Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
37 results
ThreatIngestor preview

ThreatIngestor

GitHubpedramamini/threatingestor

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

information-gatheringintrusion-detectionioc-management+3
924
3 months ago
Threat-Intelligence-Hunter preview

Threat-Intelligence-Hunter

GitHubabhinavbom/threat-intelligence-hunter

CLI tool to search, aggregate, and store IOCs from multiple open security feeds and APIs, enabling local threat intelligence database creation and…

information-gatheringioc-managementosint+1
1561 year ago
cve-search preview

cve-search

GitHubcve-search/cve-search

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.

database-securityinformation-gatheringioc-management+4
2.6k1 month ago
intelmq preview

intelmq

GitHubcerttools/intelmq

Message-queue-based threat intelligence feed collector and processor for CSIRTs. Automates ingestion, normalization, and sharing of security…

incident-responseinformation-gatheringintrusion-detection+6
1.1k4 months ago
expel-intel preview

expel-intel

GitHubexpel-io/expel-intel

Curated repository of IOCs and threat intelligence from the Expel Intel Team, providing actionable indicators for detection and response workflows.

information-gatheringioc-managementosint+2
622 days ago
GOXLR-malware-family preview

GOXLR-malware-family

GitHubdestiny-creates/goxlr-malware-family

Reverse engineering repository for malware samples from goxlr.net and related domains, focusing on stealer variants, C2 infrastructure analysis, and…

digital-forensicsinformation-gatheringioc-management+3
43 months ago
investigations preview

investigations

GitHubamnestytech/investigations

Curated indicators of compromise (IOCs) from Amnesty International's technical investigations into targeted threats against human rights defenders,…

forensicsinformation-gatheringioc-management+3
1.7k1 year ago
ThreatKB preview

ThreatKB

GitHubinquest/threatkb

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

information-gatheringioc-managementmalware-analysis+2
1045 months ago
Spip-Go preview

Spip-Go

GitHubhoneylabshq/spip-go

Lightweight low-interaction network honeypot sensor that captures TCP payloads, performs passive TLS/HTTP/SSH fingerprinting, and outputs structured…

defensive-toolsincident-responseinformation-gathering+7
720 days ago
abusech preview

abusech

GitHubrollwagen/abusech

Command-line client for abuse.ch threat intelligence APIs, enabling query and retrieval of Indicators of Compromise (IOCs) for threat hunting and…

information-gatheringioc-managementthreat-feeds-aggregators+1
18 months ago
fortileak-01-2025-Be preview

fortileak-01-2025-Be

GitHubniklasmato/fortileak-01-2025-be

Repository documenting the Fortigate firewall vulnerability CVE-2022-40684 and publicly disclosed affected data for security research and defensive…

incident-responseinformation-gatheringioc-management+3
1 year ago
GOSINT preview
Archived

GOSINT

GitHubciscocsirt/gosint

Framework for collecting, processing, and exporting high-quality indicators of compromise (IOCs) to enrich security operations with structured threat…

information-gatheringioc-managementosint+3
5603 years ago
Cortex preview

Cortex

GitHubthehive-project/cortex

Automated observable analysis engine for threat intelligence, digital forensics, and incident response, integrating with diverse analyzers via a…

digital-forensicsincident-responseinformation-gathering+5
1.6k1 month ago
iocextract preview

iocextract

GitHubpedramamini/iocextract

Defanged Indicator of Compromise (IOC) Extractor.

digital-forensicsforensicsinformation-gathering+5
5831 year ago
CVE-2026-0257 preview

CVE-2026-0257

GitHubgrayxploit/cve-2026-0257

Automated vulnerability scanner for CVE-2026-0257 (PAN-OS GlobalProtect Authentication Bypass) with TLS certificate enumeration, authentication…

authenticationincident-responseinformation-gathering+6
12 months ago
ARTIF preview

ARTIF

GitHubcred-club/artif

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

information-gatheringintrusion-detectionioc-management+5
2493 years ago
omnibus preview

omnibus

GitHubinquest/omnibus

Modular OSINT framework for artifact investigation, session management, and multi-source intelligence collection across IPs, domains, hashes, and…

information-gatheringioc-managementosint+2
3606 years ago
Log4j_Attacker_IPList preview

Log4j_Attacker_IPList

GitHubc3-h2/log4j_attacker_iplist

Curated list of attacker IP addresses targeting the Log4j vulnerability (CVE-2021-44228) for threat intelligence, incident response, and network…

information-gatheringioc-managementlog-analysis+2
4 years ago
Previous123Next