Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Incident Response

IR playbooks, triage, case management, evidence collection, and incident management tools.

Kitploit recommended

Top tools

10 selected
velociraptor preview#1

velociraptor

GitHubvelocidex/velociraptor
4.2k2 days ago
osquery preview#2

osquery

GitHubosquery/osquery
23.4k1 day ago
wazuh preview#3

wazuh

GitHubwazuh/wazuh
16.5k2 days ago
volatility3 preview#4

volatility3

GitHubvolatilityfoundation/volatility3
4.3k6 days ago
iris-web preview#5

iris-web

GitHubdfir-iris/iris-web
1.5k8h 36m ago
fleet preview#6

fleet

GitHubfleetdm/fleet
6.9k5h 1m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k15 days ago
plaso preview#8

plaso

GitHublog2timeline/plaso
2.2k10 days ago
autopsy preview#9

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
mvt preview#10

mvt

GitHubmvt-project/mvt
14.4k1 day ago
NewestRelevanceMost popularRecently updated
1347 results
ThreatIntel-Aggregator preview

ThreatIntel-Aggregator

GitHubethan-andrews/threatintel-aggregator

Self-hosted threat intelligence platform — feed aggregation, AI triage, MITRE ATT&CK coverage, and Sentinel-integrated detection engineering. Runs…

defensive-toolsioc-managementthreat-feeds-aggregators+7
518 days ago
Data-Shield_IPv4_Blocklist preview

Data-Shield_IPv4_Blocklist

GitHubduggytuxy/data-shield_ipv4_blocklist

Curated IPv4 blocklist of malicious addresses, refreshed every 6 hours for firewall and WAF ingestion, with split lists and CTI-ready formats for…

defensive-toolsioc-managementthreat-feeds-aggregators+5
6070 days ago
CVE-2026-76461-Detection-Kit- preview

CVE-2026-76461-Detection-Kit-

GitHubfevar54/cve-2026-76461-detection-kit-

Defensive detection kit for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway, with Sigma and YARA rules, IOCs, and remediation…

defensive-toolsioc-managementvulnerability-scanners+6
8 days ago
cve-2024-36401-security-simulator preview

cve-2024-36401-security-simulator

GitHubraniaemran/cve-2024-36401-security-simulator

Educational Python simulator modeling a fictional security incident inspired by CVE-2024-36401 to demonstrate vulnerability management, segmentation,…

defensive-toolsvulnerability-analysisnetwork-security+5
8 days ago
heartbleed-vulnerability-exploitation preview

heartbleed-vulnerability-exploitation

GitHubl1lf1ng3r/heartbleed-vulnerability-exploitation

hands on investigation of the heartbleed vulnerability (CVE-2014-0160).

reconnaissancevulnerability-scannersvulnerability-analysis+7
8 days ago
CVE-2026-76461 preview

CVE-2026-76461

GitHub0xblackash/cve-2026-76461

Research repository for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway leading to root RCE, with detection rules, mitigation…

vulnerability-scannersvulnerability-analysisexploitation+7
28 days ago
xz-utils-backdoor-case-study preview

xz-utils-backdoor-case-study

GitHubmichel-dv/xz-utils-backdoor-case-study

Technical case study of the XZ Utils backdoor (CVE-2024-3094), covering supply-chain trust abuse, malicious release artifacts, build-stage injection,…

vulnerability-analysisreverse-engineeringmalware-analysis+6
8 days ago
Kage-DFIR-toolkit preview

Kage-DFIR-toolkit

GitHubkarim852/kage-dfir-toolkit

Windows host DFIR triage console that chains artefact collection, Sigma-correlated timelines, YARA scans, socket and account inspection, indicator…

defensive-toolsioc-managementvulnerability-analysis+8
185 days ago
FalconDash preview

FalconDash

GitHubfalconforceteam/falcondash

Azure workbook dashboard that visualizes and explores detection performance metrics, helping security teams measure and proactively maintain their…

defensive-toolssecurity-virtualizationcloud-security+3
1712 days ago
claude-code-security-audit preview

claude-code-security-audit

GitHubabhishek2512mishra/claude-code-security-audit

Security scanner auditing Claude Code environments for CVE-2026-21852 pre-trust execution, hook hijacking, and eBPF lockdown.

defensive-toolsstatic-analysisvulnerability-scanners+5
10 days ago
chainsaw preview

chainsaw

GitHubwithsecureopensource/chainsaw

Rapidly Search and Hunt through Windows Forensic Artefacts

defensive-toolsvulnerability-analysisforensics+4
3.7k29 days ago
ADRecon preview

ADRecon

GitHubadrecon/adrecon

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

defensive-toolsreconnaissancevulnerability-analysis+6
9811 year ago
Tourmaline preview

Tourmaline

GitHubv-pun215/tourmaline

Reverse engineering notes, deobfuscated source, IOCs, and YARA rules for the Tourmaline ClickFix Python RAT, covering its DNS tunnel and blockchain…

ioc-managementreverse-engineeringmalware-analysis+7
1012 days ago
gitlab-cve-2026-85706-ioc preview

gitlab-cve-2026-85706-ioc

GitHubjithinkrishnanrs/gitlab-cve-2026-85706-ioc

CVE-2026-85706 — GitLab Path Traversal IOC Scanner & Detection Toolkit. Detect and hunt for exploitation of the critical unauthenticated GitLab CE/EE…

defensive-toolsioc-managementvulnerability-scanners+8
110 days ago
SOC235---Atlassian-Confluence-Broken-Access-Control-0-Day-CVE-2023-22515 preview

SOC235---Atlassian-Confluence-Broken-Access-Control-0-Day-CVE-2023-22515

GitHubborsch-appreciator/soc235---atlassian-confluence-broken-access-control-0-day-cve-2023-22515

SOC analyst walkthrough triaging a Confluence CVE-2023-22515 broken access control exploitation attempt, covering log analysis, MITRE ATT&CK mapping,…

defensive-toolsvulnerability-analysisweb-security+5
1 month ago
ThreatLens preview

ThreatLens

GitHubabdaullahag/threatlens

Python CLI tool for rapid IOC analysis (IPs, Domains, CVEs) using 6 free Threat Intel APIs. Outputs: Color-coded Excel, JSON, CSV. Uses: VT, Shodan,…

defensive-toolsioc-managementosint+7
156 days ago
AfterLife preview

AfterLife

GitHubhet-p301204/afterlife

Revocation persistence detection lab: when the password reset succeeds but the attacker never leaves. Reproduces the Strapi CVE-2026-22706…

defensive-toolsvulnerability-analysisweb-security+5
12 days ago
CVE-2026-73570 preview

CVE-2026-73570

GitHubhainhc/cve-2026-73570

Proof-of-concept exploit for CVE-2026-73570, an unauthenticated OS command injection in Zimbra Collaboration Suite via zimbra-snmp log injection,…

vulnerability-analysisexploitationweb-application-exploitation+3
13 days ago
Previous123…75Next