Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
280 results
airflowscan preview

airflowscan

GitHubnightwatchcybersecurity/airflowscan

Checklist and tools for increasing security of Apache Airflow

cloud-securityconfiguration-auditingdevsecops+2
32
5 years ago
CVE-2024-3094-Vulnerability-Checker-Fixer preview

CVE-2024-3094-Vulnerability-Checker-Fixer

GitHubgensecaihq/cve-2024-3094-vulnerability-checker-fixer

Shell script and Ansible playbook to detect and remediate CVE-2024-3094 in xz-utils by checking package versions, upgrading or downgrading to a…

cloud-securitydevsecopsmisconfiguration+3
262 years ago
contrast preview

contrast

GitHubcontrastsecurity/contrast

SAST CLI for scanning Java, JavaScript, and .NET applications plus AWS Lambda functions, detecting code vulnerabilities and over-permissive IAM…

cloud-infrastructure-securitycloud-securitycode-analysis+6
202 months ago
naabu-action preview

naabu-action

GitHubprojectdiscovery/naabu-action

A fast port scanner written in go with a focus on reliability and simplicity.

devsecopsinformation-gatheringnetwork-mapping+3
211 year ago
ci-supplychain-guard preview

ci-supplychain-guard

GitHubotsmane-ahmed/ci-supplychain-guard

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

code-analysiscontainer-securitydevsecops+5
286 months ago
patch-openssl-CVE-2014-0160 preview

patch-openssl-CVE-2014-0160

GitHubjdauphant/patch-openssl-cve-2014-0160

Patch openssl #heartbleed with ansible

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
1911 years ago
CVE-2026-31431-Copy-Fail---Vulnerability-Detection-Script preview

CVE-2026-31431-Copy-Fail---Vulnerability-Detection-Script

GitHubliamromanis101/cve-2026-31431-copy-fail---vulnerability-detection-script

Detection script for CVE-2026-31431 (Copy Fail) that checks kernel version, patch presence, kernel configs, AF_ALG socket availability, setuid…

cloud-infrastructure-securityconfiguration-auditingcontainer-security+5
253 months ago
CVE-2015-0235-test preview

CVE-2015-0235-test

GitHubaaronfay/cve-2015-0235-test

Ansible playbook to check vulnerability for CVE-2015-0235

configuration-auditingdevsecopsscripting-automation+2
1511 years ago
httpx-action preview

httpx-action

GitHubprojectdiscovery/httpx-action

HTTP Web Server probing

devsecopsinformation-gatheringnetwork-mapping+3
142 years ago
proxmox-lxc-docker-fix preview

proxmox-lxc-docker-fix

GitHubjq6l43d1/proxmox-lxc-docker-fix

Workaround for CVE-2025-52881: Fixes Docker/Podman breakage in Proxmox LXC containers caused by AppArmor incompatibility with runc 1.2.7+. Universal…

cloud-infrastructure-securitycontainer-securitydevsecops+3
149 months ago
authkeysync preview

authkeysync

GitHubeduardolat/authkeysync

🔐 Lightweight CLI utility designed to synchronize SSH public keys from remote URLs into local authorized_keys files

authenticationauthentication-authorizationcloud-infrastructure-security+3
289 months ago
Package-Inferno preview

Package-Inferno

GitHubmhaggis/package-inferno

A Public Package Scanner for The Community

cloud-securitycontainer-securitydevsecops+6
137 months ago
cve-bench preview

cve-bench

GitHubgiovannigatti/cve-bench

A benchmark for evaluating AI agents on fixing real-world security vulnerabilities.

ai-securitycode-analysisdevsecops+6
143 months ago
Vulfy preview

Vulfy

GitHubmindpatch/vulfy

🐺 Vulfy – Fast Rust based package version scanner

code-analysisdevsecopssupply-chain-security+2
161 year ago
Corelight-Ansible-Roles preview

Corelight-Ansible-Roles

GitHubcorelight/corelight-ansible-roles

Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, Suricata and…

configuration-auditingdevsecopsintrusion-detection+3
165 years ago
AtomShields preview

AtomShields

GitHubelevenpaths/atomshields

Security testing framework for repositories and source code

code-analysisdevsecopsmisconfiguration+3
108 years ago
exfil-scan preview

exfil-scan

GitHubvikasudasi/exfil-scan

Scan LLM outputs and AI-generated content for data exfiltration signals (EchoLeak, CVE-2025-32711) before they reach users or downstream systems

ai-securityapi-securitydata-exfiltration+2
61 month ago
f5-waf-enforce-sig-CVE-2021-44228 preview

f5-waf-enforce-sig-CVE-2021-44228

GitHubirgoncalves/f5-waf-enforce-sig-cve-2021-44228

This enforces signatures for CVE-2021-44228 across all policies on a BIG-IP ASM device

api-securityconfiguration-auditingdevsecops+3
64 years ago
Previous1…101112…16Next