Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
90 results
Detection preview

Detection

GitHubsifalcon/detection
curated-resourcesdigital-forensicsincident-response+4
243 years ago
kube-knark preview

kube-knark

GitHubchen-keinan/kube-knark

Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster

cloud-securitycontainer-securityintrusion-detection+1
364 years ago
detect-ransomware-filenames preview

detect-ransomware-filenames

GitHubcorelight/detect-ransomware-filenames
defensive-toolsintrusion-detectionmalware-analysis+2
201 year ago
sipcheck preview

sipcheck

GitHubsinologicnet/sipcheck

Monitors Asterisk authentication logs and automatically bans IPs with repeated failed login attempts using iptables, with configurable thresholds and…

authenticationdefensive-toolsids-ips-evasion+2
256 years ago
SuricataLog preview

SuricataLog

GitHubjosevnz/suricatalog

Parse, filter, and visualize Suricata eve.json logs with CLI tools for alerts, flows, DNS, and payloads. Includes a tutorial for learning Suricata…

educationintrusion-detectionlog-analysis+1
2725 days ago
zeek-spicy-openvpn preview

zeek-spicy-openvpn

GitHubcorelight/zeek-spicy-openvpn

A Zeek OpenVPN protocol analyzer, based on Spicy.

intrusion-detectionlog-analysisnetwork-security+1
93 months ago
yellow preview

yellow

GitHubsinge/yellow

A simple binary wrapper for DNS canarytokens.

defensive-toolsintrusion-detectionnetwork-security
253 years ago
BaconSampler preview

BaconSampler

GitHublogisek/baconsampler

Sniffs outbound traffic for suspicious, beacon-like callbacks, because if it keeps coming back on schedule, it's probably not breakfast.

dns-analysisforensicsinformation-gathering+6
207 months ago
zeek-spicy-ipsec preview

zeek-spicy-ipsec

GitHubcorelight/zeek-spicy-ipsec

A Zeek IPSec protocol analyzer based on Spicy.

intrusion-detectionnetwork-forensicsnetwork-security+1
811 months ago
CVE-2017-5638_struts preview

CVE-2017-5638_struts

GitHubinitconf/cve-2017-5638_struts

detection for Apache Struts recon and compromise

exploitationintrusion-detectionmalware-analysis+3
88 years ago
uefi_bootkit_softlanding preview

uefi_bootkit_softlanding

GitHubares-sys/uefi_bootkit_softlanding

First public analysis of SoftLanding UEFI bootkit: Ring -2 implant, CVE-2025-7029, 240+ Gigabyte boards, GPU AI evasion, dual C2. YARA + Sigma +…

defensive-toolsdigital-forensicsfirmware-analysis+5
19 days ago
cyber-decoy preview

cyber-decoy

GitHubsecdev02/cyber-decoy

Experimental Decoy Broker

container-securitydefensive-toolsintrusion-detection+3
31 month ago
cve-2025-24054-lab preview

cve-2025-24054-lab

GitHubt0tooro/cve-2025-24054-lab

Blue-team lab: detecting & mitigating CVE-2025-24054 (Windows NTLM hash disclosure) with Sysmon, Wazuh SIEM, and Group Policy

authenticationconfiguration-auditingeducation+7
1 month ago
hassh preview

hassh

GitHubcorelight/hassh

Fingerprint SSH clients and servers.

anomaly-detectionforensicsintrusion-detection+4
122 years ago
legacyshield-CVE-2017-0144 preview

legacyshield-CVE-2017-0144

GitHubkitskater/legacyshield-cve-2017-0144

Defensive Windows security application providing compensating controls for CVE-2017-0144 (EternalBlue/MS17-010) through SMB monitoring, attack…

configuration-auditingdefensive-toolsincident-response+4
1 month ago
CVE-2022-3602 preview

CVE-2022-3602

GitHubcorelight/cve-2022-3602

Detects attempts at exploitation of CVE-2022-3602, a remote code execution vulnerability in OpenSSL v 3.0.0 through v.3.0.6

exploitationintrusion-detectionnetwork-security+2
43 years ago
CVE-2022-30190-Follina-Lab preview

CVE-2022-30190-Follina-Lab

GitHubu1tr0nex/cve-2022-30190-follina-lab

Full exploit chain lab and Suricata IDS detection for CVE-2022-30190 (Follina) - MSDT RCE

command-and-controleducationexploitation+7
3 months ago
CVE-2024-27198_Lab preview

CVE-2024-27198_Lab

GitHubcmpnn-romain/cve-2024-27198_lab

Lab for the CVE-2024-27198

ctfeducationexploitation+8
2 months ago
Previous12345Next