Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
C2-Tool-Collection preview

C2-Tool-Collection

GitHuboutflanknl/c2-tool-collection

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

command-and-controlexploit-frameworksinformation-gathering+8
1.4k
2 years ago
BloodHound-Tools preview

BloodHound-Tools

GitHubzeronetworks/bloodhound-tools

Collection of tools that reflect the network dimension into Bloodhound's data

lateral-movementnetwork-mappingpenetration-testing+3
4513 years ago
RedTeam-Tools preview

RedTeam-Tools

GitHuba-poc/redteam-tools

Tools and Techniques for Red Team / Penetration Testing

exploitationlateral-movementosint+7
9.8k5 months ago
Hack Tools preview

Hack Tools

GitLabedu0x01/hack-tools

Project that brings together several pentest tools

command-and-controlcurated-resourcesdefensive-tools+9
22 years ago
ThievingFox preview

ThievingFox

GitHubslowerzs/thievingfox

Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

lateral-movementpenetration-testingpost-exploitation+1
5682 years ago
Adrenaline preview

Adrenaline

GitHubatomiczsec/adrenaline

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

command-and-controldefensive-toolsinformation-gathering+7
3181 month ago
AD_Enumeration_Hunt preview

AD_Enumeration_Hunt

GitHubalperenugurlu/ad_enumeration_hunt

PowerShell toolkit for Active Directory penetration testing, featuring domain/user/group enumeration, trust relationship analysis, RDP configuration,…

information-gatheringlateral-movementpenetration-testing+3
913 years ago
PowerShell-Red-Team preview

PowerShell-Red-Team

GitHubtobor88/powershell-red-team

Collection of PowerShell functions a Red Teamer may use in an engagement

information-gatheringlateral-movementpassword-attacks+3
5512 years ago
SpoolSploit preview

SpoolSploit

GitHubbeetlechunks/spoolsploit

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

container-securityexploitationexploit-frameworks+4
5505 years ago
WSMan-WinRM preview

WSMan-WinRM

GitHubbohops/wsman-winrm

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object

lateral-movementpenetration-testingred-teaming+1
2626 years ago
SSH-Private-Key-Looting-Wordlists preview

SSH-Private-Key-Looting-Wordlists

GitHubpinoywh1z/ssh-private-key-looting-wordlists

Curated wordlists for brute-forcing SSH private key filenames, aiding penetration testers in locating keys via LFI or enumeration during lateral…

lateral-movementpassword-crackingpenetration-testing
562 years ago
harpyTools preview

harpyTools

GitHubjssngc/harpytools

Automated Active Directory post-exploitation toolkit for Kerberos ticket extraction, NTLM relay attacks, and lateral movement via NetExec, Impacket,…

command-and-controlexploitationlateral-movement+6
201 month ago
pth-toolkit preview
Archived

pth-toolkit

GitHubbyt3bl33d3r/pth-toolkit

Modified version of the passing-the-hash tool collection made to work straight out of the box

lateral-movementpassword-attackspenetration-testing+2
61511 years ago
latma preview

latma

GitHubsilverfort-open-source/latma

Collects and analyzes AD and Azure AD authentication logs to detect lateral movement attacks using graph-based anomaly detection, visualizing…

anomaly-detectioncloud-securityincident-response+5
803 years ago
nimux preview

nimux

GitHubblue0x1/nimux

Pure-Nim network enumeration and remote execution toolkit for authorized security assessments. Supports SMB, LDAP, Kerberos, WinRM, database clients,…

authenticationcommand-and-controlexploitation+6
96 days ago