Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
209 results
Dop2Mop preview

Dop2Mop

GitHubh4wkst3r/dop2mop

OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

cloud-infrastructure-securityreconnaissancecontainer-security+8
4
4 months ago
acp-framework-en preview

acp-framework-en

GitHubchelof100/acp-framework-en

Agent Control Protocol (ACP) — Official English specification. Cryptographically verifiable authorization architecture for autonomous AI agents.

authentication-authorizationcryptographycloud-security+5
214 days ago
atproto preview

atproto

GitHubblacksky-algorithms/atproto

Fork of the AT Protocol reference implementation with performance-optimized AppView, Rust-based firehose indexer, Redis caching, and community…

cloud-infrastructure-securityconfiguration-auditingsecret-detection+6
9417h 58m ago
headscale preview

headscale

GitHubjuanfont/headscale

An open source, self-hosted implementation of the Tailscale control server

authentication-authorizationcloud-infrastructure-securitynetwork-security+2
42.7k23 days ago
ws4-secure-design-agentic-systems preview

ws4-secure-design-agentic-systems

GitHubcosai-oasis/ws4-secure-design-agentic-systems

Repository for CoSAI Workstream 4, Secure Design Patterns for Agentic Systems

cloud-securitythreat-intelligenceidentity-access-management+6
1262 days ago
howdy preview

howdy

GitHubboltgolt/howdy

🛡️ Windows Hello™ style facial authentication for Linux

security-virtualizationprivacyidentity-access-management+1
7.7k1 year ago
kratos preview

kratos

GitHubory/kratos

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

authentication-authorizationencryption-decryption-toolscloud-security+3
13.8k23 days ago
AIOstack preview

AIOstack

GitHubaurva-io/aiostack

AI runtime inventory: discover shadow AI, trace LLM calls

container-securityinformation-gatheringnetwork-security+8
621 month ago
conduit preview

conduit

GitHubanee769/conduit

On-prem API gateway for AI coding agents with per-engineer cost attribution, hard budgets, egress governance (secrets/entity scanning), context-rot…

cloud-infrastructure-securitycloud-securitydevsecops+4
81 month ago
CredSpy preview

CredSpy

GitHubredbyte1337/credspy

Entra ID user enumeration and auth method discovery via the public GetCredentialType API

osintreconnaissanceinformation-gathering+5
16529 days ago
longfellow-zk preview

longfellow-zk

GitHubgoogle/longfellow-zk

Implementation of the Google Zero-Knowledge library for Identity Protocols.

cryptographyprivacyidentity-access-management+3
1.3k8 days ago
bramble preview

bramble

GitHubflythenimbus/bramble

Offline-first password manager with direct device-to-device sync

osintpassword-crackingencryption-decryption-tools+7
3031 day ago
MakerChecker preview

MakerChecker

GitHubmakerchecker/makerchecker

Open-source security gateway & static scanner for AI agents. Enforce role-based access control (RBAC), human-in-the-loop approvals, segregation of…

authentication-authorizationstatic-analysiscode-analysis+7
511 month ago
browser-identity-attacks-matrix preview

browser-identity-attacks-matrix

GitHubpushsecurity/browser-identity-attacks-matrix

Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they…

osintreconnaissancephishing+6
1.4k4 months ago
Security-101 preview

Security-101

GitHubmicrosoft/security-101

8 Lessons, Kick-start Your Cybersecurity Learning.

network-securitycloud-securityidentity-access-management+4
6.8k8 months ago
ziti preview

ziti

GitHubopenziti/ziti

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

authentication-authorizationcontainer-securityencryption-decryption-tools+6
4.3k16h 58m ago
CredKing preview

CredKing

GitHubustayready/credking

Password spraying using AWS Lambda for IP rotation

password-attacksscripting-automationpenetration-testing+3
6688 years ago
ACLight preview

ACLight

GitHubcyberark/aclight

A script for advanced discovery of Privileged Accounts - includes Shadow Admins

privilege-escalationidentity-access-management
8306 years ago
Previous1…8910…12Next