Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Log Analysis

Log parsing, SIEM, centralized logging, forensic timeline, and security event correlation tools.

NewestRelevanceMost popularRecently updated
558 results
nightHawkResponse preview

nightHawkResponse

GitHubbiggiesmallsag/nighthawkresponse

Incident Response Forensic Framework

disk-forensicsioc-managementreconnaissance+7
6076 years ago
nginx_log_check preview

nginx_log_check

GitHubal0ne/nginx_log_check

Nginx日志安全分析脚本

vulnerability-analysisweb-securitylog-analysis
4425 years ago
irflow-timeline preview

irflow-timeline

GitHubr3nzsec/irflow-timeline

DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret Hunt,…

disk-forensicsioc-managementmemory-forensics+7
3044 days ago
Loki-RS preview

Loki-RS

GitHubneo23x0/loki-rs

🐍 High-performance, multi-threaded YARA & IOC scanner

ioc-managementmemory-forensicsvulnerability-analysis+7
34929 days ago
awesome-dfir-skills preview

awesome-dfir-skills

GitHubtsale/awesome-dfir-skills

A curated collection of DFIR skills and workflows for InfoSec practitioners.

ioc-managementmemory-forensicsnetwork-forensics+7
3213 months ago
AzureHunter preview

AzureHunter

GitHubdarkquasar/azurehunter

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

information-gatheringdigital-forensicscloud-security+3
7953 years ago
L3MON preview

L3MON

GitHubd3vl/l3mon

Web-based network monitoring system providing real-time bandwidth tracking, server performance metrics, and customizable alerts for proactive network…

network-mappingnetwork-securitylog-analysis
2863 years ago
MasterParser preview

MasterParser

GitHubsecurityjoes/masterparser

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

forensicsdigital-forensicseducation+3
7626 months ago
freedomfighting preview

freedomfighting

GitHubjusticerage/freedomfighting

A collection of scripts which may come in handy during your freedom fighting activities.

reconnaissanceencryption-decryption-toolsforensics+8
4183 years ago
ALFA preview

ALFA

GitHubinvictus-ir/alfa

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

forensicsdigital-forensicscloud-security+3
1833 days ago
sysmon-config preview

sysmon-config

GitHubnextronsystems/sysmon-config

Provides curated Sysmon event-tracing configuration templates for detecting Cobalt Strike, webshells, ransomware artifacts, and known exploit…

defensive-toolsvulnerability-analysisintrusion-detection+2
6057 months ago
DECEIVE preview

DECEIVE

GitHubcisco-talos/deceive

DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!

defensive-toolsnetwork-securitythreat-intelligence+3
28816 days ago
Python-Honeypot preview

Python-Honeypot

GitHubowasp/python-honeypot

OWASP Honeypot, Automated Deception Framework.

defensive-toolscontainer-securitynetwork-security+4
4821 year ago
Aker preview

Aker

GitHubaker-gateway/aker

SSH bastion/jump host/jumpserver

authentication-authorizationcloud-infrastructure-securitynetwork-security+2
5715 years ago
Honeypot-Project preview

Honeypot-Project

GitHubowasp/honeypot-project
defensive-toolsinformation-gatheringweb-security+5
1084 days ago
dsiem preview

dsiem

GitHubdefenxor/dsiem

Security event correlation engine for ELK stack

vulnerability-analysiscloud-securitythreat-intelligence+3
4462 years ago
mcpsnoop preview

mcpsnoop

GitHubkerlenton/mcpsnoop

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

general-purpose-utilitiesdynamic-analysis-sandboxingnetwork-mapping+5
3345 days ago
aftermath preview

aftermath

GitHubjamf/aftermath

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

memory-forensicsforensicsdigital-forensics+3
59411 months ago
Previous1…567…31Next