Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
36 results
Nullify preview

Nullify

GitLabroxanne_ardary/nullify

Automated, policy-driven data retention and deletion system with immutable audit trails, RBAC/ABAC, multi-jurisdiction compliance, and AI/ML…

api-securitydata-recoveryencryption-decryption-tools+1
1 month ago
alibi preview

alibi

GitHubowasp-noir/alibi

Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

api-securitycode-analysisconfiguration-auditing+7
114 days ago
kratos preview

kratos

GitHubory/kratos

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

api-securityauthenticationauthentication-authorization+5
13.9k2 months ago
gatekeeper preview

gatekeeper

GitHubopen-policy-agent/gatekeeper

Kubernetes policy engine with OPA-based admission control, mutation, and audit for enforcing security and compliance configurations.

api-securitycloud-securityconfiguration-auditing+3
4.3k6 days ago
Claude-BugHunter preview

Claude-BugHunter

GitHubelementalsouls/claude-bughunter

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24…

api-securitycloud-securitycurated-resources+8
4.8k0 days ago
traccar preview

traccar

GitHubtraccar/traccar

Traccar GPS Tracking System

api-securitycloud-securityembedded-systems-security+3
7.8k10h 2m ago
beelzebub preview

beelzebub

GitHubbeelzebub-labs/beelzebub

A secure low code deception runtime framework, leveraging AI for System Virtualization.

ai-securityapi-securitycontainer-security+7
2.2k4 days ago
core preview

core

GitHubopnsense/core

OPNsense GUI, API and systems backend

api-securitycaptcha-bypassconfiguration-auditing+4
4.7k2h 16m ago
CheckPoint-CVE-Webscanner preview

CheckPoint-CVE-Webscanner

GitHubwadesweaponshed/checkpoint-cve-webscanner

A web version of the bash scripts wrote for Check Point CVE-2026-50751 and CVE-2026-50752. This uses a local server to scan and make changes using…

api-securityconfiguration-auditingnetwork-security+2
124 days ago
rabl-old preview
Archived

rabl-old

GitHubcph/rabl-old

Ruby templating system for generating JSON and XML APIs, with a fix for CVE-2014-4671. Supports partials, inheritance, and custom nodes for flexible…

api-securitygeneral-purpose-utilitiesvulnerability-analysis+1
9 years ago
archerysec preview

archerysec

GitHubarcherysec/archerysec

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

api-securitycode-analysisconfiguration-auditing+5
2.5k1 year ago
CentralizedFirewall preview

CentralizedFirewall

GitHubadriyansyah-mf/centralizedfirewall

provides a Firewall Manager API designed to centralize and streamline the management of firewall configurations

api-securityconfiguration-auditingdevsecops+1
101 year ago
asf__nifi_CVE-2023-36542_1-22-0 preview

asf__nifi_CVE-2023-36542_1-22-0

GitHubshoucheng3/asf__nifi_cve-2023-36542_1-22-0

Automated data flow platform for processing and distributing data with built-in provenance tracking, secure configuration, and scalable pipeline…

api-securityauthentication-authorizationcloud-security+4
1 year ago
naxsi preview
Archived

naxsi

GitHubnbs-system/naxsi

NAXSI is an open-source, high performance, low rules maintenance WAF for NGINX

api-securityids-ips-evasionvulnerability-scanners+3
4.8k2 years ago
externalip-webhook preview
Archived

externalip-webhook

GitHubrancher/externalip-webhook

CVE-2020-8554: Man in the middle using LoadBalancer or ExternalIPs

api-securitycloud-securityconfiguration-auditing+3
34 years ago
PSMDATP preview
Archived

PSMDATP

GitHubalexverboon/psmdatp

PowerShell Module for managing Microsoft Defender Advanced Threat Protection

api-securitycloud-securityconfiguration-auditing+2
763 years ago
-Remcos-RAT-Fileless-svchost-Injection-Obfuscated-Payload-Analysis- preview

-Remcos-RAT-Fileless-svchost-Injection-Obfuscated-Payload-Analysis-

GitHubkaandemir993/-remcos-rat-fileless-svchost-injection-obfuscated-payload-analysis-

"Reverse engineering analysis of a fileless Remcos RAT variant that injects into svchost.exe via Native API calls. Covers obfuscated payload…

api-securitybinary-analysisdynamic-analysis-sandboxing+8
22 months ago
apache_skywalking preview

apache_skywalking

GitHubshanika04/apache_skywalking

CVE-2020-9483 OR CVE-2020-13921

anomaly-detectionapi-securitycloud-infrastructure-security+9
15 years ago
Previous12Next