Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Incident Response | Kitploit
Categories

Incident Response

IR playbooks, triage, case management, evidence collection, and incident management tools.

Kitploit recommended

Top tools

10 selected
velociraptor preview#1

velociraptor

GitHubvelocidex/velociraptor
4.2k2 days ago
osquery preview#2

osquery

GitHubosquery/osquery
23.4k1 day ago
wazuh preview#3

wazuh

GitHubwazuh/wazuh
16.5k2 days ago
volatility3 preview#4

volatility3

GitHubvolatilityfoundation/volatility3
4.3k5 days ago
iris-web preview#5

iris-web

GitHubdfir-iris/iris-web
1.5k1 year ago
fleet preview#6

fleet

GitHubfleetdm/fleet
6.9k16h 14m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k15 days ago
plaso preview#8

plaso

GitHublog2timeline/plaso
2.2k10 days ago
autopsy preview#9

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
mvt preview#10

mvt

GitHubmvt-project/mvt
14.3k1 day ago
NewestRelevanceMost popularRecently updated
1347 results
CVE-2026-94127 preview

CVE-2026-94127

GitHubfurkankayapinar/cve-2026-94127

Read-only defensive detector for CVE-2026-94127 in F5 BIG-IP APM. Fingerprints hosts, checks versions via iControl REST, and verifies OAuth…

defensive-toolsreconnaissancevulnerability-scanners+4
7h 18m ago
SOC335-CVE-2024-49138-Exploitation-Detected preview

SOC335-CVE-2024-49138-Exploitation-Detected

GitHubmohamedbrek/soc335-cve-2024-49138-exploitation-detected

LetsDefend SOC lab investigating CVE-2024-49138 and related malicious activity.

ioc-managementnetwork-forensicsmalware-analysis+6
9h 9m ago
SOC-Detection-T1003.001-CVE-2021-40444 preview

SOC-Detection-T1003.001-CVE-2021-40444

GitHubrankthree/soc-detection-t1003.001-cve-2021-40444

SOC detection rules and content for T1003.001 LSASS credential dumping and CVE-2021-40444 exploitation activity.

defensive-toolsvulnerability-analysisthreat-intelligence+1
5h 51m ago
cve-2026-87902-detection preview

cve-2026-87902-detection

GitHubgriisemine/cve-2026-87902-detection

Detection toolkit and reproducible lab for CVE-2026-87902, an unauthenticated WordPress path traversal. Includes remote checker, IoC analyzer, Sigma…

defensive-toolsioc-managementvulnerability-scanners+6
122h 23m ago
CVE-2026-93616_Checks preview

CVE-2026-93616_Checks

GitHubwadesweaponshed/cve-2026-93616_checks

Shell and SmartDashboard scripts that check Check Point management servers for indicators of compromise tied to CVE-2026-93616, including rogue…

defensive-toolsioc-managementvulnerability-analysis+3
1 day ago
LOLRMM preview

LOLRMM

GitHubmagicsword-io/lolrmm

Curated catalog of Remote Monitoring and Management tools abused by threat actors, with YAML profiles, Sigma detection rules, and API access for…

defensive-toolsioc-managementthreat-feeds-aggregators+6
3961 day ago
EntraTrace preview

EntraTrace

GitHubbert-janp/entratrace

Defensive research tool that documents observable API endpoints and user agents of offensive tooling targeting Microsoft Entra ID, supporting…

defensive-toolsidentity-managementinformation-gathering+5
541 day ago
linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense- preview

linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-

GitHubmc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-

Neutralizing CISA active Linux kernel CVEs (CVE-2025-39964, CVE-2026-53266, CVE-2025-39682) via modern eBPF, module disarmament, and containerd user…

defensive-toolscontainer-securityvulnerability-analysis+2
1 day ago
irdoc-app preview

irdoc-app

GitHubsoc-irdoc/irdoc-app

Incident Response Documentation Platform

defensive-toolsioc-managementscripting-automation+5
34 days ago
ciso-assistant-community preview

ciso-assistant-community

GitHubintuitem/ciso-assistant-community

GRC platform for risk management, compliance, and audit with 200+ frameworks, automatic control mapping, vulnerability management, and incident…

defensive-toolsvulnerability-analysisconfiguration-auditing+4
4.4k5 days ago
SOC-Investigation-CVE-2024-49138 preview

SOC-Investigation-CVE-2024-49138

GitHubbasitsajidsoc/soc-investigation-cve-2024-49138

Investigation and Incident Response report for LetsDefend Alert SOC335 (CVE-2024-49138 Exploitation)

defensive-toolsioc-managementvulnerability-analysis+5
1 month ago
log4shell-audit preview

log4shell-audit

GitHubmcpmark-eval-liuhezi/log4shell-audit

Log4Shell (CVE-2021-44228) security review documentation and advisory triage

defensive-toolsvulnerability-analysisthreat-intelligence+2
4 days ago
CVE-2026-85706 preview

CVE-2026-85706

GitHubs3v3n-jg/cve-2026-85706

Vagrant-based isolated GitLab lab for authorized defensive testing and validation of CVE-2026-85706, with vulnerable and patched profiles plus…

defensive-toolsvulnerability-analysissecurity-virtualization+4
6 days ago
ddos-reduction-system preview

ddos-reduction-system

GitHubdevinblack001/ddos-reduction-system

Adaptive two-stage Layer 4 DDoS mitigation gateway using behavioral traffic analysis, Random Forest classification, and kernel-level ipset/iptables…

defensive-toolspacket-sniffing-analysisscripting-automation+6
28 days ago
cve-2025-57819-freepbx-range preview

cve-2025-57819-freepbx-range

GitHubshivammittal2403/cve-2025-57819-freepbx-range

Isolated educational FreePBX-compatible cyber range for CVE-2025-57819 (CWE-89/CWE-288). Docker lab — not official Sangoma FreePBX.

vulnerability-analysisweb-application-exploitationctf+4
6 days ago
douglas-042-HQ preview

douglas-042-HQ

GitHubdouglas-042/douglas-042-hq

Central console for Douglas-042 HEADQUARTERS collectors. Sweeps a fleet, correlates results across hosts, and manages IOC feeds and SIEM delivery…

defensive-toolsioc-managementvulnerability-analysis+5
1 month ago
CPLHF preview

CPLHF

GitHubwhereisxuezugi/cplhf

Modular Bash toolkit that hardens Debian/Ubuntu systems for CyberPatriot competitions, automating account, firewall, SSH, PAM, and service hardening…

defensive-toolsvulnerability-analysisscripting-automation+6
410 days ago
Responsible-Alliance-Protocol preview

Responsible-Alliance-Protocol

GitHubphilippeabraxas-jpg/responsible-alliance-protocol

Safety cannot be a prompt instruction. TBP provides an external execution-layer boundary for autonomous agents, enforcing hard F/I/W invariants via…

authentication-authorizationdefensive-toolsconfiguration-auditing+7
8 days ago
Previous12…75Next