Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
22 results
DeTTECT preview

DeTTECT

GitHubrabobank-cdc/dettect

Detect Tactics, Techniques & Combat Threats

defensive-toolsincident-responseintrusion-detection+4
2.3k
15 days ago
ImpossibleTravelLogAnalysis preview

ImpossibleTravelLogAnalysis

GitHubnccgroup/impossibletravelloganalysis

Basic log analysis tool to detect impossible travel via IP address geographic information

anomaly-detectionforensicsincident-response+3
207 years ago
honeypot preview

honeypot

GitHubrxerium/honeypot

🍯Honeypot Threat Intel

defensive-toolsintrusion-detectionioc-management+4
11 year ago
forensic-msvpn preview

forensic-msvpn

GitHubsynacktiv/forensic-msvpn

This repository contains Velociraptor artifact and Chainsaw rules to help detect Microsoft Remote Access VPN activity

digital-forensicsforensicsincident-response+1
62 years ago
log4j-ioc-detector preview

log4j-ioc-detector

GitHubsantosomar/log4j-ioc-detector

A Simple Log4j Indicator of Compromise Linux Detector

incident-responseioc-managementlog-analysis+2
174 years ago
zeek-openvpn preview

zeek-openvpn

GitHubcorelight/zeek-openvpn

A Zeek OpenVPN protocol analyzer plugin.

defensive-toolsinformation-gatheringintrusion-detection+3
73 years ago
zeek-quic preview

zeek-quic

GitHubcorelight/zeek-quic

Bro analyzer that detects Google's QUIC protocol

intrusion-detectionlog-analysisnetwork-forensics+2
115 years ago
squidmagic preview

squidmagic

GitHubaws-alchemy/squidmagic

analyze a web-based network traffic 🕶 to detect central command and control servers

command-and-controldns-analysisincident-response+3
818 years ago
Log4Shell-vulnerability-CVE-2021-44228- preview

Log4Shell-vulnerability-CVE-2021-44228-

GitHubyadavmukesh/log4shell-vulnerability-cve-2021-44228-

This repository provides an in-depth analysis of the Log4Shell vulnerability (CVE-2021-44228) and implements a machine learning-based approach to…

anomaly-detectioncurated-resourceseducation+5
1 year ago
ToolShellFinder preview

ToolShellFinder

GitHubzach115th/toolshellfinder

Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771

digital-forensicsforensicsincident-response+5
8 months ago
CVE-2024-27198_LAB preview

CVE-2024-27198_LAB

GitHubne0zer01/cve-2024-27198_lab
authentication-authorizationeducationexploitation+8
3 months ago
CVE-2024-27198-SOC-Lab preview

CVE-2024-27198-SOC-Lab

GitHubptd200110/cve-2024-27198-soc-lab
educationexploitationids-ips-evasion+7
22 months ago
Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover preview

Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover

GitHubmrk336/cluster-chaos-exploiting-cve-2025-59359-for-kubernetes-takeover

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

cloud-securitycommand-and-controlcontainer-security+8
11 months ago
ZeroPoint preview

ZeroPoint

GitHubgmh5225/zeropoint

This PowerShell script detects indicators of compromise for CVE-2025-53770 — a critical RCE vulnerability in Microsoft SharePoint. Created by…

defensive-toolsexploitationincident-response+3
1 year ago
Crow-Eye preview

Crow-Eye

GitHubghassan-elsman/crow-eye

Open-source Windows forensics engine that acquires, parses, and correlates artifacts (MFT, USN, Registry, etc.) to reconstruct timelines with…

defensive-toolsdigital-forensicsdisk-forensics+3
11213 days ago
Hunting-Queries-Detection-Rules preview

Hunting-Queries-Detection-Rules

GitHubhybridbrothers/hunting-queries-detection-rules

The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect malicious…

cloud-securityincident-responselog-analysis+1
831 month ago
apache-web-log-analysis-lab preview

apache-web-log-analysis-lab

GitHubpedrofbrm/apache-web-log-analysis-lab

Blue Team lab focused on analyzing Apache web access logs to detect directory brute forcing and web scanning activity.

educationlabs-practicelog-analysis+1
3 months ago
BLUESPAWN preview

BLUESPAWN

GitHubion28/bluespawn

An Active Defense and EDR software to empower Blue Teams

configuration-auditingdefensive-toolsincident-response+3
1.3k4 months ago
Previous12Next