Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Supply Chain Security | Kitploit
Categories

Supply Chain Security

Dependency scanning, SBOM generation, package integrity, and supply chain risk tools.

Kitploit recommended

Top tools

10 selected
osv-scanner preview#1

osv-scanner

GitHubgoogle/osv-scanner
10.8k12h 55m ago
trivy preview#2

trivy

GitHubaquasecurity/trivy
37.4k10h 11m ago
grype preview#3

grype

GitHubanchore/grype
12.7k5 days ago
syft preview#4

syft

GitHubanchore/syft
9.6k5 days ago
scorecard preview#5

scorecard

GitHubossf/scorecard
5.6k14 days ago
cosign preview#6

cosign

GitHubsigstore/cosign
6.2k4 days ago
in-toto preview#7

in-toto

GitHubin-toto/in-toto
1.0k26 days ago
python-tuf preview#8

python-tuf

GitHubtheupdateframework/python-tuf
1.7k1 day ago
securesystemslib preview#9

securesystemslib

GitHubsecure-systems-lab/securesystemslib
541 day ago
dependency-track preview#10

dependency-track

GitHubdependencytrack/dependency-track
4.1k1 day ago
NewestRelevanceMost popularRecently updated
777 results
agentseal preview

agentseal

GitHubgetagentseal/agentseal

Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply chain attacks, test prompt injection…

vulnerability-scannersdata-exfiltrationinformation-gathering+7
3413 months ago
snyk-js-jquery-174006 preview
Archived

snyk-js-jquery-174006

GitHubdanielruf/snyk-js-jquery-174006

patches for SNYK-JS-JQUERY-174006, CVE-2019-11358, CVE-2019-5428

vulnerability-analysiscode-analysisweb-security+1
284 years ago
osv.dev preview

osv.dev

GitHubgoogle/osv.dev

Open source vulnerability DB and triage service.

vulnerability-scannersvulnerability-analysisdevsecops+2
2.9k17h 12m ago
gitoops preview
Archived

gitoops

GitHubovotech/gitoops

all paths lead to clouds

privilege-escalationreconnaissancelateral-movement+6
6402 years ago
terrier preview

terrier

GitHubheroku/terrier

Terrier is a Image and Container analysis tool that can be used to scan Images and Containers to identify and verify the presence of specific files…

container-securityvulnerability-analysishash-analysis+1
2273 months ago
wrongsecrets-binaries preview

wrongsecrets-binaries

GitHubowasp/wrongsecrets-binaries

Source code for the Binaries of OWASP WrongSecrets

static-analysisvulnerability-analysiscode-analysis+6
117 days ago
cplt preview

cplt

GitHubnavikt/cplt

Sandbox for AI coding agents. Runs Copilot CLI, Claude Code, OpenCode, Gemini CLI, Antigravity, Pi, goose or a plain shell inside a kernel-level…

defensive-toolsdynamic-analysis-sandboxingconfiguration-auditing+7
1211 day ago
VulnReach preview

VulnReach

GitHubowasp/vulnreach

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

static-analysisvulnerability-scannersdynamic-analysis-sandboxing+5
81 month ago
ClearML-CVE-2024-24590 preview

ClearML-CVE-2024-24590

GitHuboxydev2/clearml-cve-2024-24590

Proof of concept for CVE-2024-24590

payload-generationvulnerability-analysisexploitation+3
62 years ago
chain-bench preview

chain-bench

GitHubaquasecurity/chain-bench

Audits software supply chain security compliance against the CIS benchmark, scanning SCM settings, branch protections, dependencies, and CI/CD…

vulnerability-scannersconfiguration-auditingdevsecops+1
7742 years ago
Software-Component-Verification-Standard preview

Software-Component-Verification-Standard

GitHubowasp/software-component-verification-standard

Software Component Verification Standard (SCVS)

vulnerability-analysisconfiguration-auditingsupply-chain-security+2
1632 years ago
allstar preview

allstar

GitHubossf/allstar

GitHub App to set and enforce security policies

defensive-toolsconfiguration-auditingcloud-security+2
1.4k4 days ago
log4j-finder preview

log4j-finder

GitHubfox-it/log4j-finder

Find vulnerable Log4j2 versions on disk and also inside Java Archive Files (Log4Shell CVE-2021-44228, CVE-2021-45046, CVE-2021-45105)

static-analysisvulnerability-scannersvulnerability-analysis+3
4393 years ago
solidity_CVE-2021-42574-POC preview

solidity_CVE-2021-42574-POC

GitHubtin-z/solidity_cve-2021-42574-poc

POC of CVE-2021-42574 for solidity and solc compiler

static-analysisvulnerability-analysiscode-analysis+3
33 years ago
fix-react2shell-next preview

fix-react2shell-next

GitHubvercel-labs/fix-react2shell-next

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

vulnerability-scannerscode-analysisscripting-automation+3
4019 months ago
Android-Projector-C2-Malware preview

Android-Projector-C2-Malware

GitHubkavan00/android-projector-c2-malware

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

android-securityembedded-systems-securityioc-management+9
185 months ago
Startup-SBOM preview

Startup-SBOM

GitHubmorpheuslord/startup-sbom

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

vulnerability-scannerscontainer-securityvulnerability-analysis+4
175 months ago
ai-ctf preview

ai-ctf

GitHubmubix/ai-ctf

Local AI Capture-the-Flag platform with guided lessons on prompt injection, tool-call abuse, and OSINT against six simulated chatbot personas.

osintinformation-gatheringweb-security+6
182 days ago
Previous1234…44Next