Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Log Analysis | Kitploit
Categories

Log Analysis

Log parsing, SIEM, centralized logging, forensic timeline, and security event correlation tools.

NewestRelevanceMost popularRecently updated
558 results
content-packs preview

content-packs

GitHubeventum-generator/content-packs

Content packs for Eventum

utilities-frameworksthreat-intelligenceeducation+2
520 days ago
envocabulary preview

envocabulary

GitHubsreckoskocilic/envocabulary

Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

scripting-automationconfiguration-auditingforensics+3
321 days ago
ludus-defender-lab preview

ludus-defender-lab

GitHubzephrfish/ludus-defender-lab

MDE/MDI Defender setup for Ludus

defensive-toolssecurity-virtualizationidentity-access-management+3
6121 days ago
pgaudit preview

pgaudit

GitHubpgaudit/pgaudit

PostgreSQL Audit Extension

configuration-auditingforensicsdatabase-security+1
1.7k21 days ago
HTSOC preview

HTSOC

GitHubnktris/htsoc

Reproducible SOC lab for CVE-2024-4577 detection and response

ioc-managementthreat-feeds-aggregatorsvulnerability-analysis+7
21 days ago
intelligence preview

intelligence

GitHubctrlaltint3l/intelligence

Centralized repository for malware samples, threat intelligence, IOCs, and security tooling logs to support threat research and incident response…

ioc-managementforensicsinformation-gathering+3
5922 days ago
Malcolm preview

Malcolm

GitHubcisagov/malcolm

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

packet-sniffing-analysisids-ips-evasionscada-ics-security+7
2.5k22 days ago
Malcolm preview

Malcolm

GitHubidaholab/malcolm

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

defensive-toolspacket-sniffing-analysisnetwork-forensics+8
47622 days ago
Sharepoint-cve-2023-29375-incident-response preview

Sharepoint-cve-2023-29375-incident-response

GitHubzedocun/sharepoint-cve-2023-29375-incident-response

End-to-end SOC incident analysis and threat hunting playbook targeting Microsoft SharePoint privilege escalation (CVE-2023-29375) using SIEM logs,…

vulnerability-analysisdigital-forensicsthreat-intelligence+3
122 days ago
CVE-2026-54121 preview

CVE-2026-54121

GitHubchpratik/cve-2026-54121

Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.

vulnerability-analysisnetwork-securitythreat-intelligence+4
124 days ago
strelka-ui preview

strelka-ui

GitHubtarget/strelka-ui

Strelka Web UI for File Submission and Analysis

defensive-toolsmalware-analysisthreat-intelligence+2
7624 days ago
mcp-attack-detection-sentinel preview

mcp-attack-detection-sentinel

GitHubj-dahl7/mcp-attack-detection-sentinel

Sentinel detection lab for MCP attack chains: CVE-2026-26118 SSRF token theft, tool poisoning, cross-server exfiltration, identity post-exploitation.…

cloud-securitythreat-intelligenceintrusion-detection+5
225 days ago
SuricataLog preview

SuricataLog

GitHubjosevnz/suricatalog

Parse, filter, and visualize Suricata eve.json logs with CLI tools for alerts, flows, DNS, and payloads. Includes a tutorial for learning Suricata…

network-securityintrusion-detectioneducation+1
2725 days ago
KQL-Hunting_and_Detection-Queries preview

KQL-Hunting_and_Detection-Queries

GitHublukehebe/kql-hunting_and_detection-queries

Some of my KQL hunting queries

ioc-managementthreat-intelligenceincident-response+1
26 days ago
pySigma-backend-opensearch preview

pySigma-backend-opensearch

GitHubsigmahq/pysigma-backend-opensearch

Converts Sigma detection rules into OpenSearch Lucene and PPL queries, including alerting Monitor Rules and correlation support for SIEM detection…

defensive-toolsutilities-frameworksintrusion-detection+1
1427 days ago
Loki-RS preview

Loki-RS

GitHubneo23x0/loki-rs

🐍 High-performance, multi-threaded YARA & IOC scanner

ioc-managementmemory-forensicsvulnerability-analysis+7
34929 days ago
kestrel preview

kestrel

GitHub1-bit-wonder/kestrel

Single-host runtime-security dashboard on eBPF — Go agent + SvelteKit. Live process tree, network map, and rule-based alerts for plain Linux hosts.

defensive-toolsnetwork-securityintrusion-detection+2
29 days ago
ecs-logstash-mappings preview

ecs-logstash-mappings

GitHubcorelight/ecs-logstash-mappings

Mapping Corelight or Zeek data to Elastic Common Schema logs

network-securitythreat-intelligenceintrusion-detection+2
111 month ago
Previous1…567…31Next