Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
580 results
testkube preview

testkube

GitHubkubeshop/testkube

☸️ The Open Testing Platform for AI-Driven Engineering Teams

ai-securitycloud-securitycontainer-security+2
1.7k
14h 15m ago
Dark-Moon preview

Dark-Moon

GitHubascit31/dark-moon

Autonomous AI pentesting engine, continuous offensive security across web, cloud, AD & Kubernetes. Agentic reasoning + real exploit execution deliver…

ai-securitycloud-securitydevsecops+6
9397 days ago
WindowsProtocolTestSuites preview

WindowsProtocolTestSuites

GitHubmicrosoft/windowsprotocoltestsuites

⭐⭐ Join us at SNIA SDC for the SMB3 IO Lab (September 28 - October 1, 2026), see upcoming Interoperability Events

authenticationcloud-securityconfiguration-auditing+6
5664h 1m ago
leonidas preview

leonidas

GitHubreverseclabs/leonidas

Automated Attack Simulation in the Cloud, complete with detection use cases.

cloud-securitypenetration-testingred-teaming
6201 year ago
node9-proxy preview

node9-proxy

GitHubnode9-ai/node9-proxy

The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.

ai-securitycloud-securitycommand-and-control+7
2131 day ago
owLSM preview

owLSM

GitHubcybereason-public/owlsm

Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities

cloud-securitycontainer-securitydefensive-tools+4
2811 month ago
SQLC2 preview

SQLC2

GitHubnetspi/sqlc2

SQLC2 is a PowerShell script for deploying and managing a command and control system that uses SQL Server as both the control server and the agent.

cloud-securitycommand-and-controldatabase-security+3
763 years ago
Owasp-top-10-k8s-2025 preview

Owasp-top-10-k8s-2025

GitHubhac01/owasp-top-10-k8s-2025

Hands-on capture-the-flag lab for the OWASP Kubernetes Top 10 (2025). Exploit 11 real-world cluster weaknesses, capture flags, then apply fixes and…

cloud-securitycontainer-securityctf+8
492 months ago
Cisa-KEV-Threat-Intel-Orchestrator preview

Cisa-KEV-Threat-Intel-Orchestrator

GitHubmanishrawat21/cisa-kev-threat-intel-orchestrator

Zero-touch pipeline that turns newly weaponized CVEs from the CISA Known Exploited Vulnerabilities (KEV) catalog into production-ready Sigma…

ai-securitycloud-securitydevsecops+3
406 days ago
layerleak preview

layerleak

GitHubbrumbelow/layerleak

layerleak the Docker Hub Secret Scanner

api-securitycloud-securitycontainer-security+3
436 days ago
nimbostratus-target preview

nimbostratus-target

GitHubandresriancho/nimbostratus-target

This repository holds a target infrastructure you can use for running the nimbostratus tools.

cloud-infrastructure-securitycloud-securityeducation+4
2411 years ago
agent-vault-proxy preview

agent-vault-proxy

GitHubinflightsec/agent-vault-proxy

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

ai-securityapi-securityauthentication+3
296 days ago
vibe-coding-security preview

vibe-coding-security

GitHubboxed-dev/vibe-coding-security

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

ai-securityapi-securityauthentication+9
151 month ago
slot2 preview

slot2

GitHubcenobyte-vincit/slot2

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

cloud-securitycommand-and-controldata-exfiltration+5
26 days ago
gha-lab-3f1ff30e9c preview

gha-lab-3f1ff30e9c

GitHubpvharmo2/gha-lab-3f1ff30e9c

Authorized security-research lab reproducing CVE-2026-31852 (jellyfin/jellyfin-ios pull_request_target pwn in code-quality.yml) — isolated snapshot,…

cloud-securitycurated-resourcesdevsecops+2
10 days ago
Zapscape-Fix preview

Zapscape-Fix

GitHubaoripus-ltd/zapscape-fix

Generic kernel live patch for the KVM/x86 shadow-MMU use-after-free (Zapscape, CVE-2026-64561)

cloud-infrastructure-securitycloud-securitydefensive-tools+1
21 month ago
Check-AAD-Connect-for-CVE-2021-36949-vulnerability preview

Check-AAD-Connect-for-CVE-2021-36949-vulnerability

GitHubmaxwitat/check-aad-connect-for-cve-2021-36949-vulnerability

check if Azure AD Connect is affected by the vulnerability described in CVE-2021-36949

authenticationcloud-securitymisconfiguration+2
35 years ago
CVE-2021-33104 preview

CVE-2021-33104

GitHubrjt-gupta/cve-2021-33104

CVE-2021-33104 - Improper access control in the Intel(R) OFU software

cloud-infrastructure-securitycloud-securityconfiguration-auditing+3
33 years ago
Previous1…262728…33Next