Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Incident Response | Kitploit
Categories

Incident Response

IR playbooks, triage, case management, evidence collection, and incident management tools.

Kitploit recommended

Top tools

10 selected
velociraptor preview#1

velociraptor

GitHubvelocidex/velociraptor
4.2k3 days ago
osquery preview#2

osquery

GitHubosquery/osquery
23.4k1 day ago
wazuh preview#3

wazuh

GitHubwazuh/wazuh
16.5k2 days ago
volatility3 preview#4

volatility3

GitHubvolatilityfoundation/volatility3
4.3k6 days ago
iris-web preview#5

iris-web

GitHubdfir-iris/iris-web
1.5k21h 10m ago
fleet preview#6

fleet

GitHubfleetdm/fleet
6.9k8h 23m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k4h 42m ago
plaso preview#8

plaso

GitHublog2timeline/plaso
2.2k10 days ago
autopsy preview#9

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
mvt preview#10

mvt

GitHubmvt-project/mvt
14.6k1 day ago
NewestRelevanceMost popularRecently updated
1346 results
opencti preview

opencti

GitHubopencti-platform/opencti

Open Cyber Threat Intelligence Platform

ioc-managementosintthreat-feeds-aggregators+6
9.8k3h 40m ago
loki preview

loki

GitHubgrafana/loki

Horizontally scalable, multi-tenant log aggregation system that indexes labels instead of full text, integrates with Grafana, and is optimized for…

general-purpose-utilitiesutilities-frameworksincident-response+1
28.9k14h 29m ago
wazuh preview

wazuh

GitHubwazuh/wazuh

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

defensive-toolsvulnerability-scannerscontainer-security+12
16.5k2 days ago
NetAlertX preview

NetAlertX

GitHubnetalertx/netalertx

Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

network-mappingport-scanningconfiguration-auditing+6
6.9k14h 1m ago
MISP preview

MISP

GitHubmisp/misp

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

defensive-toolsioc-managementthreat-feeds-aggregators+10
6.5k6 days ago
ThreatHound preview

ThreatHound

GitHubmazx0p/threathound

Automated threat hunting and incident response tool for Windows Event Logs with Sigma rule integration, real-time detection, and forensic artifact…

digital-forensicsthreat-intelligenceincident-response+1
1602 years ago
trufflehog preview

trufflehog

GitHubtrufflesecurity/trufflehog

Find, verify, and analyze leaked credentials

vulnerability-scannersdynamic-analysis-sandboxingcode-analysis+6
27.4k11h 52m ago
fleet preview

fleet

GitHubfleetdm/fleet

Open-source platform to secure and manage endpoints via MDM, patch management, software deployment, and osquery-powered visibility with compliance…

defensive-toolsvulnerability-analysisconfiguration-auditing+4
6.9k8h 23m ago
securityonion preview

securityonion

GitHubsecurity-onion-solutions/securityonion

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

defensive-toolspacket-sniffing-analysisnetwork-forensics+9
4.9k12 days ago
cowrie preview

cowrie

GitHubcowrie/cowrie

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

defensive-toolsinformation-gatheringnetwork-security+3
6.5k3 days ago
Incident-Response-Powershell preview

Incident-Response-Powershell

GitHubbert-janp/incident-response-powershell

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

disk-forensicsioc-managementmemory-forensics+6
8074 months ago
androidqf preview

androidqf

GitHubmvt-project/androidqf

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

android-securityforensicsmobile-forensics+4
23022 days ago
mvt preview

mvt

GitHubmvt-project/mvt

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

android-securitydisk-forensicsioc-management+7
14.6k1 day ago
kubeshark preview

kubeshark

GitHubkubeshark/kubeshark

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…

cloud-infrastructure-securitypacket-sniffing-analysiscontainer-security+9
12.0k14 days ago
Nexora preview

Nexora

GitLabroxanne_ardary/nexora

AI-driven endpoint governance platform that monitors software usage, applies deterministic policy-based risk classification, and generates structured…

incident-responseai-securityanomaly-detection
1 month ago
openclaw-security-monitor preview

openclaw-security-monitor

GitHubadibirzu/openclaw-security-monitor

Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks.

defensive-toolsvulnerability-scannersforensics+9
485 days ago
LogonTracer preview

LogonTracer

GitHubjpcertcc/logontracer

Investigate malicious Windows logon by visualizing and analyzing Windows event log

digital-forensicsthreat-intelligenceincident-response+2
3.2k1 month ago
systeminformer preview

systeminformer

GitHubwinsiderss/systeminformer

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

general-purpose-utilitiesmemory-forensicsnetwork-mapping+6
15.6k13h 38m ago
Previous12…75Next