Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
203 results
minisign preview

minisign

GitHubjedisct1/minisign

A dead simple tool to sign files and verify digital signatures.

cryptographydefensive-toolsencryption-decryption-tools+1
2.8k
3 months ago
PingCastleCloud preview
Archived

PingCastleCloud

GitHubnetwrix/pingcastlecloud

Azure AD security assessment tool that evaluates tenant configuration and identity risk, scoring findings through a maturity framework to prioritize…

authentication-authorizationcloud-infrastructure-securitycloud-security+4
1543 years ago
Sandboxie preview

Sandboxie

GitHubsandboxie-plus/sandboxie

Windows sandbox-based isolation tool for running untrusted programs and web browsing in a secure virtual environment without permanent system changes.

defensive-toolsdynamic-analysis-sandboxingmalware-analysis+1
19.2k1 day ago
simplewall preview

simplewall

GitHubhenrypp/simplewall

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

defensive-toolsnetwork-security
8.9k7 days ago
rayhunter preview

rayhunter

GitHubefforg/rayhunter

Rust tool to detect cell site simulators on an orbic mobile hotspot

defensive-toolseducationembedded-systems-security+9
5.7k4 days ago
sandbox-runtime preview

sandbox-runtime

GitHubanthropic-experimental/sandbox-runtime

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

configuration-auditingcontainer-securitydefensive-tools+4
5.1k7 days ago
threat-dragon preview

threat-dragon

GitHubowasp/threat-dragon

An open source threat modeling tool from OWASP

api-securitycloud-securitydefensive-tools+5
1.6k6 days ago
kernel-hardening-checker preview

kernel-hardening-checker

GitHuba13xp0p0v/kernel-hardening-checker

A tool for checking the security hardening options of the Linux kernel

configuration-auditingdefensive-toolshardware-security+1
2.1k9 days ago
Bashfuscator preview

Bashfuscator

GitHubbashfuscator/bashfuscator

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

defensive-toolseducationids-ips-evasion+3
2.0k6 years ago
Locksmith preview

Locksmith

GitHubjakehildreth/locksmith

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

configuration-auditingdefensive-toolsmisconfiguration+2
1.6k24 days ago
RedELK preview

RedELK

GitHuboutflanknl/redelk

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

defensive-toolsincident-responseinformation-gathering+4
2.7k9 months ago
metta preview

metta

GitHububer-common/metta

An information security preparedness tool to do adversarial simulation.

adversarial-attackdefensive-toolseducation+8
1.1k8 years ago
herpaderping preview

herpaderping

GitHubjxy-s/herpaderping

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of…

defensive-toolsexploitationpenetration-testing
1.2k3 years ago
Malcolm preview

Malcolm

GitHubidaholab/malcolm

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

defensive-toolsdigital-forensicsforensics+8
47812h 56m ago
DumpsterFire preview

DumpsterFire

GitHubtrycatchhcf/dumpsterfire

"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events.…

defensive-toolseducationincident-response+3
1.0k6 years ago
dfir-orc preview

dfir-orc

GitHubdfir-orc/dfir-orc

Forensics artefact collection tool for systems running Microsoft Windows

defensive-toolsdigital-forensicsforensics+2
44727 days ago
untitledgoosetool preview

untitledgoosetool

GitHubcisagov/untitledgoosetool

Cloud incident response and threat hunting tool that exports Azure, Entra ID, M365, and Defender telemetry for post-incident investigation and log…

cloud-securitydefensive-toolsdigital-forensics+4
9626 months ago
SharpEDRChecker preview

SharpEDRChecker

GitHubpwndexter/sharpedrchecker

C# tool that enumerates running processes, loaded DLLs, installed services, and drivers to detect the presence of AV, EDR, and logging products,…

defensive-toolsinformation-gatheringpenetration-testing+2
7556 months ago
Previous1234…12Next