Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
43 results
openssh-portable preview

openssh-portable

GitHubopenssh/openssh-portable

Portable OpenSSH

authenticationcryptographynetwork-security+1
4.0k
10h 39m ago
keepassxc preview

keepassxc

GitHubkeepassxreboot/keepassxc

Secure offline storage of credentials with encrypted vaults, password generator, TOTP, YubiKey/OnlyKey support, browser integration, and CLI.

authenticationcryptographyencryption-decryption-tools+1
28.9k12h 52m ago
spire preview

spire

GitHubspiffe/spire

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

authenticationauthentication-authorizationcloud-infrastructure-security+5
2.5k1 day ago
Reticulum preview

Reticulum

GitHubmarkqvist/reticulum

The cryptography-based networking stack for building unstoppable networks with LoRa, Packet Radio, WiFi and everything in between.

authenticationcryptographyencryption-decryption-tools+4
7.3k1 day ago
tailscale preview

tailscale

GitHubtailscale/tailscale

The easiest, most secure way to use WireGuard and 2FA.

authenticationencryption-decryption-toolsnetwork-access-control+2
36.7k2 days ago
op4 preview

op4

GitHubopfour/op4

Terminal-based encrypted messenger with post-quantum cryptography, Double Ratchet protocol, and Tor anonymity. Features duress passphrase, deniable…

authenticationauthentication-authorizationcryptography+3
62 days ago
freeipa preview

freeipa

GitHubfreeipa/freeipa

Centralizes identity, authentication, and access control for Linux/UNIX environments using LDAP, Kerberos, PKI, DNS, and Active Directory trust.

authenticationauthentication-authorizationcryptography+2
1.3k3 days ago
wolfGuard preview

wolfGuard

GitHubwolfssl/wolfguard

FIPS 140-3 compliant VPN kernel module and user tool, drop-in replacement for WireGuard with AES-256-GCM, SHA2-256, and SECP256R1 cryptography for…

authenticationcryptographyencryption-decryption-tools+1
1254 days ago
essh preview

essh

GitHubmatthart1983/essh

Enhanced SSH client with TUI — manage connections, keys, and sessions

authenticationlog-analysisnetwork-security+3
1154 days ago
pingap preview

pingap

GitHubvicanso/pingap

A reverse proxy like nginx, built on pingora, simple and efficient.

api-securityauthenticationauthentication-authorization+4
1.4k4 days ago
brutus preview

brutus

GitHubpraetorian-inc/brutus

Fast, zero-dependency credential testing tool in Go. Brute force SSH, MySQL, PostgreSQL, Redis, MongoDB, SMB, and 20+ protocols. Hydra alternative…

authenticationexploitationinformation-gathering+7
3254 days ago
Klip preview

Klip

GitHubvid4l-07/klip

Minimal terminal-based password manager

authenticationcryptographyencryption-decryption-tools+3
306 days ago
gpasskey preview

gpasskey

GitLabrenich/gpasskey

Centralized, TPM 2.0 hardware-backed cryptographic identity enclave and multi-protocol bridge for Linux (FIDO2/CTAP2 WebAuthn Passkeys, OpenSSH…

authenticationcryptographyencryption-decryption-tools+2
7 days ago
CVE-2026-39987_POC preview

CVE-2026-39987_POC

GitHubjulichaan/cve-2026-39987_poc

Proof-of-concept exploit for CVE-2026-39987, a pre-authentication RCE in Marimo's /terminal/ws WebSocket endpoint that yields an interactive shell…

authenticationexploitationpenetration-testing+3
9 days ago
Eris preview

Eris

GitHubsibexico/eris

Desktop PGP workstation

authenticationcryptographyencryption-decryption-tools+2
711 days ago
CVE-2026-76578 preview

CVE-2026-76578

GitHubbrainbob/cve-2026-76578

Proof-of-concept exploit for CVE-2026-76578 and CVE-2026-76560, chaining anonymous LDAP ADD with a 389-ds SELFDN bypass to gain FreeIPA domain admin…

authenticationexploitationidentity-management+5
11 days ago
GraphSpy preview

GraphSpy

GitHubredbyte1337/graphspy

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

authenticationcloud-securitydata-exfiltration+6
1.4k25 days ago
Modlishka preview

Modlishka

GitHubdrk1wi/modlishka

Modlishka. Reverse Proxy.

authenticationimpersonation-toolspenetration-testing+6
5.4k1 month ago
Previous123Next