Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
38 results
TeamFiltration preview

TeamFiltration

GitHubflangvik/teamfiltration

Cross-platform framework for enumerating O365 accounts, password spraying, exfiltrating emails/Teams/OneDrive data, and backdooring EntraID accounts…

authenticationcloud-securitydata-exfiltration+3
1.4k
5 months ago
brutus preview

brutus

GitHubpraetorian-inc/brutus

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative…

authenticationexploitationinformation-gathering+7
31114h 21m ago
Reticulum preview

Reticulum

GitHubmarkqvist/reticulum

The cryptography-based networking stack for building unstoppable networks with LoRa, Packet Radio, WiFi and everything in between.

authenticationcryptographyencryption-decryption-tools+4
7.0k25 days ago
howdy preview

howdy

GitHubboltgolt/howdy

🛡️ Windows Hello™ style facial authentication for Linux

authenticationidentity-access-managementprivacy+1
7.7k1 year ago
evil-winrm preview

evil-winrm

GitHubhackplayers/evil-winrm

The ultimate WinRM shell for hacking/pentesting

authenticationexploitationpayload-generation+3
5.4k8 months ago
openssh-portable preview

openssh-portable

GitHubopenssh/openssh-portable

Portable OpenSSH

authenticationcryptographynetwork-security+1
4.0k20h 17m ago
ssh-mitm preview
Archived

ssh-mitm

GitHubjtesta/ssh-mitm

SSH man-in-the-middle tool

authenticationids-ips-evasioninformation-gathering+6
1.7k5 years ago
GraphSpy preview

GraphSpy

GitHubredbyte1337/graphspy

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

authenticationcloud-securitydata-exfiltration+6
1.4k2 months ago
NetNTLMtoSilverTicket preview

NetNTLMtoSilverTicket

GitHubnotmedic/netntlmtosilverticket

SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket

authenticationexploitationlateral-movement+5
9795 years ago
libfido2 preview

libfido2

GitHubyubico/libfido2

Provides library functionality for FIDO2, including communication with a device over USB or NFC.

authenticationcryptographyhardware-security+2
7261 month ago
GIUDA preview

GIUDA

GitHubfoxlox/giuda

Ask a TGS on behalf of another user without password

authenticationexploitationimpersonation-tools+5
4811 year ago
NfSpy preview

NfSpy

GitHubbonsaiviking/nfspy

ID-spoofing NFS client

authenticationexploitationinformation-gathering+4
2996 years ago
SYNwall preview

SYNwall

GitHubsynwall/synwall

Linux kernel module implementing a zero-configuration, OTP-based firewall for IoT devices. Transparently authenticates network traffic using a…

authenticationembedded-systems-securityiot-security+1
2623 months ago
TokenFlare preview

TokenFlare

GitHubjumpseclabs/tokenflare

Serverless AITM Simulation Framework for Entra ID and M365

authenticationcloud-securitycommand-and-control+6
2427 months ago
certipy-merged preview
Archived

certipy-merged

GitHubzimedev/certipy-merged

Tool for Active Directory Certificate Services enumeration and abuse

authenticationcryptographyexploitation+7
1671 year ago
CVE-2021-3560-Polkit-Privilege-Esclation preview

CVE-2021-3560-Polkit-Privilege-Esclation

GitHubsecnigma/cve-2021-3560-polkit-privilege-esclation
authenticationexploitationpenetration-testing+2
1263 years ago
wolfGuard preview

wolfGuard

GitHubwolfssl/wolfguard

FIPS 140-3 compliant VPN kernel module and user tool, drop-in replacement for WireGuard with AES-256-GCM, SHA2-256, and SECP256R1 cryptography for…

authenticationcryptographyencryption-decryption-tools+1
1247 days ago
CVE-2021-3560-Authentication-Agent preview

CVE-2021-3560-Authentication-Agent

GitHubricterz/cve-2021-3560-authentication-agent

PolicyKit CVE-2021-3560 Exploit (Authentication Agent)

authenticationexploitationpenetration-testing+2
1164 years ago
Previous123Next