Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
DevSecOps | Kitploit
Categories

DevSecOps

Security integration in CI/CD pipelines, shift-left, and DevOps security automation tools.

Kitploit recommended

Top tools

10 selected
trivy preview#1

trivy

GitHubaquasecurity/trivy
37.4k22h 44m ago
semgrep preview#2

semgrep

GitHubsemgrep/semgrep
16.2k1 day ago
gitleaks preview#3

gitleaks

GitHubgitleaks/gitleaks
28.6k2 months ago
trufflehog preview#4

trufflehog

GitHubtrufflesecurity/trufflehog
27.4k5h 59m ago
checkov preview#5

checkov

GitHubbridgecrewio/checkov
8.9k6 days ago
grype preview#6

grype

GitHubanchore/grype
12.7k5 days ago
syft preview#7

syft

GitHubanchore/syft
9.6k12h 38m ago
dependency-track preview#8

dependency-track

GitHubdependencytrack/dependency-track
4.1k18h 6m ago
DependencyCheck preview#9

DependencyCheck

GitHubdependency-check/dependencycheck
7.7k9h 6m ago
osv-scanner preview#10

osv-scanner

GitHubgoogle/osv-scanner
10.8k1 day ago
NewestRelevanceMost popularRecently updated
1004 results
noseyparker preview
Archived

noseyparker

GitHubpraetorian-inc/noseyparker

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

vulnerability-scannerscode-analysisinformation-gathering+3
2.3k7 months ago
Leaktopus preview
Archived

Leaktopus

GitHubplaytikaoss/leaktopus

Automated secret and leak detection scanner for GitHub and paste sites, with heuristic filtering, IOL enrichment via Shhgit/TruffleHog, and ELK-based…

osintvulnerability-analysiscode-analysis+6
306 months ago
makes preview
Archived

makes

GitHubfluidattacks/makes

A software supply chain framework powered by Nix.

cloud-infrastructure-securitygeneral-purpose-utilitiescontainer-security+3
4901 year ago
aura preview
Archived

aura

GitHubrootlug/aura

Project Aura: Security auditing and code introspection

static-analysisvulnerability-analysiscode-analysis+4
75 years ago
kubeaudit preview
Archived

kubeaudit

GitHubshopify/kubeaudit

kubeaudit helps you audit your Kubernetes clusters against common security controls

cloud-infrastructure-securityvulnerability-scannerscontainer-security+4
1.9k2 years ago
warhorse preview
Archived

warhorse

GitHubwarhorse/warhorse

Infrastructure Automation

cloud-infrastructure-securityphishing-toolspenetration-testing+5
3612 years ago
reposaur preview
Archived

reposaur

GitHubreposaur/reposaur

Open source compliance tool for development platforms.

vulnerability-analysiscode-analysisconfiguration-auditing+5
2862 years ago
kubeclarity preview
Archived

kubeclarity

GitHubopenclarity/kubeclarity

KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystems

vulnerability-scannerscontainer-securityvulnerability-analysis+4
451 year ago
whispers preview
Archived

whispers

GitHubskyscanner/whispers

Identify hardcoded secrets in static structured text

static-analysisvulnerability-analysiscode-analysis+4
5062 years ago
stacs preview
Archived

stacs

GitHubstacscan/stacs

Static Token And Credential Scanner

static-analysisvulnerability-scannerscode-analysis+3
953 years ago
gitoops preview
Archived

gitoops

GitHubovotech/gitoops

all paths lead to clouds

privilege-escalationreconnaissancelateral-movement+6
6402 years ago
gokart preview
Archived

gokart

GitHubpraetorian-inc/gokart

A static analysis tool for securing Go code

static-code-analysisvulnerability-analysiscode-analysis+3
2.2k2 years ago
opencspm preview
Archived

opencspm

GitHubopencspm/opencspm

Open Cloud Security Posture Management Engine

cloud-infrastructure-securityvulnerability-scannersconfiguration-auditing+5
3474 years ago
onefuzz preview
Archived

onefuzz

GitHubmicrosoft/onefuzz

A self-hosted Fuzzing-As-A-Service platform

dynamic-analysis-sandboxingvulnerability-analysisfuzzing+2
2.8k2 years ago
anchore-engine preview
Archived

anchore-engine

GitHubanchore/anchore-engine

A service that analyzes docker images and scans for vulnerabilities

static-analysisvulnerability-scannerscontainer-security+3
1.6k3 years ago
kube-scan preview
Archived

kube-scan

GitHuboctarinesec/kube-scan

kube-scan: Octarine k8s cluster risk assessment tool

cloud-infrastructure-securityvulnerability-scannerscontainer-security+4
8023 years ago
RiskAssessmentFramework preview
Archived

RiskAssessmentFramework

GitHubowasp/riskassessmentframework

The Secure Coding Framework

static-code-analysisvulnerability-analysiscode-analysis+1
2726 years ago
anteater preview
Archived

anteater

GitHubanteater/anteater

Anteater - CI/CD Gate Check Framework

static-analysisvulnerability-scannerscode-analysis+6
1753 years ago
Previous1…545556Next