Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
26 results
AES-Killer preview

AES-Killer

GitHubebryx/aes-killer

Burp Plugin to decrypt AES encrypted traffic on the fly

api-security-testingencryption-decryption-toolsmobile-security+1
651
5 years ago
SAMLRaider preview

SAMLRaider

GitHubcompasssecurity/samlraider

SAML2 Burp Extension

api-security-testingauthenticationcryptography+6
4486 months ago
Elite preview

Elite

GitHubcobbr/elite

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

command-and-controldynamic-code-analysisencryption-decryption-tools+6
1217 years ago
hulak preview

hulak

GitHubxaaha/hulak

Lightweight file-based CLI API client with age-encrypted secrets, first-class GraphQL support and MCP server for agentic workflow.

api-securityapi-security-testingauthentication+4
918 days ago
NebulaPulsar preview

NebulaPulsar

GitHubiss4cf0ng/nebulapulsar

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

dynamic-code-analysiseducationencryption-decryption-tools+7
471 month ago
test-certs-site preview

test-certs-site

GitHubletsencrypt/test-certs-site

A simple server to host the valid, revoked, and expired certificates required by Section 2.2 of the CA/Browser Forum Baseline Requirements.

api-security-testingdevsecopsencryption-decryption-tools+1
252 months ago
MasterHttpRelayVPN preview

MasterHttpRelayVPN

GitHubmasterking32/masterhttprelayvpn

Domain-fronted HTTP/SOCKS5 proxy tunneling traffic through Google Apps Script with MITM TLS interception, HTTP/1-2 multiplexing, and DPI evasion.

dns-analysiseducationencryption-decryption-tools+4
3.9k2 months ago
Venom preview

Venom

GitHubdliv3/venom

Venom - A Multi-hop Proxy for Penetration Testers

command-and-controlencryption-decryption-toolsnetwork-mapping+3
2.2k6 years ago
iox preview

iox

GitHubeddieivan01/iox

Tool for port forwarding & intranet proxy

encryption-decryption-toolsnetwork-securitypenetration-testing+1
1.2k5 years ago
dnscrypt-proxy preview

dnscrypt-proxy

GitHubdnscrypt/dnscrypt-proxy

Flexible DNS proxy with encrypted protocol support (DNSCrypt v2, DoH, ODoH, Anonymized DNS), caching, filtering, load balancing, and cloaking for…

dns-analysisencryption-decryption-toolsnetwork-security+1
13.6k2 days ago
TrustTunnel preview

TrustTunnel

GitHubtrusttunnel/trusttunnel

Open-source VPN protocol that tunnels TCP, UDP, and ICMP traffic over HTTPS, bypassing DPI and throttling. Features split tunneling, SOCKS5 proxy,…

dns-analysisencryption-decryption-toolsnetwork-security+1
3.4k11 days ago
Stowaway preview

Stowaway

GitHubph4ntonn/stowaway

Multi-hop proxy tool for pentesters enabling traffic routing through multiple nodes, SOCKS5/SSH tunneling, port forwarding, remote shell, and…

command-and-controlencryption-decryption-toolslateral-movement+3
3.4k5 months ago
sslsplit preview

sslsplit

GitHubdroe/sslsplit

Transparent man-in-the-middle proxy that terminates SSL/TLS connections, forges certificates on-the-fly, and logs decrypted traffic for network…

encryption-decryption-toolsforensicsids-ips-evasion+5
1.9k10 months ago
ssh-tpm-agent preview

ssh-tpm-agent

GitHubfoxboron/ssh-tpm-agent

SSH agent that creates and manages TPM-sealed keys for hardware-bound authentication, supporting key generation, import, wrapping, PIN protection,…

authenticationcloud-securitydevsecops+3
74422 days ago
hackEmbedded preview

hackEmbedded

GitHubdoudoudedi/hackembedded

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

command-and-controlembedded-systems-securityencryption-decryption-tools+8
20629 days ago
redi preview

redi

GitHubtaherio/redi

Automated script for setting up CobaltStrike redirectors (nginx reverse proxy, letsencrypt)

command-and-controldns-analysisencryption-decryption-tools+3
1438 years ago
mkdev preview

mkdev

GitHubvenkatkrishna07/mkdev

Trusted localhost HTTPS — local CA, /etc/hosts, mDNS LAN sharing, reverse proxy. Maps https://name.local → localhost:port

dns-analysisencryption-decryption-toolsnetwork-security+3
1412 months ago
starttls-mitm preview

starttls-mitm

GitHubipopov/starttls-mitm

A starttls-capable transparent man-in-the-middle proxy

encryption-decryption-toolsids-ips-evasionnetwork-security+3
5212 years ago
Previous12Next