Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
535 results
Exploitarium-Detections preview

Exploitarium-Detections

GitHubethan-andrews/exploitarium-detections

KQL detection rules for Microsoft Sentinel and Defender XDR covering the bikini/exploitarium anonymous disclosure — a personal research archive of…

ioc-managementvulnerability-analysisthreat-intelligence+3
47
1 month ago
GCTI preview
Archived

GCTI

GitHubchronicle/gcti
defensive-toolsmalware-analysisthreat-intelligence+1
5542 years ago
EventLogging preview
Archived

EventLogging

GitHubblackhillsinfosec/eventlogging

Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.

defensive-toolsscripting-automationconfiguration-auditing+3
4911 year ago
threat-research-and-intelligence preview
Archived

threat-research-and-intelligence

GitHubblackberry/threat-research-and-intelligence

BlackBerry Threat Research & Intelligence

ioc-managementmalware-analysisthreat-intelligence+3
1002 years ago
BearFTP preview
Archived

BearFTP

GitHubkolya5544/bearftp

Honeypot FTP server written in .NET Core (C#) for both Linux and Windows.

defensive-toolsinformation-gatheringnetwork-security+4
143 years ago
c2finder preview
Archived

c2finder

GitHubmellow-hype/c2finder

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)

ioc-managementthreat-feeds-aggregatorsnetwork-security+3
55 years ago
MIDAS preview
Archived

MIDAS

GitHubetsy/midas

Mac Intrusion Detection Analysis System

defensive-toolsforensicsintrusion-detection+2
82610 years ago
webhook-cve-2022-0811 preview
Archived

webhook-cve-2022-0811

GitHubspiarh/webhook-cve-2022-0811

Simple webhook to block exploitation of CVE-2022-0811

vulnerability-scannerscontainer-securitycloud-security+3
84 years ago
modsecurity-cve-2018-6389 preview
Archived

modsecurity-cve-2018-6389

GitHubrastating/modsecurity-cve-2018-6389

A ModSecurity ruleset for detecting potential attacks using CVE-2018-6389

defensive-toolsvulnerability-scannersids-ips-evasion+3
8 years ago
Log4Shell-Honeypot preview
Archived

Log4Shell-Honeypot

GitHubmichaelsanford/log4shell-honeypot

Dockerized honeypot for CVE-2021-44228.

container-securityvulnerability-analysisthreat-intelligence+2
41 year ago
CVE-2021-41773_Honeypot preview
Archived

CVE-2021-41773_Honeypot

GitHublopqto/cve-2021-41773_honeypot

Simple honeypot for CVE-2021-41773 vulnerability

defensive-toolsvulnerability-analysisweb-security+2
24 years ago
Detections-CVE-2026-23918 preview
Archived

Detections-CVE-2026-23918

GitHubinsomnisec/detections-cve-2026-23918

Detection rules for CVE-2026-23918 Apache http2 RCE - Credit: stringa.ai, isec.pl

ioc-managementvulnerability-analysisexploitation+6
3 months ago
CVE-2025-32433 preview
Archived

CVE-2025-32433

GitHubdarses/cve-2025-32433

Security research on Erlang/OTP SSH CVE-2025-32433.

vulnerability-analysisexploitationids-ips-evasion+3
31 year ago
Honeypot-Logs-CVE-2025-5777 preview
Archived

Honeypot-Logs-CVE-2025-5777

GitHubbelow0day/honeypot-logs-cve-2025-5777

CitrixBleed 2 NetScaler honeypot logs

vulnerability-analysisnetwork-securitythreat-intelligence+2
1 year ago
eBPF-hid_guard preview
Archived

eBPF-hid_guard

GitHubfusion1110/ebpf-hid_guard
defensive-toolsbluetooth-securityhardware-security+2
41 month ago
melody preview
Archived

melody

GitHubma111e/melody

Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulation.

packet-sniffing-analysisreconnaissancevulnerability-analysis+5
1391 year ago
Audix preview
Archived

Audix

GitHub0x0v1/audix

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

defensive-toolsconfiguration-auditingforensics+4
11810 months ago
grapl preview
Archived

grapl

GitHubgrapl-security/grapl

Graph platform for Detection and Response

reconnaissancethreat-feeds-aggregatorsforensics+8
6993 years ago
Previous1…282930Next