Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
30 results
minisign preview

minisign

GitHubjedisct1/minisign

A dead simple tool to sign files and verify digital signatures.

cryptographydefensive-toolsencryption-decryption-tools+1
2.8k
11 days ago
memguard preview

memguard

GitHubawnumar/memguard

Software sandbox for storage of sensitive information in memory.

cryptographydefensive-toolsencryption-decryption-tools+1
2.8k4 months ago
cyclonedx-cli preview

cyclonedx-cli

GitHubcyclonedx/cyclonedx-cli

CLI for generating, analyzing, merging, diffing, validating, signing, and converting CycloneDX SBOMs across JSON, XML, Protobuf, CSV, and SPDX…

cryptographydefensive-toolsdevsecops+2
5401 month ago
macOS-Security-and-Privacy-Guide preview

macOS-Security-and-Privacy-Guide

GitHubdrduh/macos-security-and-privacy-guide

Curated macOS security and privacy guide with practical instructions for threat modeling, disk encryption, firewall configuration, secure…

authenticationcryptographycurated-resources+4
22.5k8 days ago
quantum-security-project preview

quantum-security-project

GitHubowasp/quantum-security-project

Vendor-neutral OWASP project mapping quantum-era security risks with a Top 10 risk list, mitigation guidance, and threat models for post-quantum…

cloud-securitycryptographycurated-resources+8
958 days ago
Minesweeper preview

Minesweeper

GitHubcodingo/minesweeper

A Burpsuite plugin (BApp) to aid in the detection of scripts being loaded from over 23000 malicious cryptocurrency mining domains (cryptojacking).

cryptographythreat-intelligencevulnerability-scanners+1
2037 years ago
zeek-plugin-roca preview

zeek-plugin-roca

GitHub0xxon/zeek-plugin-roca

Bro plugin to check if certificates are affected by CVE-2017-15361

cryptographyintrusion-detectionnetwork-security+2
37 years ago
cart preview

cart

GitHubcybercentrecanada/cart

Python implementation of the CaRT library for (un)inerting files.

cryptographydefensive-toolsdigital-forensics+2
541 year ago
secure-vault-for-commercial preview

secure-vault-for-commercial

GitHubkeerthivasan-sankar/secure-vault-for-commercial

secure vault for your files

authenticationcryptographydata-recovery+3
323 days ago
TID-The-Instant-Destroyer preview

TID-The-Instant-Destroyer

GitHubahmaaaaadbntaaaaa-byte/tid-the-instant-destroyer

Hardware-level security protocol for mitigating cache-based side-channel attacks.

cryptographydefensive-toolseducation+3
43 months ago
hlf-time-oracle preview

hlf-time-oracle

GitHubshanker-sec/hlf-time-oracle

Chaincode for blockchain Hyperledger Fabric provides accurate time to other chaincodes. Thus solving the security problem associated with transaction…

cryptographydefensive-toolsnetwork-security+1
32 years ago
key-transparency-auditor preview

key-transparency-auditor

GitHubsignalapp/key-transparency-auditor

Continuously fetches and cryptographically verifies key transparency log updates, maintains a condensed prefix and log tree view, and returns signed…

cryptographydefensive-toolslog-analysis
919 days ago
shim preview

shim

GitHubrhboot/shim

UEFI shim loader

authenticationcryptographydefensive-tools+3
1.1k1 month ago
hmac-bcrypt preview

hmac-bcrypt

GitHubepixoip/hmac-bcrypt

The hmac-bcrypt password hashing function

authenticationcryptographydefensive-tools+1
661 year ago
DeadDialect preview

DeadDialect

GitHubengrbilal992/deaddialect

A session-unique RISC-V ISA — every boot speaks a different dialect. Old binaries become invalid. Malware cannot persist.

binary-analysiscryptographydefensive-tools+7
64 months ago
attestos preview

attestos

GitHubplunder707/attestos

Bazzite plus a TPM boot attestation layer. Work in progress: builds unverified, UKI mechanism unresolved. Spec: github.com/plunder707/attested-gaming

authenticationcryptographydefensive-tools+2
129 days ago
javascript-obfuscator preview

javascript-obfuscator

GitHubjavascript-obfuscator/javascript-obfuscator

Obfuscates JavaScript and Node.js code with variable renaming, string encryption, control flow flattening, and anti-debugging to protect source code…

code-analysiscryptographydefensive-tools+3
16.2k14 days ago
Notes preview

Notes

GitHubgracenolan/notes

Curated study notes and interview preparation guide for security engineering roles, covering networking, web security, cryptography, malware…

cryptographycurated-resourcesdigital-forensics+6
2.7k7 months ago
Previous12Next