through-config-parameter

PoC steps for this vulnerability

exploitationpenetration-testingred-teaming+3
211 months ago
CVE-2026-9198_exploit preview

CVE-2026-9198_exploit

GitHub0xdak/cve-2026-9198_exploit

Unauthenticated RCE exploit for Langflow OSS chaining auto_login JWT bypass with validate/code exec() to achieve remote command execution and reverse…

command-and-controlexploitationpenetration-testing+4
11 month ago
CVE-2026-54088-poc preview

CVE-2026-54088-poc

GitHubsaku0512/cve-2026-54088-poc

Proof-of-concept exploit for CVE-2026-54088, a pre-authentication OS command injection in File Browser <=2.63.5. Demonstrates shell injection via…

command-and-controleducationexploitation+4
12 months ago
WP-Bricks-Exploit-CVE-2024-25600 preview

WP-Bricks-Exploit-CVE-2024-25600

GitHubcerberusmrxi/wp-bricks-exploit-cve-2024-25600

CVE-2024-25600 - Unauthenticated RCE exploit for WordPress Bricks Builder Theme. Advanced exploitation framework with interactive shell, reverse…

command-and-controlexploitationinformation-gathering+7
11 month ago
NotCVE-2026-0009 preview

NotCVE-2026-0009

GitHubcduram/notcve-2026-0009

Path Traversal Vulnerability in NitroShare v0.3.4

exploitationpayload-developmentpenetration-testing+3
11 month ago
CVE-2026-42945 preview

CVE-2026-42945

GitHubaratane/cve-2026-42945

A flaw was found in NGINX, specifically within the ngx_http_rewrite_module. An unauthenticated attacker can exploit this vulnerability by sending…

binary-exploitationcommand-and-controleducation+6
12 months ago
Glassfish-research preview

Glassfish-research

GitHubgabrielha12/glassfish-research

CVE-2026-2586 — Eclipse GlassFish EL injection to RCE

exploitationpayload-developmentpenetration-testing+3
11 month ago
cve-2023-42820 preview

cve-2023-42820

GitHubstartr4ck/cve-2023-42820

JumpServer

exploitationpassword-attackspenetration-testing+3
22 years ago
proofpoint-CVE-2023-0089 preview

proofpoint-CVE-2023-0089

GitHubly1g3/proofpoint-cve-2023-0089

Proofpoint Email Gateway: Low level authenticated user to admin RCE

command-and-controlexploitationpayload-development+3
12 months ago
CVE-2025-55182-react2shell preview

CVE-2025-55182-react2shell

GitHubsaturate/cve-2025-55182-react2shell

A bash scanner for detecting CVE-2025-55182 vulnerability in Next.js applications. And a PoC nodejs script

command-and-controlexploitationpayload-development+5
11 month ago
CVE-2025-24016 preview

CVE-2025-24016

GitHubglostarrx1/cve-2025-24016

CVE-2025-24016: RCE in Wazuh server! Remote Code Execution

exploitationpayload-developmentpenetration-testing+3
11 year ago
Log4Shell-CVE-2021-44228-Demo preview

Log4Shell-CVE-2021-44228-Demo

GitHubbaboopan/log4shell-cve-2021-44228-demo

Log4Shell Demo with AWS

command-and-controleducationexploitation+5
24 years ago
CVE-2025-1338 preview

CVE-2025-1338

GitHubjxcaxtc/cve-2025-1338

Proof-of-concept exploit for CVE-2025-1338, a command injection vulnerability in NUUO Camera, with multi-threaded scanning and result output.

command-and-controlexploitationpenetration-testing+2
211 months ago
CVE-2026-2256-PoC preview

CVE-2026-2256-PoC

GitHubitamar-yochpaz/cve-2026-2256-poc

Proof-of-concept demonstrating a command injection vulnerability in MS-Agent Shell tool, enabling arbitrary command execution and reverse shell via…

command-and-controlexploitationpenetration-testing+2
27 months ago
Previous1…979899100Next