Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Supply Chain Security

Dependency scanning, SBOM generation, package integrity, and supply chain risk tools.

Kitploit recommended

Top tools

10 selected
osv-scanner preview#1

osv-scanner

GitHubgoogle/osv-scanner
10.8k2 days ago
trivy preview#2

trivy

GitHubaquasecurity/trivy
37.4k1 day ago
grype preview#3

grype

GitHubanchore/grype
12.7k1 day ago
syft preview#4

syft

GitHubanchore/syft
9.6k1 day ago
scorecard preview#5

scorecard

GitHubossf/scorecard
5.6k18 days ago
cosign preview#6

cosign

GitHubsigstore/cosign
6.2k3 days ago
in-toto preview#7

in-toto

GitHubin-toto/in-toto
1.0k1 month ago
python-tuf preview#8

python-tuf

GitHubtheupdateframework/python-tuf
1.7k4 days ago
securesystemslib preview#9

securesystemslib

GitHubsecure-systems-lab/securesystemslib
544 days ago
dependency-track preview#10

dependency-track

GitHubdependencytrack/dependency-track
4.1k3h 39m ago
NewestRelevanceMost popularRecently updated
781 results
node9-proxy preview

node9-proxy

GitHubnode9-ai/node9-proxy

IAM for your AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run, and…

vulnerability-scannerscontainer-securitycloud-security+7
21015h 38m ago
skills preview

skills

GitHubtrailofbits/skills

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

static-analysisvulnerability-analysiscode-analysis+8
6.5k2 days ago
titus preview

titus

GitHubpraetorian-inc/titus

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

static-analysisvulnerability-scannerscontainer-security+6
6671 day ago
bromure preview

bromure

GitHubrderaison/bromure

Proper sandboxing for agentic coding and web browsing

vulnerability-scannerscontainer-securitydynamic-analysis-sandboxing+6
2752h 47m ago
kin preview

kin

GitHubfirelock-ai/kin

Semantic graph-based version control for AI-written code. Tracks entities and relations instead of file diffs, enabling blast radius analysis, shadow…

static-analysiscode-analysisdevsecops+4
441h 40m ago
CVE-2007-4559 preview

CVE-2007-4559

GitHubdavidholiday/cve-2007-4559

Educational demonstration of CVE-2007-4559 Python tarfile symlink attack with a script showing why os.path.realpath() fails to prevent extraction…

static-analysisvulnerability-analysiscode-analysis+3
3 years ago
qubes-secpack preview

qubes-secpack

GitHubqubesos/qubes-secpack

Curated repository of Qubes OS security bulletins, canaries, PGP keys, and ISO digests, with authenticated verification via git tags and detached…

cryptographythreat-intelligencesupply-chain-security+2
5517 days ago
minisign preview

minisign

GitHubjedisct1/minisign

A dead simple tool to sign files and verify digital signatures.

defensive-toolsencryption-decryption-toolscryptography+1
2.8k1 month ago
python-tuf preview

python-tuf

GitHubtheupdateframework/python-tuf

Python reference implementation of The Update Framework (TUF)

cryptographyutilities-frameworkssupply-chain-security
1.7k4 days ago
scopeblind-gateway preview

scopeblind-gateway

GitHubscopeblind/scopeblind-gateway

Ed25519 signed receipts + Cedar policies for AI agents. Finance mandate gate (Legate), proof packs, 3 IETF Internet-Drafts. npx protect-mcp

authentication-authorizationencryption-decryption-toolscryptography+5
99 days ago
log4jhound preview

log4jhound

GitHubmebibite/log4jhound

Created after the disclosure of CVE-2021-44228. Bash script that detects Log4j occurrences in your projects and systems, allowing you to get insight…

static-analysisvulnerability-scannerscode-analysis+2
4 years ago
scorecard preview

scorecard

GitHubossf/scorecard

OpenSSF Scorecard - Security health metrics for Open Source

vulnerability-analysiscode-analysisconfiguration-auditing+4
5.6k18 days ago
wolfssl preview

wolfssl

GitHubwolfssl/wolfssl

The wolfSSL library is a small, fast, portable implementation of TLS/SSL for embedded devices to the cloud. wolfSSL supports up to TLS 1.3 and DTLS…

embedded-systems-securityencryption-decryption-toolsiot-security+6
2.9k1 day ago
tealtiger preview

tealtiger

GitHubagentguard-ai/tealtiger

Powerful protection for AI agents - Open-source security and cost tracking for AI applications

cloud-securitydevsecopsprivacy+8
2113h 15m ago
vibe-coding-security preview

vibe-coding-security

GitHubboxed-dev/vibe-coding-security

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

vulnerability-analysisconfiguration-auditingweb-security+9
131 month ago
CVE-2018-6574 preview

CVE-2018-6574

GitHubdevang-solanki/cve-2018-6574

Exploit for remote command execution in Golang go get command.

vulnerability-analysisexploitationweb-application-exploitation+3
14 years ago
AETHER-PROTOCOL-P preview

AETHER-PROTOCOL-P

GitHubaetherai3/aether-protocol-p

Working implementation: cryptographically verified short-lived identities for AI decision authentication — CVE-2025-59536 (Patent Pending US…

encryption-decryption-toolscryptographyidentity-access-management+3
11 month ago
jit preview

jit

GitHubjitpass/jit

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…

authentication-authorizationencryption-decryption-toolsconfiguration-auditing+3
1606 days ago
Previous1…678…44Next