Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Incident Response | Kitploit
Categories

Incident Response

IR playbooks, triage, case management, evidence collection, and incident management tools.

Kitploit recommended

Top tools

10 selected
velociraptor preview#1

velociraptor

GitHubvelocidex/velociraptor
4.2k2 days ago
osquery preview#2

osquery

GitHubosquery/osquery
23.4k1 day ago
wazuh preview#3

wazuh

GitHubwazuh/wazuh
16.5k2 days ago
volatility3 preview#4

volatility3

GitHubvolatilityfoundation/volatility3
4.3k5 days ago
iris-web preview#5

iris-web

GitHubdfir-iris/iris-web
1.5k1 year ago
fleet preview#6

fleet

GitHubfleetdm/fleet
6.9k15h 10m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k15 days ago
plaso preview#8

plaso

GitHublog2timeline/plaso
2.2k10 days ago
autopsy preview#9

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
mvt preview#10

mvt

GitHubmvt-project/mvt
14.3k1 day ago
NewestRelevanceMost popularRecently updated
1345 results
linux-explorer preview
Archived

linux-explorer

GitHubintezer/linux-explorer

Easy-to-use live forensics toolbox for Linux endpoints

osintmemory-forensicsvulnerability-analysis+7
4052 years ago
tyton preview
Archived

tyton

GitHubnbulischeck/tyton

Kernel-Mode Rootkit Hunter

defensive-toolsmalware-analysisintrusion-detection+1
3714 years ago
dfir-toolkit preview
Archived

dfir-toolkit

GitHubdfir-dd/dfir-toolkit

CLI tools for forensic investigation of Windows artifacts

disk-forensicsforensicsdigital-forensics+2
3551 year ago
CVE-2021-44228_scanner preview
Archived

CVE-2021-44228_scanner

GitHubcertcc/cve-2021-44228_scanner

Scanners for Jar files that may be vulnerable to CVE-2021-44228

static-analysisvulnerability-scannersvulnerability-analysis+3
3504 years ago
opencspm preview
Archived

opencspm

GitHubopencspm/opencspm

Open Cloud Security Posture Management Engine

cloud-infrastructure-securityvulnerability-scannersconfiguration-auditing+5
3474 years ago
ransomwatch preview
Archived

ransomwatch

GitHubcaptaingeech42/ransomwatch

Ransomware leak site monitoring

osintvulnerability-analysisinformation-gathering+3
3124 years ago
ESXiArgs-Recover preview
Archived

ESXiArgs-Recover

GitHubcisagov/esxiargs-recover

A tool to recover from ESXiArgs ransomware

defensive-toolssecurity-virtualizationdata-recovery+1
3003 years ago
sinter preview
Archived

sinter

GitHubtrailofbits/sinter

A user-mode application authorization system for MacOS written in Swift

defensive-toolsconfiguration-auditingincident-response
2996 years ago
varc preview
Archived

varc

GitHubcado-security/varc

Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use…

container-securitymemory-forensicsforensics+3
2541 year ago
DAMM preview
Archived

DAMM

GitHub504ensicslabs/damm

Differential Analysis of Malware in Memory

memory-forensicsvulnerability-analysisforensics+3
2159 years ago
halogen preview
Archived

halogen

GitHubtarget/halogen

Automatically create YARA rules from malicious documents.

static-analysisforensicsmalware-analysis+2
2114 years ago
LDAP-Monitoring-Watchdog preview
Archived

LDAP-Monitoring-Watchdog

GitHubmegamansec/ldap-monitoring-watchdog

LDAP Watchdog: A real-time linux-compatible LDAP monitoring tool for detecting directory changes, providing visibility into additions, modifications,…

threat-intelligenceincident-responselog-analysis
1946 months ago
exist preview
Archived

exist

GitHubnict-csl/exist

EXIST is a web application for aggregating and analyzing cyber threat intelligence.

ioc-managementosintthreat-feeds-aggregators+6
1526 months ago
rip_raw preview
Archived

rip_raw

GitHubcado-security/rip_raw

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

memory-forensicsforensicsdata-recovery+3
1334 years ago
Audix preview
Archived

Audix

GitHub0x0v1/audix

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

defensive-toolsconfiguration-auditingforensics+4
11811 months ago
dumpscan preview
Archived

dumpscan

GitHubdaddycocoaman/dumpscan

Finding secrets in kernel and user memory

encryption-decryption-toolsmemory-forensicsforensics+4
1183 years ago
thethe preview
Archived

thethe

GitHubelevenpaths/thethe

thethe

osintreconnaissanceinformation-gathering+4
1155 years ago
kirjuri preview
Archived

kirjuri

GitHubanttikurittu/kirjuri

Kirjuri is a web application for managing cases and physical forensic evidence items.

forensicsdigital-forensicsincident-response
1094 months ago
Previous1…72737475Next