Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
607 results
Farmer preview

Farmer

GitHubmdsecactivebreach/farmer
phishing-toolspassword-attackslateral-movement+4
4275 years ago
NamedPipePTH preview

NamedPipePTH

GitHubs3cur3th1ssh1t/namedpipepth

Pass the Hash to a named pipe for token Impersonation

privilege-escalationpayload-generationimpersonation-tools+4
1455 years ago
scour preview

scour

GitHubgrines/scour
privilege-escalationexploitationlateral-movement+4
1272 years ago
AlanFramework preview

AlanFramework

GitHubenkomio/alanframework

A C2 post-exploitation framework

penetration-testing-frameworksprivilege-escalationencryption-decryption-tools+7
4862 years ago
CobaltStrike-BOF preview

CobaltStrike-BOF

GitHubyaxser/cobaltstrike-bof

Collection of beacon BOF written to learn windows and cobaltstrike

lateral-movementpost-exploitationcommand-and-control+3
3623 years ago
keimpx preview

keimpx

GitHubnccgroup/keimpx

Check for valid credentials across a network over SMB

lateral-movementpost-exploitationpenetration-testing
2685 years ago
PickleC2 preview

PickleC2

GitHubxret2pwn/picklec2

Encrypted C2 framework for post-exploitation and lateral movement, supporting PowerShell implants and custom modules for red team engagements.

penetration-testing-frameworkslateral-movementpost-exploitation+2
985 years ago
SigFlip preview

SigFlip

GitHubmed0x2e/sigflip

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

defensive-toolspersistence-mechanismscode-analysis+5
1.3k2 years ago
LiquidSnake preview

LiquidSnake

GitHubriccardoancarani/liquidsnake

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

payload-generationlateral-movementshellcode+1
3474 years ago
SharpStrike preview

SharpStrike

GitHubiomoath/sharpstrike

A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.

privilege-escalationpersistence-mechanismslateral-movement+6
1984 years ago
SpoolSploit preview

SpoolSploit

GitHubbeetlechunks/spoolsploit

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

privilege-escalationvulnerability-scannerscontainer-security+4
5525 years ago
PowerShx preview

PowerShx

GitHubiomoath/powershx

Run Powershell without software restrictions.

defensive-toolsprivilege-escalationpayload-generation+7
2814 years ago
nosferatu preview

nosferatu

GitHubkindtime/nosferatu

DLL that hooks NTLM and Kerberos authentication in lsass.exe to inject a backdoor hash, enabling persistent authenticated access on Windows systems.

lateral-movementpost-exploitationpenetration-testing+2
2421 year ago
reave preview

reave

GitHubpsmths/reave

WIP Post-exploitation framework tailored for hypervisors.

penetration-testing-frameworksprivilege-escalationexploit-frameworks+8
502 years ago
AzureRT preview

AzureRT

GitHubmgeeky/azurert

AzureRT - A Powershell module implementing various Azure Red Team tactics

privilege-escalationreconnaissancelateral-movement+5
2334 years ago
pivotool preview

pivotool

GitHubartusec/pivotool

Bash-based post-exploitation tool for semi-automated network pivoting, enabling lateral movement through compromised systems during penetration tests.

lateral-movementpost-exploitationpenetration-testing+1
94 years ago
baboossh preview

baboossh

GitHubcybiere/baboossh

SSH spreading made easy for red teams in a hurry

lateral-movementpenetration-testingred-teaming
569 days ago
MalSCCM preview

MalSCCM

GitHubnettitude/malsccm

Abuse SCCM servers to deploy malicious applications to managed hosts for lateral movement and red team operations.

exploitationlateral-movementpenetration-testing+1
2564 years ago
Previous1…272829…34Next