Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Log Analysis | Kitploit
Categories

Log Analysis

Log parsing, SIEM, centralized logging, forensic timeline, and security event correlation tools.

NewestRelevanceMost popularRecently updated
558 results
DeTTECT preview

DeTTECT

GitHubrabobank-cdc/dettect

Detect Tactics, Techniques & Combat Threats

defensive-toolsscada-ics-securitymobile-security+4
2.3k15 days ago
100_days_of_kql_2026 preview

100_days_of_kql_2026

GitHubm4nbat/100_days_of_kql_2026

A repo to hold KQL queries as part of my 100 days of KQL effort.

threat-feeds-aggregatorsthreat-intelligenceeducation+3
1915 days ago
Spip-Go preview

Spip-Go

GitHubhoneylabshq/spip-go

Spip network sensor written in Go

defensive-toolsioc-managementpacket-sniffing-analysis+7
715 days ago
simvyn preview

simvyn

GitHubpranshuchittora/simvyn

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI

android-securitygeneral-purpose-utilitiesdynamic-analysis-sandboxing+9
34415 days ago
Zircolite preview

Zircolite

GitHubwagga40/zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

forensicsthreat-intelligenceincident-response+1
84115 days ago
meshyface preview

meshyface

GitHubjaronmcd/meshyface
reconnaissanceiot-securitynetwork-mapping+4
12316 days ago
DECEIVE preview

DECEIVE

GitHubcisco-talos/deceive

DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!

defensive-toolsnetwork-securitythreat-intelligence+3
28816 days ago
printnightmare-detection-lab preview

printnightmare-detection-lab

GitHubjoertx07/printnightmare-detection-lab

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

privilege-escalationvulnerability-analysisexploitation+6
16 days ago
chainsaw preview

chainsaw

GitHubwithsecurelabs/chainsaw

Rapidly Search and Hunt through Windows Forensic Artefacts

defensive-toolsforensicsdigital-forensics+3
3.6k16 days ago
tpotce preview

tpotce

GitHubtelekom-security/tpotce

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

defensive-toolsosintpacket-sniffing-analysis+7
9.4k16 days ago
windows-malware-behavioral-analysis preview

windows-malware-behavioral-analysis

GitHub0x0allenace/windows-malware-behavioral-analysis

Behavioral Malware Analysis of a Simulated Multi-Stage Windows Malware Sample using FLARE-VM and REMnux. Evidence-driven DFIR investigation with IOC…

ioc-managementpacket-sniffing-analysisdynamic-analysis-sandboxing+8
17 days ago
hayabusa preview

hayabusa

GitHubyamato-security/hayabusa

Multi-threaded Windows event log forensics timeline generator and threat hunting tool with full Sigma rule support, producing CSV/JSON timelines for…

forensicsdigital-forensicsthreat-intelligence+2
3.3k17 days ago
printnightmare-detection-mitigation-lab preview

printnightmare-detection-mitigation-lab

GitHubkaritamw/printnightmare-detection-mitigation-lab

Sanitised Windows security lab demonstrating Active Directory administration, host and network detection, and layered mitigation of CVE-2021-34527.

vulnerability-analysisnetwork-securitydigital-forensics+5
17 days ago
Wp2shell-ioc-scanner preview

Wp2shell-ioc-scanner

GitHubmichael-kanda/wp2shell-ioc-scanner

Detects shadow-administrator accounts in WordPress via configurable indicators and heuristics, then removes selected accounts through guarded, logged…

defensive-toolsioc-managementweb-security+4
17 days ago
dmz-security-monitoring-hardening preview

dmz-security-monitoring-hardening

GitHubfreeguy-6/dmz-security-monitoring-hardening

CY376 Blue Team project — pfSense DMZ, Suricata IDS/IPS, and automated host hardening against CVE-2014-6271

defensive-toolsvulnerability-analysisconfiguration-auditing+5
118 days ago
tracehound preview
Archived

tracehound

GitHubtracehound/tracehound

Operational security controls with forensic guarantees

defensive-toolsioc-managementforensics+5
18 days ago
LogonTracer preview

LogonTracer

GitHubjpcertcc/logontracer

Investigate malicious Windows logon by visualizing and analyzing Windows event log

digital-forensicsthreat-intelligenceincident-response+2
3.2k19 days ago
WELA preview

WELA

GitHubyamato-security/wela

Audits Windows event log settings against best-practice guidelines and Sigma-rule detectability, with automated configuration for DFIR readiness.

configuration-auditingdigital-forensicsincident-response+1
11819 days ago
Previous1…456…31Next