Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
572 results
slack-watchman preview

slack-watchman

GitHubpapermtn/slack-watchman

Slack enumeration and exposed secrets detection tool

defensive-toolsinformation-gatheringosint+3
403
17 days ago
mssharepoint-scanner preview

mssharepoint-scanner

GitHubvirologi-info/mssharepoint-scanner

A scanner for CVE-2026-55040 and CVE-2026-63520, designed to determine whether the server is affected by these two CVEs.

defensive-toolsinformation-gatheringnetwork-security+3
17 days ago
DetectionLab preview

DetectionLab

GitHubclong/detectionlab

Automate the creation of a lab environment complete with security tooling and logging best practices

configuration-auditingdefensive-toolsdigital-forensics+5
5.0k3 years ago
dcom_10036_Solver preview

dcom_10036_Solver

GitHubnels2/dcom_10036_solver

This script was created to automate addressing the vulnerability described in CVE-2021-26414…

configuration-auditingdefensive-toolsscripting-automation+1
3 years ago
BTPS-SecPack preview

BTPS-SecPack

GitHubosbornepro/btps-secpack

PowerShell-based security toolkit for small-to-medium enterprises, providing automated alerts, Active Directory hardening, Windows Event Forwarding,…

configuration-auditingdefensive-toolseducation+3
529 days ago
metabadger preview
Archived

metabadger

GitHubsalesforce/metabadger

Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

cloud-infrastructure-securitycloud-securityconfiguration-auditing+3
1431 year ago
ICS-Security-Tools preview

ICS-Security-Tools

GitHubiti/ics-security-tools

Tools, tips, tricks, and more for exploring ICS Security.

curated-resourcesdefensive-toolseducation+4
2.0k1 year ago
vbSparkle preview

vbSparkle

GitHubairbus-cert/vbsparkle

VBScript & VBA source-to-source deobfuscator with partial-evaluation

code-analysisdefensive-toolsmalware-analysis+2
822 years ago
Invoke-EDRChecker preview

Invoke-EDRChecker

GitHubpwndexter/invoke-edrchecker

PowerShell script that enumerates running processes, loaded DLLs, services, registry, and drivers to detect the presence of AV, EDR, and logging…

defensive-toolsinformation-gatheringpenetration-testing+2
2822 years ago
mimikatz-detector-busylight preview

mimikatz-detector-busylight

GitHubnccgroup/mimikatz-detector-busylight

USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is executed, a…

defensive-toolsincident-responseintrusion-detection+3
214 years ago
MDE-AuditCheck preview

MDE-AuditCheck

GitHubolafhartong/mde-auditcheck

MDE relies on some of the Audit settings to be enabled

configuration-auditingdefensive-toolsmisconfiguration
1014 years ago
Audix preview
Archived

Audix

GitHub0x0v1/audix

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

configuration-auditingdefensive-toolsdigital-forensics+4
11811 months ago
CVE-2022-30190_Temporary_Fix_Source_Code preview
Archived

CVE-2022-30190_Temporary_Fix_Source_Code

GitHubjotaqc/cve-2022-30190_temporary_fix_source_code

These are the source codes of the Python scripts to apply the temporary protection against the CVE-2022-30190 vulnerability (Follina)

configuration-auditingdefensive-toolsexploitation+3
4 years ago
GoPurple preview

GoPurple

GitHubsh4hin/gopurple

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

defensive-toolseducationexploitation+6
4985 years ago
NGWAF preview

NGWAF

GitHubfa-pengfei/ngwaf

First iteration of ML based Feedback WAF

anomaly-detectiondefensive-toolseducation+7
603 years ago
SysmonSimulator preview

SysmonSimulator

GitHubscarredmonk/sysmonsimulator

Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and…

defensive-toolsincident-responselog-analysis
8704 years ago
dawgmon preview

dawgmon

GitHubanvilsecure/dawgmon

dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software

configuration-auditingdefensive-toolsincident-response+1
556 years ago
veilgate preview

veilgate

GitHubc0oki3s/veilgate

Asymmetric defense against adversarial AI agents. VeilGate evaluates each incoming request, redirects suspected agents into a per-IP-consistent…

ai-securityanomaly-detectionanti-bot+6
152 months ago
Previous1234…32Next