Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
31 results
tarian preview

tarian

GitHubdevopstoday11/tarian

Anti-Virus for K8s. Protect your Applications running on Kubernetes from malicious attacks with pre-registered source code, runtime processes…

cloud-securitycontainer-securitydevsecops+2
2
4 years ago
Blackash-CVE-2025-53770 preview

Blackash-CVE-2025-53770

GitHubyosasasutsut/blackash-cve-2025-53770

Technical analysis and detection guidance for CVE-2025-53770, a critical unauthenticated RCE vulnerability in Microsoft SharePoint Server exploited…

exploitationforensicsincident-response+3
1 year ago
vulnerability-poc preview

vulnerability-poc

GitHubfankh/vulnerability-poc

CVE proof-of-concept labs, exploit scripts, and detection/prevention rules (Nginx, Apache, Snort, YARA) for high-severity CVEs. Authorized security…

ctfeducationexploitation+5
6514h 23m ago
thrunt-god preview

thrunt-god

GitHubbackbay-labs/thrunt-god

Threat hunting command system for agentic IDEs

incident-responseinformation-gatheringintrusion-detection+5
361 month ago
intentshield preview

intentshield

GitHubmattijsmoens/intentshield

Pre-execution intent verification for AI agents. Audits what your AI is about to do, not what it says. Zero dependencies, deterministic, hash-sealed.

ai-securityanomaly-detectioncode-analysis+9
2014 days ago
beelzebub preview

beelzebub

GitHubbeelzebub-labs/beelzebub

A secure low code deception runtime framework, leveraging AI for System Virtualization.

ai-securityapi-securitycontainer-security+7
2.2k2 days ago
mcpguard-dynamic preview

mcpguard-dynamic

GitHubfacebook/mcpguard-dynamic

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

ai-securitycode-analysiscontainer-security+8
731 month ago
anticipator preview

anticipator

GitHubcalusdotai/anticipator

Anticipator is an open-source threat detection platform for multi-agent AI systems.

ai-securityanomaly-detectioncode-analysis+6
6 months ago
py preview

py

GitHubantiwar3/py

飘云ark(pyark)

defensive-toolsdigital-forensicsincident-response+3
5319 days ago
pulledpork preview

pulledpork

GitHubshirkdog/pulledpork

Pulled Pork for Snort and Suricata rule management (from Google code)

configuration-auditingintrusion-detectionnetwork-security+2
4425 years ago
kube-knark preview

kube-knark

GitHubchen-keinan/kube-knark

Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster

cloud-securitycontainer-securityintrusion-detection+1
364 years ago
CVE-2020-16898 preview

CVE-2020-16898

GitHubcorelight/cve-2020-16898

A network detection package for CVE-2020-16898 (Windows TCP/IP Remote Code Execution Vulnerability)

exploitationintrusion-detectionnetwork-security+3
92 years ago
redsun-bluehammer-undefend-detection-pack preview

redsun-bluehammer-undefend-detection-pack

GitHubletlaka/redsun-bluehammer-undefend-detection-pack

Microsoft Defender XDR KQL detections for RedSun, BlueHammer, UnDefend, and CVE-2026-33825-related Defender abuse behaviors.

cloud-securitydefensive-toolsincident-response+4
84 months ago
Fortinet-FortiWeb-Fabric-Connector-CVE-2025-25257-Detection preview

Fortinet-FortiWeb-Fabric-Connector-CVE-2025-25257-Detection

GitHubgarethmsheldon/fortinet-fortiweb-fabric-connector-cve-2025-25257-detection

This repository provides production-ready detection engineering content for **CVE-2025-25257**, a pre-authentication SQL Injection vulnerability in…

educationexploitationforensics+8
6 months ago
pocKeycloakCVE-2023-0264 preview

pocKeycloakCVE-2023-0264

GitHubeliangonzi00/pockeycloakcve-2023-0264

Proof-of-concept exploit for CVE-2023-0264 (Keycloak OIDC session hijacking) with a frontend for session_id substitution and an agent that detects…

authenticationdefensive-toolsexploitation+7
1 month ago
CVE-2020-16898 preview

CVE-2020-16898

GitHubadvanced-threat-research/cve-2020-16898

CVE-2020-16898 (Bad Neighbor) Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

exploitationintrusion-detectionnetwork-security+1
2095 years ago
cve-2022-26809 preview

cve-2022-26809

GitHubcorelight/cve-2022-26809

Zeek package detecting CVE-2022-26809 remote code execution attempts and successful exploitation over DCE/RPC, generating actionable exploit attempt…

exploitationincident-responseintrusion-detection+3
321 year ago
CVE-2025-32433 preview
Archived

CVE-2025-32433

GitHubdarses/cve-2025-32433

Security research on Erlang/OTP SSH CVE-2025-32433.

exploitationids-ips-evasionintrusion-detection+3
31 year ago
Previous12Next