Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
80 results
macos-collector preview

macos-collector

GitHublethal-forensics/macos-collector

macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR

digital-forensicsforensicsincident-response+2
52
3 days ago
Douglas-042 preview

Douglas-042

GitHubemrekybs/douglas-042

Triages a suspect Windows machine in minutes. Collects processes, services, autoruns, event logs and forensic artifacts, flags attacker activity, and…

forensicsincident-responseinformation-gathering+1
4411 days ago
tanstack-compromise-checker preview

tanstack-compromise-checker

GitHubfabriziosalmi/tanstack-compromise-checker

Shell script to detect TanStack npm supply chain attack indicators (CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx)

container-securitydevsecopsforensics+7
21 month ago
persisthunt preview

persisthunt

GitHubraj3shp/persisthunt

Linux Persistence Detection, Hunting and Artifact Collection script

container-securitydigital-forensicsforensics+6
251 month ago
wifi_db preview

wifi_db

GitHubr4ulcl/wifi_db

Script to parse Aircrack-ng captures into a SQLite database and extract useful information like handshakes, MGT identities, interesting relations…

forensicsinformation-gatheringpassword-cracking+2
1391 month ago
cve-2026-46331-audit preview

cve-2026-46331-audit

GitHubquaerendir/cve-2026-46331-audit

cve-2026-46331-audit script

educationexploitationforensics+4
2 months ago
cpanel-cve-2026-41940 preview

cpanel-cve-2026-41940

GitHubmahfuzreham/cpanel-cve-2026-41940

cPanel CVE-2026-41940 nuclear.x86 Security Audit & Cleanup Script

configuration-auditingdefensive-toolsforensics+5
32 months ago
acropalypse-reconstructor preview

acropalypse-reconstructor

GitHubiqbaalilmii/acropalypse-reconstructor

A lightweight CLI tool to detect and reconstruct cropped images vulnerable to Acropalypse (CVE-2023-21036 and CVE-2023-28303) written in Python.

data-recoverydigital-forensicsexploitation+2
2 months ago
jsp-webshell-scanner preview

jsp-webshell-scanner

GitHubrespondiq/jsp-webshell-scanner

🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324.

code-analysisdigital-forensicsforensics+6
12 months ago
Incident-Response-Powershell preview

Incident-Response-Powershell

GitHubbert-janp/incident-response-powershell

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

digital-forensicsdisk-forensicsforensics+6
8093 months ago
CVE-2026-31431-Check preview

CVE-2026-31431-Check

GitHubtangjie1/cve-2026-31431-check

CVE-2026-31431 Copy Fail Linux kernel vulnerability detection script

container-securityexploitationforensics+6
4 months ago
TuxResponse preview

TuxResponse

GitHubla3ar0v/tuxresponse

Automated Linux incident response script with live triage, memory acquisition (LiME), disk imaging, YARA scanning, and HTML report generation.

digital-forensicsdisk-forensicsforensics+5
914 months ago
r2gopclntabParser preview

r2gopclntabParser

GitHubasherdll/r2gopclntabparser

A radare2 script to parse the gopclntab to facilitate Reverse Engineering Go binaries.

binary-analysisdebuggersforensics+3
174 months ago
uac preview

uac

GitHubtclahr/uac

Portable, dependency-free incident response tool that automates forensic artifact collection from Unix-like systems, including memory acquisition,…

digital-forensicsforensicsincident-response+3
1.4k4 months ago
nextjs-rce-incident-response preview

nextjs-rce-incident-response

GitHubrewantchaudhari/nextjs-rce-incident-response

Real-world incident response for CVE-2025-55182 (React2Shell) — script injection, server remediation, and post-incident report

educationforensicsincident-response+2
4 months ago
vcsa-hardening-tool preview

vcsa-hardening-tool

GitHubmandiant/vcsa-hardening-tool

Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

authenticationcloud-infrastructure-securityconfiguration-auditing+9
135 months ago
Noriben preview

Noriben

GitHubrurik/noriben

Python-based malware analysis sandbox that integrates with Sysinternals Procmon to automatically collect, analyze, and report runtime indicators with…

dynamic-analysis-sandboxingforensicsioc-management+1
1.3k5 months ago
detect_CVE-2026-21509 preview

detect_CVE-2026-21509

GitHubdecalage2/detect_cve-2026-21509

YARA rule and python script to detect potential exploits for the CVE-2026-21509 vulnerability in MS Office

forensicsmalware-analysisvulnerability-analysis
37 months ago
Previous12345Next