Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
454 results
CrimsonEDR preview

CrimsonEDR

GitHubhelixo32/crimsonedr

Simulate the behavior of AV/EDR for malware development training.

binary-analysisdefensive-toolsdynamic-analysis-sandboxing+3
5652 years ago
DNSWatch preview

DNSWatch

GitHubhalildeniz/dnswatch

DNS traffic sniffer and analyzer for monitoring, filtering, and detecting anomalies in DNS queries. Features include PCAP export, DoH support, and a…

defensive-toolsdns-analysisinformation-gathering+2
2171 year ago
log4j-recognizer preview

log4j-recognizer

GitHubscitotec/log4j-recognizer

A Java helper to identify log4j in the current classpath

defensive-toolssupply-chain-securityvulnerability-analysis
24 years ago
Evasor preview

Evasor

GitHubcyberark/evasor

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

binary-analysisdefensive-toolspenetration-testing+3
3256 years ago
HookTools preview

HookTools

GitHubgmh5225/hooktools

Basic injectable for analyzing the behavior of evasive malware

binary-analysisdebuggersdefensive-tools+3
2 years ago
PortDog preview

PortDog

GitHubpuniaze/portdog

Network anomaly detector that monitors raw packets to identify port scanning activity in real time, with flexible sniffing duration controls and live…

anomaly-detectiondefensive-toolsintrusion-detection+3
13411 years ago
ConMachi preview

ConMachi

GitHubnccgroup/conmachi

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

cloud-infrastructure-securityconfiguration-auditingcontainer-security+4
1067 years ago
ThreatSentry-AI preview

ThreatSentry-AI

GitHubeclipsemanic/threatsentry-ai

ThreatSentry AI is an intelligent threat hunting dashboard that leverages machine learning to proactively identify and prioritize risks in your…

defensive-toolsincident-responseinformation-gathering+6
18 months ago
Secure-Desktop preview

Secure-Desktop

GitHubalphadelta/secure-desktop

Anti-keylogger/anti-rat application for Windows

anti-botdefensive-toolsincident-response+2
24711 years ago
CVE-2026-24061-GNU-inetutils-Telnet-Detector preview

CVE-2026-24061-GNU-inetutils-Telnet-Detector

GitHubnrnw/cve-2026-24061-gnu-inetutils-telnet-detector

A passive detection tool for identifying potential exposure to CVE-2026-24061 in GNU inetutils telnet installations

configuration-auditingdefensive-toolsdevsecops+2
8 months ago
Misconfiguration-Manager preview

Misconfiguration-Manager

GitHubsubat0mik/misconfiguration-manager

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening…

configuration-auditingcurated-resourcesdefensive-tools+7
1.2k20 days ago
Locksmith preview

Locksmith

GitHubjakehildreth/locksmith

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

configuration-auditingdefensive-toolsmisconfiguration+2
1.6k3 days ago
AD-description-password-finder preview

AD-description-password-finder

GitHubassurancemaladiesec/ad-description-password-finder

Retrieve AD accounts description and search for password in it

authenticationdefensive-toolsinformation-gathering+5
814 years ago
wafparan01d3 preview

wafparan01d3

GitHubalt3kx/wafparan01d3

Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool

configuration-auditingdefensive-toolspenetration-testing+2
244 years ago
EDRSandblast preview

EDRSandblast

GitHubwavestone-cdt/edrsandblast

Weaponizes vulnerable signed drivers to bypass EDR kernel callbacks, object callbacks, ETW TI provider, and userland hooks for LSASS memory dumping…

defensive-toolsexploitationpenetration-testing+2
1.8k2 years ago
arp-validator preview

arp-validator

GitHubrnehra01/arp-validator

Security Tool to detect arp poisoning attacks

defensive-toolsintrusion-detectionnetwork-security+1
548 years ago
NginxHunter preview

NginxHunter

GitHubemrekybs/nginxhunter

Analyzes Nginx access logs to detect SQL injection, scanner tools, webshells, and exploitation attempts, aiding system administrators in server…

defensive-toolsincident-responselog-analysis+2
52 years ago
EDRSandblast-GodFault preview
Archived

EDRSandblast-GodFault

GitHubgabriellandau/edrsandblast-godfault

EDRSandblast-GodFault

defensive-toolsexploitationmemory-forensics+4
2723 years ago
Previous12…26Next