Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
162 results
dockernymous preview

dockernymous

GitHubbcapptain/dockernymous

A script used to create a whonix like gateway/workstation environment with docker containers.

container-securityeducationpenetration-testing+2
127
6 years ago
widevine-l3-decryptor preview
Archived

widevine-l3-decryptor

GitHubtomer8007/widevine-l3-decryptor

A Chrome extension that demonstrates bypassing Widevine L3 DRM

binary-analysiseducationencryption-decryption-tools+3
1.2k3 years ago
GTFOBins.github.io preview

GTFOBins.github.io

GitHubgtfobins/gtfobins.github.io

GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.

curated-resourceseducationpenetration-testing+3
13.6k2 months ago
camjacking preview

camjacking

GitHubcappricio-securities/camjacking

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

educationimpersonation-toolsinformation-gathering+5
645 months ago
SkillSpector preview

SkillSpector

GitHubnvidia/skillspector

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

ai-securitycode-analysisdevsecops+8
14.8k2 days ago
awesome-ctf preview

awesome-ctf

GitHubapsdehal/awesome-ctf

A curated list of CTF frameworks, libraries, resources and softwares

cryptographyctfcurated-resources+6
11.8k6 years ago
Mindmap preview

Mindmap

GitHubignitetechnologies/mindmap

This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give…

curated-resourceseducationlearning-paths-courses+2
9.2k1 month ago
al-khaser preview

al-khaser

GitHubayoubfaouzi/al-khaser

Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.

educationids-ips-evasionlabs-practice+3
7.1k1 month ago
google-ctf preview

google-ctf

GitHubgoogle/google-ctf

Archived CTF challenge sources and deployable sandboxes since 2017, with intentionally vulnerable exercises for hands-on security training and…

ctfcurated-resourceseducation+1
5.0k6 months ago
Notes preview

Notes

GitHubgracenolan/notes
cryptographycurated-resourcesdigital-forensics+6
2.7k6 months ago
exploitation-course preview

exploitation-course

GitHubashemery/exploitation-course

Offensive Software Exploitation Course

binary-exploitationeducationexploitation+7
2.5k3 years ago
malware_training_vol1 preview

malware_training_vol1

GitHubhasherezade/malware_training_vol1

Materials for Windows Malware Analysis training (volume 1)

binary-analysiseducationforensics+4
2.1k2 years ago
InjectProc preview

InjectProc

GitHubsecrary/injectproc

InjectProc - Process Injection Techniques [This project is not maintained anymore]

binary-exploitationeducationmalware-analysis+1
9927 years ago
Killer preview

Killer

GitHub0xhossam/killer

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

anti-boteducationexploitation+4
8452 years ago
obsidian-osint-templates preview

obsidian-osint-templates

GitHubwebbreacher/obsidian-osint-templates

These templates are suggestions of how the Obsidian notetaking tool can be used during an OSINT investigation. The example data in those files should…

curated-resourceseducationinformation-gathering+2
8022 months ago
Damn_Vulnerable_C_Program preview

Damn_Vulnerable_C_Program

GitHubhardik05/damn_vulnerable_c_program

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

educationfuzzinglabs-practice+1
7271 year ago
FluxER preview

FluxER

GitHub0n1con3/fluxer

FluxER - The bash script which installs and runs the Fluxion tool inside Termux. The wireless security auditing tool used to perform WPA/WPA2…

android-securityeducationpenetration-testing+3
6852 months ago
MARA_Framework preview

MARA_Framework

GitHubxtiankisutsa/mara_framework

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

android-securitybinary-analysiscode-analysis+6
6707 years ago
Previous12…9Next