Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
weave-gitops preview

weave-gitops

GitHubweaveworks/weave-gitops

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

cloud-infrastructure-securitycloud-securityconfiguration-auditing+3
1.1k
8 months ago
lowkey preview

lowkey

GitHubinceptionstack/lowkey

Deploy self-hosted AI coding agents (OpenClaw, Claude Code, Codex) into your AWS account with CloudFormation, IAM profiles, and sandbox isolation for…

ai-securitycloud-infrastructure-securitycloud-security+7
731 day ago
yoloai preview

yoloai

GitHubkstenerud/yoloai

Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right.

ai-securitycloud-securitycontainer-security+2
2131 month ago
smolvm preview

smolvm

GitHubsmol-machines/smolvm

An embeddable, portable, branchable virtual machine to safely run Agents locally.

cloud-infrastructure-securitycontainer-securitydevsecops+2
6.6k6h 10m ago
ci-supplychain-guard preview

ci-supplychain-guard

GitHubotsmane-ahmed/ci-supplychain-guard

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

code-analysiscontainer-securitydevsecops+5
287 months ago
phantom-grid preview

phantom-grid

GitHubhaidang-infosec/phantom-grid

An eBPF-powered Active Defense system that turns your Linux server into a deceptive honeypot. Features transparent traffic redirection, OS…

authentication-authorizationcontainer-securitydata-exfiltration+7
732 months ago
netfence preview

netfence

GitHubdanthegoodman1/netfence

Like Envoy xDS, but for eBPF filters

cloud-infrastructure-securitycloud-securitycontainer-security+5
10214 days ago
secureCodeBox preview

secureCodeBox

GitHubsecurecodebox/securecodebox

Kubernetes-native security scanning orchestrator that automates continuous vulnerability detection by integrating multiple open-source scanners into…

cloud-securitycontainer-securitydevsecops+3
9902 days ago
CVE-2019-7609 preview

CVE-2019-7609

GitHubwolf1892/cve-2019-7609

docker lab setup for kibana-7609

container-securityeducationexploitation+3
4 years ago
PackMyPayload preview

PackMyPayload

GitHubmgeeky/packmypayload

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats.…

container-securityexploit-frameworkspayload-development+3
1.2k3 years ago
melange preview

melange

GitHubchainguard-dev/melange

Compiles source code into auditable, signed APK packages using declarative pipelines for Wolfi/Alpine, with multi-architecture QEMU emulation and…

container-securitydevsecopssupply-chain-security+1
6299h 26m ago
Threat_Model_Examples preview

Threat_Model_Examples

GitHubtaleliyahu/threat_model_examples

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

ai-securityapi-securitycloud-security+6
5201 year ago
IAGA-Sentinel preview

IAGA-Sentinel

GitHubiaga-team/iaga-sentinel

Cryptographically signed, replay-verifiable evidence layer for AI agents. Governs actions in the loop, produces Ed25519-signed receipts linked into a…

ai-securitycontainer-securitycryptography+4
18322 days ago
k8scout preview

k8scout

GitHubk8scout/k8scout

Drop a single binary into a compromised Kubernetes pod and instantly map every realistic attack path to cluster-admin, node escape, secret theft,…

cloud-securitycontainer-securityinformation-gathering+8
2553 months ago
HoneyWire preview

HoneyWire

GitHubandreicscs/honeywire

Open-source deception platform that turns any Linux machine into a high-signal canary. Deploy tripwire sensors on files, ports, and network services…

container-securitydevsecopsincident-response+3
1111 month ago
sysflow preview

sysflow

GitHubsysflow-telemetry/sysflow

Cloud-native system telemetry pipeline that collects, processes, and exports system call events into a compact object-relational format for…

cloud-securitycontainer-securitythreat-intelligence
462 years ago
TraceTree preview

TraceTree

GitHubtejasprasad2008-afk/tracetree

Runtime behavioral analysis tool that sandboxes suspicious packages in Docker, traces syscalls with strace, maps process cascades into directed…

container-securitydevsecopsdynamic-analysis-sandboxing+6
4217 days ago
kube-reaper preview

kube-reaper

GitHubstillbigjosh/kube-reaper

Scans Kubernetes clusters from any identity, flags dangerous permissions, and chains them into multi-step escalation paths to cluster compromise.

cloud-securityconfiguration-auditingcontainer-security+9
315 days ago
Previous12Next