Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
17 results
faraday_agent_dispatcher preview

faraday_agent_dispatcher

GitHubinfobyte/faraday_agent_dispatcher

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

cloud-securitydevsecopsinformation-gathering+5
49
7 months ago
http-react2shell preview

http-react2shell

GitHubmoisestapia/http-react2shell

Detection of the React Server Actions Exploit vector – CVE-2025-55182 / CVE-2025-66478

devsecopseducationexploitation+6
9 months ago
osv-scanner preview

osv-scanner

GitHubgoogle/osv-scanner

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

code-analysiscontainer-securitydevsecops+4
11.0k2 days ago
foxguard preview

foxguard

GitHub0sec-labs/foxguard

A fast universal code security scanner, written in Rust. Batteries included: supports 14 languages, TUI for triage, secrets, post-quantum audits,…

code-analysisconfiguration-auditingcryptography+8
29516h 35m ago
slowql preview

slowql

GitHubslowql/slowql

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

code-analysisconfiguration-auditingdatabase-security+6
2272 months ago
pyscan preview

pyscan

GitHubohaswin/pyscan

python dependency vulnerability scanner, written in Rust.

code-analysisdevsecopsstatic-analysis+2
2493 months ago
naabu-action preview

naabu-action

GitHubprojectdiscovery/naabu-action

A fast port scanner written in go with a focus on reliability and simplicity.

devsecopsinformation-gatheringnetwork-mapping+3
211 year ago
Fern Pattern Scanner preview

Fern Pattern Scanner

GitLabgitlab-da/tutorials/security-and-governance/custom-scanner-integration/fern-pattern-scanner

Scans selected files for patterns stated in rules. This is used in order to find secrets you may have accidentally written to a file. This scanner is…

code-analysisdevsecopseducation+3
52 years ago
ship-safe preview

ship-safe

GitHubasamassekou10/ship-safe

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

ai-securityapi-security-testingcloud-infrastructure-security+8
8449 days ago
ChopChop preview

ChopChop

GitHubmichelin/chopchop

YAML-driven CLI scanner that detects exposed services, files, and folders on web endpoints. Designed for developers to integrate security checks into…

configuration-auditingdevsecopsinformation-gathering+2
7125 years ago
rusty-hog preview

rusty-hog

GitHubnewrelic/rusty-hog

Multi-source secret scanner detecting API keys, passwords, and PII across Git repos, S3 buckets, filesystems, Confluence, JIRA, Slack, and Google…

cloud-securitycode-analysisdevsecops+1
5581 month ago
apm preview

apm

GitHubaaravmaloo/apm

A local password manager for everyone

authenticationcloud-securitycryptography+7
291 month ago
synaptic-sentinel preview

synaptic-sentinel

GitHubgolab-arch/synaptic-sentinel

The vibe-coding security sentinel. Apache-2.0 agentic security toolkit for AI-assisted projects: 5 deterministic scouts + LLM Brain Layer (BYOK…

ai-securitycode-analysisdevsecops+6
62 months ago
CVE-2025-66478-github-patcher preview

CVE-2025-66478-github-patcher

GitHubjibaru/cve-2025-66478-github-patcher

Go-based automation tool that scans GitHub repositories for vulnerable Next.js versions (CVE-2025-66478) and automatically creates pull requests with…

code-analysisdevsecopssupply-chain-security+2
9 months ago
bash-cve-2014-7169-cookbook preview

bash-cve-2014-7169-cookbook

GitHubgina-alaska/bash-cve-2014-7169-cookbook

Chef cookbook to detect and patch the Shellshock (CVE-2014-7169) bash vulnerability across servers using automated configuration management.

cloud-securityconfiguration-auditingdevsecops+1
10 years ago
local-log4j-vuln-scanner preview
Archived

local-log4j-vuln-scanner

GitHubhillu/local-log4j-vuln-scanner

[Moved to Codeberg] Simple local scanner for vulnerable log4j instances

code-analysisdevsecopsstatic-analysis+3
3714 years ago
aws-recon preview
Archived

aws-recon

GitHubjoshlarsen/aws-recon

Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.

cloud-infrastructure-securitycloud-securityconfiguration-auditing+5
5561 year ago