Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
51 results
zeek preview

zeek

GitHubzeek/zeek

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

anomaly-detectionanti-botdefensive-tools+14
8k14h 13m ago
spamassassin preview

spamassassin

GitHubapache/spamassassin

Open-source email filtering framework that detects spam and phishing using content analysis, header checks, Bayesian scoring, and DNS blocklists.

defensive-toolsemail-securitymachine-learning+1
34415h 39m ago
osquery preview

osquery

GitHubosquery/osquery

SQL powered operating system instrumentation, monitoring, and analytics.

anomaly-detectiondefensive-toolsemail-security+8
23.6k17h 3m ago
usbsas preview

usbsas

GitHubcea-sec/usbsas

Tool and framework for securely reading untrusted USB mass storage devices.

data-recoverydefensive-toolsdigital-forensics+1
37418h 4m ago
audit-kernel preview

audit-kernel

GitHublinux-audit/audit-kernel

GitHub mirror of the Linux Kernel's audit repository

defensive-toolsintrusion-detectionlog-analysis
1651 day ago
rspamd preview

rspamd

GitHubrspamd/rspamd

Spam filtering and email processing framework with regex rules, statistical analysis, custom Lua plugins, and external blocklists for MTA integration.

defensive-toolsemail-securityphishing+1
2.5k1 day ago
Boucle-framework preview

Boucle-framework

GitHubbande-a-bonnot/boucle-framework

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

ai-securityconfiguration-auditingdata-exfiltration+3
1242 days ago
threatest preview

threatest

GitHubdatadog/threatest

CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

defensive-toolspenetration-testingred-teaming
3483 days ago
pentoo-overlay preview

pentoo-overlay

GitHubpentoo/pentoo-overlay

Gentoo overlay for security tools as well as the heart of the Pentoo Livecd

defensive-toolsexploit-frameworkshardware-security+7
3833 days ago
beelzebub preview

beelzebub

GitHubbeelzebub-labs/beelzebub

A secure low code deception runtime framework, leveraging AI for System Virtualization.

ai-securityapi-securitycontainer-security+7
2.2k4 days ago
grove preview

grove

GitHubhashicorp-forge/grove

A Software as a Service (SaaS) log collection framework.

api-securitycloud-securitydefensive-tools+3
1868 days ago
HASH preview

HASH

GitHubdatadog/hash

YAML-configurable low-interactive honeypot framework for deploying HTTP/HTTPS-based deception servers with built-in honeytraps and Datadog log…

defensive-toolsnetwork-securitythreat-intelligence+1
14110 days ago
amavis preview

amavis

GitLabamavis/amavis

amavis is a high-performance email content filter framework written in Perl.

anomaly-detectiondefensive-toolsemail-security+2
3110 days ago
ODPure preview

ODPure

GitHubalex66366/odpure

Black-box input-stage purification defense that neutralizes backdoor attacks on object detectors via corruption, diffusion reconstruction, and DBSCAN…

adversarial-attackai-securitydefensive-tools+4
111 days ago
ShadowMem preview

ShadowMem

GitHubzjuwyh/shadowmem

Defensive framework that maintains a safety-focused shadow memory to detect and block prompt-injection and long-horizon threats against LLM agents…

ai-securitydefensive-toolseducation+4
14 days ago
ROPE preview

ROPE

GitHubxhowenma/rope

Defense framework enforcing routed origin policy to prevent indirect prompt injection in tool-using LLM agents, with deterministic origin checks and…

ai-securitydefensive-toolseducation+2
25 days ago
ghostdebug preview

ghostdebug

GitHubvollragm/ghostdebug

Debugger utilizing stealth hooks to hide from debugger detection

binary-analysisdebuggersdefensive-tools+1
231 month ago
trappsec preview

trappsec

GitHubtrappsec-dev/trappsec

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…

api-securitydefensive-toolsidentity-access-management+5
124 months ago
Previous123Next