Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
81 results
purple-team-exercise-framework preview

purple-team-exercise-framework

GitHubscythe-io/purple-team-exercise-framework

Purple Team Exercise Framework

adversarial-attackai-securitycloud-security+5
815
4 months ago
csw-slides-2024 preview

csw-slides-2024

GitHubjduck/csw-slides-2024

Slides for Developing Secure Software in 2024 at CanSecWest

devsecopseducationlearning-paths-courses
41 year ago
CVE-2026-11120-Command-Injection-via-Git-URL-in-CI-CD-Pipeline preview

CVE-2026-11120-Command-Injection-via-Git-URL-in-CI-CD-Pipeline

GitHubgeorge0papasotiriou/cve-2026-11120-command-injection-via-git-url-in-ci-cd-pipeline
devsecopseducationexploitation+1
16 days ago
Application-Security-Curriculum preview

Application-Security-Curriculum

GitHubowasp/application-security-curriculum
curated-resourcesdevsecopseducation+2
315 years ago
appsec-agent preview

appsec-agent

GitHubowasp/appsec-agent

A TypeScript package that provides AI-powered agents for Application Security (AppSec) tasks, built on top of the frontier models.

ai-securitycode-analysisdevsecops+5
81 day ago
security-culture preview

security-culture

GitHubowasp/security-culture

OWASP Security Culture repository

curated-resourcesdevsecopseducation+2
51 year ago
threat-modeling-playbook preview

threat-modeling-playbook

GitHubowasp/threat-modeling-playbook
curated-resourcesdevsecopseducation+3
394 years ago
user-security-stories preview

user-security-stories

GitHubowasp/user-security-stories

Repo to hold mapping of user-security-stories

curated-resourcesdevsecopseducation+1
1207 years ago
Teach-AppSec preview

Teach-AppSec

GitHubowasp/teach-appsec

OWASP teaching modules covering application security fundamentals including risk management, secure software development, and operations security for…

devsecopseducationlearning-paths-courses
1 month ago
threat-dragon preview

threat-dragon

GitHubowasp/threat-dragon

An open source threat modeling tool from OWASP

api-securitycloud-securitydefensive-tools+5
1.6k1 day ago
PSCF preview

PSCF

GitHubowasp/pscf
curated-resourcesdevsecopseducation+2
2810 months ago
CVE-2025-53652-Jenkins-Git-Parameter-Analysis preview

CVE-2025-53652-Jenkins-Git-Parameter-Analysis

GitHubpl4tyz/cve-2025-53652-jenkins-git-parameter-analysis

CVE-2025-53652: Jenkins Git Parameter Analysis

code-analysiscommand-and-controldevsecops+3
21 year ago
react2shell-security-toolkit preview

react2shell-security-toolkit

GitHubdelvygonzalez/react2shell-security-toolkit

Security toolkit to detect CVE-2025-55182 (React2Shell) vulnerability

code-analysisdevsecopseducation+2
18 months ago
unicode-control-characters-action preview

unicode-control-characters-action

GitHubpierdipi/unicode-control-characters-action

A GitHub Action to find Unicode control characters using the Red Hat diagnostic tool https://access.redhat.com/security/vulnerabilities/RHSB-2021-007…

code-analysisdevsecopseducation+3
3 years ago
seans-surf-and-skate preview

seans-surf-and-skate

GitHubseal-sean-org/seans-surf-and-skate

Sean's Surf & Skate Co. — Spring Boot storefront with a vulnerable SnakeYAML dep (CVE-2022-1471) for Seal Security demos

code-analysisdevsecopseducation+3
1 month ago
seal-security-nuget-demo-net7 preview

seal-security-nuget-demo-net7

GitHubseal-sec-demo-2/seal-security-nuget-demo-net7

.NET 7 fork of seal-security-nuget-demo: same CVE-2024-21907 exploit story, retargeted for customers locked to .NET SDK 7.

curated-resourcesdevsecopseducation+3
3 months ago
Python-Example preview

Python-Example

GitHubseal-sec-demo-2/python-example

Seal Security example — vulnerable pip app (PyYAML CVE-2020-14343) remediated to sealed versions; GitHub Actions + Jenkins integration

code-analysisdevsecopseducation+2
1 month ago
OpsGuard-simulation preview

OpsGuard-simulation

GitHubshubham-01-star/opsguard-simulation

OpsGuard eliminates the "3 AM PagerDuty" nightmare, specifically protecting against threats like the recent CVE-2025-55184 (Next.js DoS)

cloud-securitydevsecopseducation+2
18 months ago
Previous12345Next