Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Incident Response | Kitploit
Categories

Incident Response

IR playbooks, triage, case management, evidence collection, and incident management tools.

Kitploit recommended

Top tools

10 selected
velociraptor preview#1

velociraptor

GitHubvelocidex/velociraptor
4.2k13h 43m ago
osquery preview#2

osquery

GitHubosquery/osquery
23.4k2 days ago
wazuh preview#3

wazuh

GitHubwazuh/wazuh
16.5k3 days ago
volatility3 preview#4

volatility3

GitHubvolatilityfoundation/volatility3
4.3k6 days ago
iris-web preview#5

iris-web

GitHubdfir-iris/iris-web
1.5k1 day ago
fleet preview#6

fleet

GitHubfleetdm/fleet
6.9k15h 9m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k4h 19m ago
plaso preview#8

plaso

GitHublog2timeline/plaso
2.2k11 days ago
autopsy preview#9

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
mvt preview#10

mvt

GitHubmvt-project/mvt
14.6k2 days ago
NewestRelevanceMost popularRecently updated
1348 results
RedEye preview
Archived

RedEye

GitHubcisagov/redeye

RedEye is a visual analytic tool supporting Red & Blue Team operations

penetration-testingcommand-and-controlred-teaming+2
2.8k2 years ago
dumpscan preview
Archived

dumpscan

GitHubdaddycocoaman/dumpscan

Finding secrets in kernel and user memory

encryption-decryption-toolsmemory-forensicsforensics+4
1183 years ago
PacketStreamer preview
Archived

PacketStreamer

GitHubdeepfence/packetstreamer

⭐ ⭐ Distributed tcpdump for cloud native environments ⭐ ⭐

packet-sniffing-analysiscontainer-securitynetwork-mapping+6
1.9k2 years ago
ransomwatch preview
Archived

ransomwatch

GitHubcaptaingeech42/ransomwatch

Ransomware leak site monitoring

osintvulnerability-analysisinformation-gathering+3
3124 years ago
rip_raw preview
Archived

rip_raw

GitHubcado-security/rip_raw

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

memory-forensicsforensicsdata-recovery+3
1334 years ago
Mandiant-Azure-AD-Investigator preview
Archived

Mandiant-Azure-AD-Investigator

GitHubmandiant/mandiant-azure-ad-investigator

Read-only PowerShell module for detecting UNC2452 and other threat actor artifacts in Azure AD, auditing federated domains, service principals,…

digital-forensicscloud-securitythreat-intelligence+4
6503 years ago
halogen preview
Archived

halogen

GitHubtarget/halogen

Automatically create YARA rules from malicious documents.

static-analysisforensicsmalware-analysis+2
2114 years ago
opencspm preview
Archived

opencspm

GitHubopencspm/opencspm

Open Cloud Security Posture Management Engine

cloud-infrastructure-securityvulnerability-scannersconfiguration-auditing+5
3474 years ago
PSMDATP preview
Archived

PSMDATP

GitHubalexverboon/psmdatp

PowerShell Module for managing Microsoft Defender Advanced Threat Protection

configuration-auditingcloud-securitythreat-intelligence+2
763 years ago
sinter preview
Archived

sinter

GitHubtrailofbits/sinter

A user-mode application authorization system for MacOS written in Swift

defensive-toolsconfiguration-auditingincident-response
2996 years ago
santa preview
Archived

santa

GitHubgoogle/santa

A binary authorization and monitoring system for macOS

defensive-toolsincident-response
4.5k1 year ago
mitmengine preview
Archived

mitmengine

GitHubcloudflare/mitmengine

A MITM (monster-in-the-middle) detection tool. Used to build MALCOLM:

defensive-toolsnetwork-securitythreat-intelligence+1
8132 years ago
AlertResponder preview
Archived

AlertResponder

GitHubm-mizutani/alertresponder

Automatic security alert response framework by AWS Serverless Application Model

defensive-toolsserverless-securitycloud-security+2
146 years ago
AgentSmith-HIDS preview
Archived

AgentSmith-HIDS

GitHubebwi11/agentsmith-hids

By Kprobe technology Open Source Host-based Intrusion Detection System(HIDS), from E_Bwill.

privilege-escalationreconnaissancecontainer-security+4
6025 years ago
thethe preview
Archived

thethe

GitHubelevenpaths/thethe

thethe

osintreconnaissanceinformation-gathering+4
1155 years ago
exist preview
Archived

exist

GitHubnict-csl/exist

EXIST is a web application for aggregating and analyzing cyber threat intelligence.

ioc-managementosintthreat-feeds-aggregators+6
1526 months ago
threat_note preview
Archived

threat_note

GitHubdefensepointsecurity/threat_note

DPS' Lightweight Investigation Notebook

ioc-managementosintreconnaissance+3
4342 years ago
kirjuri preview
Archived

kirjuri

GitHubanttikurittu/kirjuri

Kirjuri is a web application for managing cases and physical forensic evidence items.

forensicsdigital-forensicsincident-response
1094 months ago
Previous1…737475Next