Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
41 results
serverless preview

serverless

GitHubserverless/serverless

CLI framework for deploying and managing serverless applications on AWS Lambda with YAML infrastructure, local development, and multi-language…

authenticationcloud-infrastructure-securitydevsecops+4
46.9k
5 days ago
purple-team-exercise-framework preview

purple-team-exercise-framework

GitHubscythe-io/purple-team-exercise-framework

Purple Team Exercise Framework

adversarial-attackai-securitycloud-security+5
8174 months ago
oss-fuzz-gen preview

oss-fuzz-gen

GitHubgoogle/oss-fuzz-gen

LLM powered fuzzing via OSS-Fuzz.

ai-securitydevsecopsdynamic-code-analysis+3
1.4k5 months ago
h3-cli preview

h3-cli

GitHubhorizon3ai/h3-cli

CLI tool for the Horizon3.ai API

cloud-securitydevsecopspenetration-testing-frameworks+3
256 days ago
FIASSE preview

FIASSE

GitHubowasp/fiasse

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

code-analysiscurated-resourcesdevsecops+7
149 days ago
PSCF preview

PSCF

GitHubowasp/pscf

OWASP framework providing structured security capabilities for software products, derived from regulatory and industry standards analysis to guide…

curated-resourcesdevsecopseducation+2
2810 months ago
apache__camel_CVE-2018-8041_2-20-3 preview

apache__camel_CVE-2018-8041_2-20-3

GitHubshoucheng3/apache__camel_cve-2018-8041_2-20-3

Open source integration framework for defining routing and mediation rules via DSLs (Java, XML, YAML) to connect various systems consuming or…

api-securitycloud-securitydevsecops
9 months ago
apache__incubator-dubbo_CVE-2021-30181_2-6-8 preview

apache__incubator-dubbo_CVE-2021-30181_2-6-8

GitHubshoucheng3/apache__incubator-dubbo_cve-2021-30181_2-6-8

High-performance Java RPC and microservices framework with service discovery, traffic management, observability, and built-in security for building…

api-securityauthentication-authorizationcloud-security+4
10 months ago
ff4j__ff4j_CVE-2022-44262_1-8-13 preview

ff4j__ff4j_CVE-2022-44262_1-8-13

GitHubshoucheng3/ff4j__ff4j_cve-2022-44262_1-8-13

Feature toggle framework for Java enabling runtime feature activation, role-based access, AOP-driven toggling, monitoring, audit trails, and a web…

authentication-authorizationconfiguration-auditingdevsecops+3
1 year ago
ff4j__ff4j_CVE-2022-44262_1_8_13_fixed preview

ff4j__ff4j_CVE-2022-44262_1_8_13_fixed

GitHubshoucheng3/ff4j__ff4j_cve-2022-44262_1_8_13_fixed

Feature toggle framework for Java enabling runtime feature activation, role-based access, AOP-driven toggling, monitoring, audit trails, and a web…

authentication-authorizationconfiguration-auditingdevsecops+3
11 months ago
testng-team__testng_CVE-2022-4065_7-5 preview

testng-team__testng_CVE-2022-4065_7-5

GitHubshoucheng3/testng-team__testng_cve-2022-4065_7-5

Java testing framework for unit, integration, and end-to-end tests with annotations, data-driven testing, and parallel execution support.

code-analysisdevsecopsgeneral-purpose-utilities
1 year ago
pytm preview

pytm

GitHubowasp/pytm

A Pythonic framework for threat modeling

code-analysisdevsecopseducation+1
1.2k6 days ago
Sn1per preview

Sn1per

GitHub1n3/sn1per

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

devsecopsexploit-frameworksinformation-gathering+7
10.9k1 month ago
Boucle-framework preview

Boucle-framework

GitHubbande-a-bonnot/boucle-framework

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

ai-securityconfiguration-auditingdata-exfiltration+3
1221 day ago
reconswarm preview

reconswarm

GitHubrenatus-cartesius/reconswarm

Extend your recon with cloud power

cloud-securitydevsecopspenetration-testing+2
95 months ago
Log4j-Updater preview

Log4j-Updater

GitHubvinnimarcon/log4j-updater

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

configuration-auditingdevsecopsgeneral-purpose-utilities+3
24 years ago
pythia-sql-clairvoyance preview

pythia-sql-clairvoyance

GitHubrodhnin/pythia-sql-clairvoyance

Advanced SQL Injection Scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

ai-securitycrawlerdevsecops+5
23 months ago
wardn preview

wardn

GitHubrohansx/wardn

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

api-securityauthentication-authorizationcloud-security+6
361 month ago
Previous123Next