Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1251 results
Revenant preview

Revenant

GitHubdefineid/revenant

CVE-2026-74943 · Use after free in Firefox RasterImage (sec-high)

binary-analysisbinary-exploitationcode-analysis+3
3 days ago
Enigma preview

Enigma

GitHubadam-040/enigma

C++ reverse-engineering IDE with PE/ELF parsing, x86/x64 disassembly, Pcode IR, decompilation, function detection, and a Qt GUI.

binary-analysiscode-analysisreverse-engineering+1
296 days ago
LeetObfuscator preview

LeetObfuscator

GitHubzydak/leetobfuscator

Obfuscates C/C++ through LLVM passes: string encryption, control-flow flattening, MBA rewriting, and anti-analysis to defeat reverse engineering.

binary-analysiscode-analysisreverse-engineering
176 days ago
codeql preview

codeql

GitHubgithub/codeql

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

code-analysisdevsecopsstatic-code-analysis+1
10.0k10h 9m ago
actions-secrets preview

actions-secrets

GitHubgmh5225/actions-secrets

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

code-analysisdevsecopssecret-detection+1
3 years ago
CVE-2026-19264 preview

CVE-2026-19264

GitHubdarklycn1976/cve-2026-19264

CVE-2026-19264 - Critical unauthenticated path traversal to full instance takeover in Postiz (< 2.22.1). Technical writeup: decode-order bypass,…

code-analysiseducationexploitation+3
10 days ago
wslink-vm-analyzer preview

wslink-vm-analyzer

GitHubeset/wslink-vm-analyzer

WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware

binary-analysiscode-analysismalware-analysis+1
484 years ago
yls preview

yls

GitHubavast/yls

Language server for YARA rule development, providing code completion, linting, formatting, navigation, and debugging support inside IDEs.

code-analysismalware-analysisstatic-code-analysis
746 months ago
cq preview

cq

GitHubchris-anley/cq

CQ, a code security scanner

code-analysisdevsecopsstatic-code-analysis+1
995 months ago
lightkeeper preview

lightkeeper

GitHubworksbutnottested/lightkeeper

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

binary-analysiscode-analysisdynamic-code-analysis+1
752 months ago
CVE-2026-64638 preview

CVE-2026-64638

GitHubdungsocool/cve-2026-64638

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

code-analysisexploitationpayload-development+4
12 days ago
text4shell-tools preview

text4shell-tools

GitHubjfrog/text4shell-tools
binary-analysiscode-analysisdefensive-tools+3
1043 years ago
vulnerable-code-snippets preview

vulnerable-code-snippets

GitHubyeswehack/vulnerable-code-snippets

Twitter vulnerable snippets

code-analysiscurated-resourceseducation+3
1.2k6 months ago
DAILA preview

DAILA

GitHubmahaloz/daila

A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!

ai-assisted-reversingbinary-analysiscode-analysis+2
7051 month ago
Blockchain-Security-Audit-List preview

Blockchain-Security-Audit-List

GitHub0xnazgul/blockchain-security-audit-list

A list of Blockchain Security audit companies, solo auditors and location of public audits.

code-analysiscurated-resourceseducation+2
7931 year ago
xyntia preview

xyntia

GitHubbinsec/xyntia

Xyntia, the black-box deobfuscator

binary-analysiscode-analysisdynamic-code-analysis+1
968 months ago
vbSparkle preview

vbSparkle

GitHubairbus-cert/vbsparkle

VBScript & VBA source-to-source deobfuscator with partial-evaluation

code-analysisdefensive-toolsmalware-analysis+2
832 years ago
BlackHat-Europe-2022 preview

BlackHat-Europe-2022

GitHubga1ois/blackhat-europe-2022

Select Bugs From Binary Where Pattern Like CVE-1337-Days

binary-analysiscode-analysisexploitation+4
503 years ago
Previous12…70Next