Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
82 results
ARES preview

ARES

GitHubmafifrizi/ares

Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

cloud-securitycommand-and-controldefensive-tools+5
28
1 day ago
CyberStrikeAI preview

CyberStrikeAI

GitHubaipentest/cyberstrikeai

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

ai-securitybinary-analysiscloud-security+8
6.4k18 days ago
mythic_ornn preview

mythic_ornn

GitHubn0qword/mythic_ornn

LLM-driven generator for Mythic Agents, Payload-Type and C2 Profiles.

ai-securitycommand-and-controlexploit-frameworks+3
5221 days ago
Windows-RCE-exploits preview

Windows-RCE-exploits

GitHubsmgorelik/windows-rce-exploits

The exploit samples database is a repository for **RCE** (remote code execution) exploits and Proof-of-Concepts for **WINDOWS**, the samples are…

educationexploitationexploit-frameworks+2
7462 years ago
Empire preview

Empire

GitHubbc-security/empire

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

adversarial-attackcommand-and-controldata-exfiltration+16
5.3k5 days ago
blackarmy-framework preview

blackarmy-framework

GitHubblack-army-security/blackarmy-framework

Modular Python-based penetration testing framework for automated security assessments, exploitation, and red team operations. Includes modules for…

exploit-frameworkspenetration-testing-frameworksred-teaming
61 year ago
RedRoot preview

RedRoot

GitHubagampreet-singh/redroot

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

ctfexploit-frameworksfuzzing+9
174 months ago
better_opts_attacks preview

better_opts_attacks

GitHubnishitvp/better_opts_attacks

Attack framework for breaking fine-tuning based prompt injection defenses (SecAlign, SecAlign++, StruQ) using architecture-aware adversarial attacks…

adversarial-attackai-securityexploit-frameworks+2
116 months ago
Dark-Moon preview

Dark-Moon

GitHubascit31/dark-moon

Autonomous AI pentesting engine, continuous offensive security across web, cloud, AD & Kubernetes. Agentic reasoning + real exploit execution deliver…

ai-securitycloud-securitydevsecops+6
9285 days ago
aether preview

aether

GitHubl33tdawg/aether

AI Smart Contract Security Analysis and PoC Generation Framework

ai-securitybinary-analysiscryptography+7
654 months ago
apex preview

apex

GitHubpensarai/apex

AI-powered offensive security testing using autonomous agents, directly in your terminal.

ai-securitycloud-securitydevsecops+7
3074 days ago
exploitgym preview

exploitgym

GitHubsunblaze-ucb/exploitgym

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

ai-securitybinary-exploitationctf+9
1.0k1 month ago
explotacion-vsftpd-nmap_Laboratorio_1 preview

explotacion-vsftpd-nmap_Laboratorio_1

GitHubjohanmv/explotacion-vsftpd-nmap_laboratorio_1

Laboratorio técnico de ciberseguridad donde se realiza reconocimiento de red con Nmap y explotación de la vulnerabilidad CVE-2011-2523 (vsftpd 2.3.4)…

educationexploitationexploit-frameworks+4
1 year ago
flounder preview

flounder

GitHubadshao/flounder

Autonomous white-hat security auditor for AI-driven code review, bug bounty research, exploit construction, and execution-grounded verification.

ai-securitycode-analysisdynamic-analysis-sandboxing+5
5126 days ago
c2 preview

c2

GitHubaveragesecurityguy/c2

A simple, extensible C&C beaconing system.

command-and-controlexploit-frameworksnetwork-security+3
1048 years ago
PoshC2_Old preview

PoshC2_Old

GitHubnettitude/poshc2_old

Powershell C2 Server and Implants

command-and-controlexploit-frameworkslateral-movement+5
5756 years ago
C4 preview

C4

GitHubprofessionallyevil/c4

Cyberdelia, a Collection of Command and Control frameworks

command-and-controlcurated-resourceseducation+3
646 years ago
C3 preview

C3

GitHubreverseclabs/c3

Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive…

command-and-controlexploit-frameworksids-ips-evasion+6
1.8k8 months ago
Previous12345Next