Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
18 results
BamboozlEDR preview

BamboozlEDR

GitHubolafhartong/bamboozledr

A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes.

defensive-toolsincident-responselog-analysis+2
278
11 months ago
maritime-security-paper preview

maritime-security-paper

GitLabjason996/maritime-security-paper

Comprehensive research on security vulnerabilities in autonomous maritime vessels and defense recommendations

curated-resourcesdefensive-toolsdns-analysis+8
9 months ago
Ni8mare preview

Ni8mare

GitHubcropnet/ni8mare

Comprehensive vulnerability detection tool for n8n workflow automation instances. Detects the critical CVE-2026-21858 vulnerability (CVSS 10.0)…

api-security-testingconfiguration-auditingdefensive-tools+3
27 months ago
trivy preview

trivy

GitHubaquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

cloud-infrastructure-securitycloud-securitycode-analysis+14
37.6k6 days ago
EDR-Telemetry preview

EDR-Telemetry

GitHubtsale/edr-telemetry

This project aims to compare and evaluate the telemetry of various EDR products.

curated-resourcesdefensive-toolseducation+1
2.0k15 days ago
atlant-harden preview

atlant-harden

GitHubatlantsecurity/atlant-harden

AtlantHarden - free Windows, browser & Office security hardening. 579 settings incl. 354 DISA STIG controls (Win11/Edge/Chrome/Firefox/Office 365) +…

configuration-auditingdefensive-tools
401 month ago
NodeSecurityShield preview

NodeSecurityShield

GitHubdomdogsec/nodesecurityshield

A Developer and Security Engineer friendly package for Securing NodeJS Applications.

defensive-toolsvulnerability-analysis
293 years ago
WordPress-CVE-2026-63030-Analysis preview

WordPress-CVE-2026-63030-Analysis

GitHubimxur/wordpress-cve-2026-63030-analysis

Technical analysis, root cause breakdown, and non-destructive detection methodology for CVE-2026-63030.

configuration-auditingdefensive-toolseducation+3
31 month ago
NginxHunter preview

NginxHunter

GitHubemrekybs/nginxhunter

Analyzes Nginx access logs to detect SQL injection, scanner tools, webshells, and exploitation attempts, aiding system administrators in server…

defensive-toolsincident-responselog-analysis+2
51 year ago
openclaw-defender preview

openclaw-defender

GitHubnightfullstar/openclaw-defender

Multi-layer security framework for AI agent ecosystems. Provides pre-installation skill auditing, file integrity monitoring, runtime protection, and…

ai-securitycode-analysiscurated-resources+8
36 months ago
ai-security-battle preview

ai-security-battle

GitHubbinarybard27/ai-security-battle

A Red Team vs. Blue Team Adversarial AI Simulation.

adversarial-attackai-securityanomaly-detection+5
28 months ago
KDStab preview

KDStab

GitHuboctoberfest7/kdstab

BOF combination of KillDefender and Backstab

defensive-toolsexploit-frameworkspayload-development+3
1703 years ago
dropengine preview

dropengine

GitHubs0lst1c3/dropengine

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

defensive-toolsexploit-frameworkspayload-development+5
2135 years ago
uac-a-mola preview

uac-a-mola

GitHubtelefonica/uac-a-mola

Modular framework for Windows UAC bypass attacks and mitigation, featuring DLL hijacking, fileless execution, and real-time monitoring to detect and…

defensive-toolsexploit-frameworkspenetration-testing+1
1075 years ago
cloudrasp-log4j2 preview

cloudrasp-log4j2

GitHubboundaryx/cloudrasp-log4j2

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

defensive-toolsexploit-frameworksvulnerability-analysis+1
1264 years ago
copy_fail preview

copy_fail

GitHubspensercai/copy_fail

Rust exploit PoC for Linux kernel LPE CVE-2026-31431 (AF_ALG page-cache write) plus eBPF runtime defense blocking AF_ALG socket creation via LSM or…

binary-exploitationdefensive-toolsexploitation+4
33 months ago
Copy-Fail---CVE-2026-31431 preview

Copy-Fail---CVE-2026-31431

GitHubsilent0x0/copy-fail---cve-2026-31431

CVE-2026-31431 "Copy Fail" - Analysis and defensive research for the Linux kernel AF_ALG privilege escalation vulnerability affecting all major…

defensive-toolsexploitationexploit-frameworks+2
3 months ago
Dent preview
Archived

Dent

GitHuboptiv/dent

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

defensive-toolsexploit-frameworksids-ips-evasion+2
2973 years ago