Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
277 results
kratos preview

kratos

GitHubory/kratos

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

api-securityauthentication-authorizationcloud-security+3
13.8k
22 days ago
Stowaway preview

Stowaway

GitHubph4ntonn/stowaway

Multi-hop proxy tool for pentesters enabling traffic routing through multiple nodes, SOCKS5/SSH tunneling, port forwarding, remote shell, and…

command-and-controlencryption-decryption-toolslateral-movement+3
3.4k5 months ago
ssh3 preview

ssh3

GitHubfrancoismichel/ssh3

Fast, secure shell protocol built on HTTP/3, QUIC, and TLS 1.3. Supports OAuth2, OpenID Connect, and classical SSH authentication with UDP port…

authenticationencryption-decryption-toolsnetwork-security+1
5.0k1 year ago
columba preview

columba

GitHubtorlando-tech/columba

Native Android messaging app using Bluetooth LE, TCP, or RNode (LoRa) over LXMF and Reticulum

bluetooth-securityencryption-decryption-toolsinformation-gathering+5
1.1k3h 12m ago
securix preview

securix

GitHubcloud-gouv/securix

SécurixOS is a NixOS-based secure operating system tailored for small to medium-sized teams. It provides a minimal, hardened environment with strong…

authenticationcloud-securityconfiguration-auditing+7
1.0k2 days ago
bmcweb preview

bmcweb

GitHubopenbmc/bmcweb

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

api-securityauthentication-authorizationcloud-infrastructure-security+6
23123 days ago
heimdal preview

heimdal

GitHubheimdal/heimdal

Implementation of Kerberos, PKI, and ASN.1/DER providing authentication, authorization, and cryptographic services for secure networks.

authentication-authorizationcryptographyencryption-decryption-tools+3
37113 days ago
voidaccess preview

voidaccess

GitHubkatrielmoses/voidaccess

Self-hosted dark web OSINT platform. Automated threat intelligence from query to graph in 13 steps. Free alternative to Recorded Future, DarkOwl, and…

crawlerdata-exfiltrationencryption-decryption-tools+8
64016 days ago
revsh preview

revsh

GitHubemptymonkey/revsh

A reverse shell with terminal support, data tunneling, and advanced pivoting capabilities.

command-and-controlencryption-decryption-toolsids-ips-evasion+6
4692 years ago
HikvisionExploiter preview

HikvisionExploiter

GitHubtamim1089/hikvisionexploiter

HikvisionExploiter is a Python-based utility designed to automate exploitation and directory accessibility checks on Hikvision network cameras…

command-and-controlencryption-decryption-toolsexploitation+8
3798 months ago
terminalphone preview

terminalphone

GitLabhere_forawhile/terminalphone

Encrypted push-to-talk voice and text communication over Tor hidden services with end-to-end encryption, configurable ciphers, relay mode for group…

command-and-controlencryption-decryption-toolsnetwork-security+3
2692 months ago
bantam preview

bantam

GitHubgellin/bantam

A PHP backdoor management and generation tool/C2 featuring end to end encrypted payload streaming designed to bypass WAF, IDS, SIEM systems.

command-and-controlencryption-decryption-toolsids-ips-evasion+5
2823 years ago
wolfGuard preview

wolfGuard

GitHubwolfssl/wolfguard

FIPS 140-3 compliant VPN kernel module and user tool, drop-in replacement for WireGuard with AES-256-GCM, SHA2-256, and SECP256R1 cryptography for…

authenticationcryptographyencryption-decryption-tools+1
1247 days ago
talos preview

talos

GitHubory/talos

Scalable API key server for issuing, verifying, and revoking credentials with token derivation for fine-grained capability tokens. Supports…

api-securityauthentication-authorizationcloud-security+3
18924 days ago
libssh-mirror preview

libssh-mirror

GitLablibssh/libssh-mirror

C library implementing the SSH protocol for secure remote access, authentication, and encrypted communication. Includes fuzzing support via OSS-Fuzz…

authenticationcryptographyencryption-decryption-tools+2
531 day ago
Phirautee preview

Phirautee

GitHubviralmaniar/phirautee

A proof of concept crypto virus to spread user awareness about attacks and implications of ransomwares. Phirautee is written purely using PowerShell…

command-and-controldata-exfiltrationeducation+8
1226 years ago
GlobalUnProtect preview

GlobalUnProtect

GitHubrotarydrone/globalunprotect

Decrypt GlobalProtect configuration and cookie files.

authenticationdigital-forensicsencryption-decryption-tools+5
1611 year ago
Elite preview

Elite

GitHubcobbr/elite

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

command-and-controldynamic-code-analysisencryption-decryption-tools+6
1217 years ago
Previous1234…16Next