Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
21 results
security-study-plan preview

security-study-plan

GitHubjassics/security-study-plan

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so…

api-securitycloud-securitycryptography+8
5.0k
13 days ago
NeuroSploit preview

NeuroSploit

GitHubjoasasantos/neurosploit

AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

ai-securityapi-security-testingcloud-security+9
1.3k1 day ago
AWSome-Pentesting preview

AWSome-Pentesting

GitHubpop3ret/awsome-pentesting

My cheatsheet notes to pentest AWS infrastructure

cloud-infrastructure-securitycloud-securitycurated-resources+3
7173 years ago
Pentest-Collaboration-Framework preview

Pentest-Collaboration-Framework

GitLabinvuls/pentest-projects/pcf

Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!

api-security-testingcloud-securitycontainer-security+4
1123 months ago
pentest-ai-agents preview

pentest-ai-agents

GitHub0xsteph/pentest-ai-agents

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements,…

ai-securitycloud-securityeducation+8
2.2k8 days ago
recon-skills preview

recon-skills

GitHubuphiago/recon-skills

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

cloud-securitycrawlerexploitation+9
1.2k24 days ago
cloud_enum preview

cloud_enum

GitHubinitstring/cloud_enum

Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.

cloud-securityinformation-gatheringosint+2
2.1k1 month ago
Magnohost-Vulnerabilities-pentest preview

Magnohost-Vulnerabilities-pentest

GitHubwyllowsec/magnohost-vulnerabilities-pentest

Manual black-box penetration test of hosting provider infrastructure using curl_cffi and Python. Identifies exposed databases, default credentials,…

cloud-securitydatabase-securitydns-analysis+8
13 months ago
o365spray preview

o365spray

GitHub0xzdh/o365spray

Username enumeration and password spraying tool aimed at Microsoft O365.

authenticationcloud-securityinformation-gathering+2
1.0k1 year ago
PurpleCloud preview

PurpleCloud

GitHubiknowjason/purplecloud

Terraform-based Azure security lab generator for purple teaming, creating customizable environments with Active Directory, Sentinel, managed…

cloud-infrastructure-securitycloud-securityeducation+4
6551 year ago
overlord preview

overlord

GitHubqsecure-labs/overlord

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

cloud-securitycommand-and-controlemail-security+3
6374 years ago
hacker-container preview

hacker-container

GitHubmadhuakula/hacker-container

The Swiss Army Container for Cloud Native Security. Container with all the list of useful tools/commands while hacking and securing Containers,…

cloud-securitycontainer-securitypenetration-testing+1
2943 years ago
Spray365 preview
Archived

Spray365

GitHubmarkoh17/spray365

Customizable password spraying tool for Microsoft accounts (Office 365/Azure AD) with execution plans, Smart Lockout bypass, and audit mode for…

authenticationcloud-securityids-ips-evasion+3
3821 year ago
reconftw preview

reconftw

GitHubsix2dez/reconftw

Automated reconnaissance tool that performs subdomain enumeration, vulnerability scanning, OSINT, port scanning, and web analysis to map attack…

cloud-securitydns-analysisdns-subdomain-enumeration+11
8.0k1 month ago
SSRF-Testing preview

SSRF-Testing

GitHubcujanovic/ssrf-testing

SSRF (Server Side Request Forgery) testing resources

cloud-securitycurated-resourceseducation+6
2.5k1 year ago
collection-document preview

collection-document

GitHubtom0li/collection-document

Collection of quality safety articles. Awesome articles.

cloud-securitycurated-resourcesdevsecops+9
2.1k5 years ago
onedrive_user_enum preview

onedrive_user_enum

GitHubnyxgeek/onedrive_user_enum

Enumerates valid Microsoft 365 users via OneDrive URL status codes (403 vs 404). Supports threaded wordlists, username mutation, tenant lookup, and…

cloud-securityinformation-gatheringosint+3
7641 year ago
ccat preview

ccat

GitHubrhinosecuritylabs/ccat

Modular penetration testing tool for cloud container environments. Enumerates ECR repositories, backdoors Docker images, and exploits…

cloud-securitycontainer-securityexploitation+1
6536 years ago
Previous12Next