Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
DevSecOps | Kitploit
Categories

DevSecOps

Security integration in CI/CD pipelines, shift-left, and DevOps security automation tools.

Kitploit recommended

Top tools

10 selected
trivy preview#1

trivy

GitHubaquasecurity/trivy
37.4k1 day ago
semgrep preview#2

semgrep

GitHubsemgrep/semgrep
16.2k1 day ago
gitleaks preview#3

gitleaks

GitHubgitleaks/gitleaks
28.6k2 months ago
trufflehog preview#4

trufflehog

GitHubtrufflesecurity/trufflehog
27.4k6h 27m ago
checkov preview#5

checkov

GitHubbridgecrewio/checkov
8.9k6 days ago
grype preview#6

grype

GitHubanchore/grype
12.7k6 days ago
syft preview#7

syft

GitHubanchore/syft
9.6k22h 45m ago
dependency-track preview#8

dependency-track

GitHubdependencytrack/dependency-track
4.1k1 day ago
DependencyCheck preview#9

DependencyCheck

GitHubdependency-check/dependencycheck
7.7k19h 13m ago
osv-scanner preview#10

osv-scanner

GitHubgoogle/osv-scanner
10.8k14h 17m ago
NewestRelevanceMost popularRecently updated
1004 results
gh-safe-repo preview

gh-safe-repo

GitHubariesq/gh-safe-repo

Python CLI that creates GitHub repos with safe defaults — branch protection, Dependabot, secret scanning, and pre-flight security scanning — applied…

general-purpose-utilitiesvulnerability-scannersscripting-automation+4
3822h 40m ago
syft preview

syft

GitHubanchore/syft

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

static-analysiscontainer-securityvulnerability-analysis+3
9.6k22h 45m ago
kin preview

kin

GitHubfirelock-ai/kin

Semantic graph-based version control for AI-written code. Tracks entities and relations instead of file diffs, enabling blast radius analysis, shadow…

static-analysiscode-analysisdevsecops+4
4422h 56m ago
vet preview

vet

GitHubsafedep/vet

Protect against malicious open source packages 🤖

static-analysisvulnerability-scannerscontainer-security+3
1.1k0 days ago
DockSec preview

DockSec

GitHubowasp/docksec

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

static-analysisvulnerability-scannerscontainer-security+5
4650 days ago
oxo preview

oxo

GitHubostorlab/oxo

Modular security scanning orchestrator that combines specialized agents for vulnerability detection, reconnaissance, and fingerprinting across…

penetration-testing-frameworksvulnerability-scannersweb-security+3
5800 days ago
serverless preview

serverless

GitHubserverless/serverless

CLI framework for deploying and managing serverless applications on AWS Lambda with YAML infrastructure, local development, and multi-language…

cloud-infrastructure-securitygeneral-purpose-utilitiesserverless-security+4
46.9k0 days ago
h3-cli preview

h3-cli

GitHubhorizon3ai/h3-cli

CLI tool for the Horizon3.ai API

penetration-testing-frameworksvulnerability-analysisscripting-automation+3
250 days ago
dnscontrol preview

dnscontrol

GitHubdnscontrol/dnscontrol

Infrastructure as code for DNS!

cloud-infrastructure-securityconfiguration-auditingdevsecops+1
3.9k0 days ago
proxy preview

proxy

GitHubgit-pkgs/proxy

A lightweight caching proxy for package registries.

vulnerability-analysiscloud-securitydevsecops+2
1550 days ago
kube-linter preview

kube-linter

GitHubstackrox/kube-linter

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

cloud-infrastructure-securitystatic-analysiscontainer-security+6
3.5k0 days ago
pingap preview

pingap

GitHubvicanso/pingap

A reverse proxy like nginx, built on pingora, simple and efficient.

authentication-authorizationreverse-engineeringweb-security+4
1.3k1 day ago
bumblebee preview

bumblebee

GitHubperplexityai/bumblebee

Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

vulnerability-scannersinformation-gatheringdevsecops+3
4.9k1 day ago
noir preview

noir

GitHubowasp-noir/noir

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

static-analysisvulnerability-analysisweb-security+3
1.4k1 day ago
cynative preview

cynative

GitHubcynative/cynative

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

reconnaissancecontainer-securityvulnerability-analysis+7
1851 day ago
gstack preview

gstack

GitHubgarrytan/gstack

Use Garry Tan's exact Claude Code setup: 23 opinionated tools that serve as CEO, Designer, Eng Manager, Release Manager, Doc Engineer, and QA

vulnerability-scannerscode-analysisscripting-automation+8
127.4k1 day ago
deepsec preview

deepsec

GitHubvercel-labs/deepsec

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

static-analysisvulnerability-scannerscode-analysis+5
6.7k1 day ago
sslx preview

sslx

GitHubglincker/sslx

A fast, modern alternative to OpenSSL's CLI - inspect, grade, and manage certificates from the terminal

vulnerability-scannersencryption-decryption-toolsnetwork-security+3
101 day ago
Previous1…345…56Next