Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Supply Chain Security | Kitploit
Categories

Supply Chain Security

Dependency scanning, SBOM generation, package integrity, and supply chain risk tools.

Kitploit recommended

Top tools

10 selected
osv-scanner preview#1

osv-scanner

GitHubgoogle/osv-scanner
10.8k4 days ago
trivy preview#2

trivy

GitHubaquasecurity/trivy
37.4k13h 19m ago
grype preview#3

grype

GitHubanchore/grype
12.7k3 days ago
syft preview#4

syft

GitHubanchore/syft
9.6k3 days ago
scorecard preview#5

scorecard

GitHubossf/scorecard
5.6k13 days ago
cosign preview#6

cosign

GitHubsigstore/cosign
6.2k3 days ago
in-toto preview#7

in-toto

GitHubin-toto/in-toto
1.0k25 days ago
python-tuf preview#8

python-tuf

GitHubtheupdateframework/python-tuf
1.7k6 days ago
securesystemslib preview#9

securesystemslib

GitHubsecure-systems-lab/securesystemslib
546 days ago
dependency-track preview#10

dependency-track

GitHubdependencytrack/dependency-track
4.1k13h 31m ago
NewestRelevanceMost popularRecently updated
774 results
osv-scanner preview

osv-scanner

GitHubgoogle/osv-scanner

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

vulnerability-scannerscontainer-securityvulnerability-analysis+4
10.8k4 days ago
kyverno preview

kyverno

GitHubkyverno/kyverno

Enforce security and compliance on Kubernetes clusters via admission controls, resource mutation, background scans, and container image signature…

cloud-infrastructure-securitycontainer-securityconfiguration-auditing+4
8.2k3h 58m ago
grype preview

grype

GitHubanchore/grype

A vulnerability scanner for container images and filesystems

static-analysisvulnerability-scannerscontainer-security+4
12.7k3 days ago
cli preview

cli

GitHubsnyk/cli

Snyk CLI scans and monitors your projects for security vulnerabilities.

cloud-infrastructure-securityvulnerability-scannerscontainer-security+6
5.6k12h 27m ago
cve-2021-33879 preview

cve-2021-33879

GitHubmmiszczyk/cve-2021-33879

GameLoop update MITM

vulnerability-analysisexploitationweb-application-exploitation+3
5 years ago
hoppr-cop preview

hoppr-cop

GitLabhoppr/hoppr-cop

Aggregates vulnerability data from multiple databases into CycloneDX SBOMs, generating deduplicated VEX, HTML, and GitLab-compatible reports for…

vulnerability-scannersvulnerability-analysisdevsecops+1
81 month ago
trufflehog preview

trufflehog

GitHubtrufflesecurity/trufflehog

Find, verify, and analyze leaked credentials

vulnerability-scannersdynamic-analysis-sandboxingcode-analysis+6
27.4k5 days ago
SkillSpector preview

SkillSpector

GitHubnvidia/skillspector

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

static-analysisvulnerability-scannersdynamic-analysis-sandboxing+8
14.5k2h 7m ago
safer-dependencies preview

safer-dependencies

GitHubrobert-auger/safer-dependencies

Automated dependency security layer for AI coding assistants that audits packages for CVEs, typosquats, abandonment, version-age issues, and hash…

vulnerability-scannersdevsecopssecret-detection+1
3021 days ago
openclaw-security-monitor preview

openclaw-security-monitor

GitHubadibirzu/openclaw-security-monitor

Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks.

defensive-toolsvulnerability-scannersforensics+9
482 days ago
tirith preview

tirith

GitHubsheeki03/tirith

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

osintphishing-toolsvulnerability-scanners+8
2.7k16h 15m ago
depx preview

depx

GitHubprojectdiscovery/depx

Malicious package & supply-chain intelligence

vulnerability-analysisdevsecopssecret-detection+2
18225 days ago
dependency-track preview

dependency-track

GitHubdependencytrack/dependency-track

Intelligent Component Analysis platform that leverages SBOMs to identify and reduce software supply chain risk through continuous vulnerability…

vulnerability-analysisdevsecopssupply-chain-security
4.1k13h 31m ago
Harden-Windows-Security preview

Harden-Windows-Security

GitHubhotcakex/harden-windows-security

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build…

defensive-toolsencryption-decryption-toolsconfiguration-auditing+3
4.5k5h 18m ago
semgrep preview

semgrep

GitHubsemgrep/semgrep

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

vulnerability-scannersstatic-code-analysisvulnerability-analysis+9
16.2k11 days ago
checkov preview

checkov

GitHubbridgecrewio/checkov

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

cloud-infrastructure-securitystatic-analysisvulnerability-scanners+12
8.9k4 days ago
Log4j-Updater preview

Log4j-Updater

GitHubvinnimarcon/log4j-updater

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

general-purpose-utilitiesvulnerability-analysisscripting-automation+3
24 years ago
gitleaks preview

gitleaks

GitHubgitleaks/gitleaks

Fast, open-source static analysis tool for detecting hardcoded secrets like passwords, API keys, and tokens in git repositories, files, and stdin…

static-analysisvulnerability-scannerscode-analysis+3
28.6k2 months ago
Previous12…43Next