Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
79 results
api_wordlist preview

api_wordlist

GitHubchrislockard/api_wordlist

A wordlist of API names for web application assessments

api-security-testingcurated-resourcesfuzzing+2
925
1 year ago
vulnerable-code-snippets preview

vulnerable-code-snippets

GitHubyeswehack/vulnerable-code-snippets

Twitter vulnerable snippets

code-analysiscurated-resourceseducation+3
1.2k6 months ago
HUNT preview

HUNT

GitHubbugcrowd/hunt
curated-resourcespenetration-testingvulnerability-analysis+3
2.3k2 months ago
Thick-Client-Pentest-Checklist preview

Thick-Client-Pentest-Checklist

GitHubhari-prasaanth/thick-client-pentest-checklist

A OWASP Based Checklist With 80+ Test Cases

binary-analysiscurated-resourceseducation+5
2043 years ago
API-Wordlist preview

API-Wordlist

GitHubnet-hunter121/api-wordlist
api-security-testingcurated-resourcesfuzzing+3
2545 years ago
OWASP-Open-Source-Intelligence-Standard preview

OWASP-Open-Source-Intelligence-Standard

GitHubowasp/owasp-open-source-intelligence-standard

Community-led OSINT verification standard with testable requirements, acceptance tests, JSON schemas, and assessment formats for safer, interoperable…

curated-resourceslabs-practiceosint+2
13 days ago
OWASP-Subtractive-Hardening-Top-10 preview

OWASP-Subtractive-Hardening-Top-10

GitHubowasp/owasp-subtractive-hardening-top-10

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber…

ai-securitycloud-securitycontainer-security+6
219h 54m ago
OWASP-Model-Card-Security-Standard preview

OWASP-Model-Card-Security-Standard

GitHubowasp/owasp-model-card-security-standard
ai-securitycurated-resourceseducation+5
14 days ago
Community-Security-Prompts preview

Community-Security-Prompts

GitHubowasp/community-security-prompts

A curated library of security prompts for AI-assisted security testing, threat modeling, and educational exercises.

curated-resourceseducation
215 days ago
Audio-Video-Communications-Top-10 preview

Audio-Video-Communications-Top-10

GitHubowasp/audio-video-communications-top-10

OWASP top 10 security risks for audio and video communications, documenting common vulnerabilities and threats in modern real-time communication…

curated-resourceseducationnetwork-security+3
26 days ago
OWASP-MCP-Governance-and-Risk-Project preview

OWASP-MCP-Governance-and-Risk-Project

GitHubowasp/owasp-mcp-governance-and-risk-project
curated-resourceseducationpapers-research
26 days ago
OWASP-MCP-Threat-Modeling preview

OWASP-MCP-Threat-Modeling

GitHubowasp/owasp-mcp-threat-modeling
curated-resourceseducationthreat-intelligence+1
26 days ago
AISVS preview

AISVS

GitHubowasp/aisvs

The AI Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to…

adversarial-attackai-securityanomaly-detection+6
43120 days ago
Application-Security-Curriculum preview

Application-Security-Curriculum

GitHubowasp/application-security-curriculum
curated-resourcesdevsecopseducation+2
315 years ago
cumulus preview

cumulus

GitHubowasp/cumulus

Cumulus. Threat modeling the Clouds.

cloud-securitycurated-resourcesdevsecops+2
299 months ago
cwe-sdk-javascript preview

cwe-sdk-javascript

GitHubowasp/cwe-sdk-javascript

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

code-analysiscurated-resourceseducation+3
323 months ago
ASVS preview

ASVS

GitHubowasp/asvs

Application Security Verification Standard

api-securitycode-analysiscurated-resources+3
3.6k22 days ago
cwe-tool preview

cwe-tool

GitHubowasp/cwe-tool

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

code-analysiscurated-resourceseducation+3
643 months ago
Previous12345Next