Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
54 results
metarget preview

metarget

GitHubmetarget/metarget

Metarget is a framework providing automatic constructions of vulnerable infrastructures.

cloud-securitycontainer-securityeducation+4
1.4k
1 month ago
Dejavu preview

Dejavu

GitHubbhdresh/dejavu

DejaVU - Open Source Deception Framework

cloud-securitydefensive-toolsids-ips-evasion+7
4341 year ago
stratum-c2 preview

stratum-c2

GitHublame-projects/stratum-c2

Cloud dead-drop C2 framework — RSA-4096 + AES-256-GCM, 5 cloud providers, Rust-only agents, P2P mesh, persistence engine, credential harvesting

cloud-securitycommand-and-controlencryption-decryption-tools+6
404 days ago
brpc preview

brpc

GitHubapache/brpc

Industrial-grade C++ RPC framework for building high-performance distributed systems, supporting multiple protocols (HTTP, gRPC, Redis, Thrift) with…

api-securitycloud-securitygeneral-purpose-utilities+3
17.6k13h 45m ago
ironclaw preview

ironclaw

GitHubnearai/ironclaw

Secure, private AI agent operating system with local encrypted storage, OAuth/SSO authentication, policy-based access control, and extensible…

ai-securityauthentication-authorizationcloud-security+6
12.6k3 days ago
aiiroverlay preview

aiiroverlay

GitHubjacobideji/aiiroverlay

AI IR Overlay™ — practical incident response framework for AI agents in production. Built on NIST SP 800-61 r3, mapped to NIST AI RMF, NIST CSF 2.0,…

ai-securitycloud-securitycurated-resources+4
32 months ago
FiberBreak preview

FiberBreak

GitHubscumfrog/fiberbreak

React2Shell Exploitation Tool (CVE-2025-55182)

cloud-securitycommand-and-controldata-exfiltration+8
9 months ago
CobaltBus preview

CobaltBus

GitHubflangvik/cobaltbus

Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus

cloud-securitycommand-and-controlexploit-frameworks+1
2484 years ago
grapheneX preview

grapheneX

GitHubgraphenex/graphenex

Automated System Hardening Framework

cloud-securityconfiguration-auditingdefensive-tools+2
1.1k2 years ago
openpcc preview

openpcc

GitHubopenpcc/openpcc

An open-source framework for verifiably private AI inference

ai-securityapi-securityauthentication-authorization+6
9538 months ago
HazProne preview

HazProne

GitHubstafordtituss/hazprone

Cloud pentesting framework deploying vulnerable-by-demand AWS resources with quest-based scenarios to teach practical penetration testing and…

cloud-securityeducationlabs-practice+2
404 years ago
HybridTestFramework preview

HybridTestFramework

GitHubdipjyotimetia/hybridtestframework

End to End testing of Web, API, Cloud, Events and Security

api-security-testingcloud-securitycontainer-security+3
1531 year ago
leonidas preview

leonidas

GitHubreverseclabs/leonidas

Automated Attack Simulation in the Cloud, complete with detection use cases.

cloud-securitypenetration-testingred-teaming
6191 year ago
pacu preview

pacu

GitHubrhinosecuritylabs/pacu

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

cloud-infrastructure-securitycloud-securitydata-exfiltration+7
5.3k5 months ago
purple-team-exercise-framework preview

purple-team-exercise-framework

GitHubscythe-io/purple-team-exercise-framework

Purple Team Exercise Framework

adversarial-attackai-securitycloud-security+5
8205 months ago
cynative preview

cynative

GitHubcynative/cynative

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

ai-securitycloud-securitycontainer-security+7
2011 day ago
ShadowClone preview

ShadowClone

GitHubfyoorer/shadowclone

Serverless task distribution framework that parallelizes CLI tools across thousands of cloud functions for rapid reconnaissance and data processing.

cloud-securityreconnaissanceserverless-security+1
8221 year ago
SyntheticSun preview

SyntheticSun

GitHubjonrau1/syntheticsun

Serverless AWS security automation framework that ingests threat intelligence, applies ML-based anomaly detection (RCF, IP Insights), and enriches…

anomaly-detectioncloud-securityincident-response+3
825 years ago
Previous123Next