Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Digital Forensics

Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.

Kitploit recommended

Top tools

10 selected
autopsy preview#1

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
sleuthkit preview#2

sleuthkit

GitHubsleuthkit/sleuthkit
3.1k25 days ago
volatility3 preview#3

volatility3

GitHubvolatilityfoundation/volatility3
4.3k3 days ago
plaso preview#4

plaso

GitHublog2timeline/plaso
2.2k15 days ago
bulk_extractor preview#5

bulk_extractor

GitHubsimsong/bulk_extractor
1.4k11 days ago
velociraptor preview#6

velociraptor

GitHubvelocidex/velociraptor
4.2k2 days ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k4 days ago
mvt preview#8

mvt

GitHubmvt-project/mvt
13.1k4 days ago
androidqf preview#9

androidqf

GitHubmvt-project/androidqf
23011 days ago
avml preview#10

avml

GitHubmicrosoft/avml
1.1k24 days ago
NewestRelevanceMost popularRecently updated
1205 results
ComfyEngine preview

ComfyEngine

GitHubkashithecomfy/comfyengine

ComfyEngine is a memory exploration toolkit built for people who need to monitor, patch, and script a running process.

memory-forensicsdynamic-code-analysisexploitation+5
618 months ago
RansomCoinPublic preview

RansomCoinPublic

GitHubconcinnity-risks/ransomcoinpublic

A DFIR tool to extract cryptocoin addresses and other indicators of compromise from binaries.

ioc-managementforensicsmalware-analysis+3
565 years ago
cart preview

cart

GitHubcybercentrecanada/cart

Python implementation of the CaRT library for (un)inerting files.

defensive-toolsencryption-decryption-toolsmalware-analysis+2
531 year ago
HiveV5_keystream_decryptor preview

HiveV5_keystream_decryptor

GitHubreecdeep/hivev5_keystream_decryptor

bad stuffs by bad guys

encryption-decryption-toolsreverse-engineeringdata-recovery+4
494 years ago
Nemesis preview

Nemesis

GitHubzypherion-technologies/nemesis

.NET process monitor that hooks CLR at the native layer, dumps reflective assemblies from memory, and checks AMSI/ETW integrity vs on disk binaries.

defensive-toolsdynamic-analysis-sandboxingmemory-forensics+2
412 months ago
excelpeek preview

excelpeek

GitHubslaughterjames/excelpeek

Static analysis tool for investigating potentially malicious Microsoft Excel files, extracting metadata, macros, and embedded objects to aid digital…

static-analysisforensicsmalware-analysis+1
384 years ago
FileWatchTower preview

FileWatchTower

GitHubiomoath/filewatchtower

FWT is a security analysis and file monitoring tool that utilizes Sysmon events.

hash-analysisforensicsmalware-analysis+4
292 years ago
page_table_walk preview

page_table_walk

GitHubjazho76/page_table_walk

Walk x86-64 page tables by hand in qemu and gdb. Decompose a virtual address, follow cr3 through all levels of physical memory, and extract a flag…

memory-forensicsreverse-engineeringdebuggers+4
286 months ago
yaml2yara preview

yaml2yara

GitHubnccgroup/yaml2yara

Generate bulk YARA rules from YAML input

static-analysismalware-analysisdigital-forensics+4
226 years ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubjuanbindez/cve-2026-31431

Copy Fail - CVE-2026-31431

privilege-escalationmemory-forensicsvulnerability-analysis+4
173 months ago
CVE-2023-30367-mRemoteNG-password-dumper preview

CVE-2023-30367-mRemoteNG-password-dumper

GitHubs1lkys/cve-2023-30367-mremoteng-password-dumper

Original PoC for CVE-2023-30367

password-crackingmemory-forensicsvulnerability-analysis+2
162 years ago
memaddressanalysis preview

memaddressanalysis

GitHubnccgroup/memaddressanalysis

Research project related to memory address analysis

memory-forensicsvulnerability-analysisbinary-analysis+1
1412 years ago
zeek-quic preview

zeek-quic

GitHubcorelight/zeek-quic

Bro analyzer that detects Google's QUIC protocol

packet-sniffing-analysisnetwork-forensicsnetwork-security+2
115 years ago
LogHound preview

LogHound

GitHubrnb-team/loghound

Post-Exploitation EVTX Analyzer for BloodHound Mapping

reconnaissanceforensicsinformation-gathering+6
114 months ago
linux-root-kit preview

linux-root-kit

GitHubic3-512/linux-root-kit

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

privilege-escalationexploit-frameworksmemory-forensics+8
101 year ago
CVE-2023-5178 preview

CVE-2023-5178

GitHubrockrid3r/cve-2023-5178

Exploit for CVE-2023-5178

privilege-escalationmemory-forensicsvulnerability-analysis+3
72 years ago
ramnit_traffic_parser preview

ramnit_traffic_parser

GitHubnao-sec/ramnit_traffic_parser

Parsing Ramnit's traffic

packet-sniffing-analysisnetwork-forensicsforensics+3
48 years ago
phantomprint preview

phantomprint

GitHubharuu77g/phantomprint

Passive hybrid fingerprinting engine — identify hosts without sending a single packet

osintpacket-sniffing-analysisreconnaissance+7
427 days ago
Previous1…404142…67Next