Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
24 results
ThreatIngestor preview

ThreatIngestor

GitHubpedramamini/threatingestor

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

information-gatheringintrusion-detectionioc-management+3
924
3 months ago
AIP preview

AIP

GitHubstratosphereips/aip

Generates efficient IPv4 blocklists from Zeek network flows using multiple prioritization models (new, consistent, random forest) to identify…

information-gatheringintrusion-detectioniot-security+3
321 year ago
intelmq preview

intelmq

GitHubcerttools/intelmq

Message-queue-based threat intelligence feed collector and processor for CSIRTs. Automates ingestion, normalization, and sharing of security…

incident-responseinformation-gatheringintrusion-detection+6
1.1k4 months ago
zeek-openvpn preview

zeek-openvpn

GitHubcorelight/zeek-openvpn

Zeek plugin for detecting and parsing OpenVPN traffic (UDP/TCP with TLS), extracting session and TLS handshake metadata for network security…

defensive-toolsinformation-gatheringintrusion-detection+3
73 years ago
kismet preview

kismet

GitHubkismetwireless/kismet

Passive wireless network detector, sniffer, and intrusion detection system supporting Wi-Fi, Bluetooth, SDR, and other radio protocols for real-time…

information-gatheringintrusion-detectionnetwork-security+2
2.2k9 days ago
wordpot preview

wordpot

GitHubgbrindisi/wordpot

WordPress honeypot that detects probes for plugins, themes, and common fingerprinting files. Configurable via CLI or config file, with theme and…

defensive-toolsinformation-gatheringintrusion-detection+2
1897 years ago
MysqlHoneypot preview

MysqlHoneypot

GitHubal1ex/mysqlhoneypot

Deceptive MySQL honeypot exploiting LOAD DATA LOCAL INFILE to read Windows files from attackers, capturing WeChat ID, phone number, and location data…

defensive-toolsinformation-gatheringintrusion-detection+2
254 years ago
top-dns preview

top-dns

GitHubcorelight/top-dns

Probabilistic measurement script for Bro/Zeek that tracks top DNS queries by type over configurable intervals, logging results to a dedicated log for…

dns-analysisinformation-gatheringintrusion-detection+2
106 years ago
Spip-Go preview

Spip-Go

GitHubhoneylabshq/spip-go

Lightweight low-interaction network honeypot sensor that captures TCP payloads, performs passive TLS/HTTP/SSH fingerprinting, and outputs structured…

defensive-toolsincident-responseinformation-gathering+7
720 days ago
BearFTP preview
Archived

BearFTP

GitHubkolya5544/bearftp

Honeypot FTP server written in .NET Core (C#) for both Linux and Windows.

defensive-toolsincident-responseinformation-gathering+4
143 years ago
libpcap preview

libpcap

GitHubthe-tcpdump-group/libpcap

System-independent library for user-level packet capture and filtering. Provides a portable framework for low-level network monitoring, security…

dns-analysisinformation-gatheringintrusion-detection+3
3.2k4 days ago
buttinsky preview

buttinsky

GitHubmushorg/buttinsky

Modular open-source framework for automated botnet monitoring with customizable protocol support, client behavior, data logging, and distributed task…

information-gatheringintrusion-detectionmalware-analysis+2
8213 years ago
icannTLD preview

icannTLD

GitHubcorelight/icanntld

Zeek script that enriches DNS logs with ICANN TLD, domain, and subdomain fields, and marks trusted domains for threat detection.

dns-analysisinformation-gatheringintrusion-detection+3
81 year ago
ARTIF preview

ARTIF

GitHubcred-club/artif

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

information-gatheringintrusion-detectionioc-management+5
2493 years ago
Tylium preview

Tylium

GitHubrandomuserid/tylium

Primary data pipelines for intrusion detection, security analytics and threat hunting

defensive-toolsinformation-gatheringintrusion-detection+2
854 years ago
ALYCON-Threat-Landscape preview

ALYCON-Threat-Landscape

GitHubmcastens/alycon-threat-landscape

Training-free anomaly detection framework using Shannon Entropy, Fisher Information, and Wasserstein Distance to map system states into geometrically…

anomaly-detectiondefensive-toolsinformation-gathering+3
5 months ago
wp-mhn preview

wp-mhn

GitHubd0n601/wp-mhn

Integrates your Modern Honeypot Network Server and Wordpress Blog via MHN's REST API and WP's shortcodes

defensive-toolsinformation-gatheringintrusion-detection+4
9 years ago
kippo preview

kippo

GitHubdesaster/kippo

Medium-interaction SSH honeypot that logs brute force attacks and records full attacker shell interactions with a fake filesystem for threat…

information-gatheringintrusion-detectionnetwork-security+1
1.7k2 years ago
Previous12Next