Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
16 results
AzureHunter preview

AzureHunter

GitHubdarkquasar/azurehunter

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

cloud-securitydigital-forensicsincident-response+3
795
3 years ago
pySigma-backend-opensearch preview

pySigma-backend-opensearch

GitHubsigmahq/pysigma-backend-opensearch

pySigma OpenSearch backend

defensive-toolsintrusion-detectionlog-analysis+1
1412 days ago
RS4LOGJ-CVE-2021-44228 preview

RS4LOGJ-CVE-2021-44228

GitHubatlassion/rs4logj-cve-2021-44228

Provides upgrade and mitigation instructions for Apache Log4j vulnerability CVE-2021-44228 in Remote Syslog products, including version checks and…

cloud-infrastructure-securityconfiguration-auditingdevsecops+2
4 years ago
dns-honeypot preview
Archived

dns-honeypot

GitHubtg12/dns-honeypot

dns-honeypot

dns-analysisincident-responseinformation-gathering+4
993 months ago
zeek-long-connections preview

zeek-long-connections

GitHubcorelight/zeek-long-connections

Zeek package for tracking long connections to report them before they have completed.

anomaly-detectiondefensive-toolsincident-response+3
319 months ago
log4shell_sentinel preview

log4shell_sentinel

GitHubossie-git/log4shell_sentinel

A Smart Log4Shell/Log4j/CVE-2021-44228 Scanner

container-securityforensicsincident-response+3
144 years ago
Threat-Remediation-Scripts preview

Threat-Remediation-Scripts

GitHubxephora/threat-remediation-scripts

This repository contains a list of new remediation scripts.

defensive-toolsdigital-forensicsincident-response+5
1931 month ago
claude-code-guardrails preview

claude-code-guardrails

GitHubrulebricks/claude-code-guardrails

Real-time guardrails for Claude Code tool calls.

ai-securityapi-securityconfiguration-auditing+3
786 months ago
CVE-2023-38831-KQL preview

CVE-2023-38831-KQL

GitHubpascalasch/cve-2023-38831-kql

KQL Hunting for WinRAR CVE-2023-38831

incident-responseinformation-gatheringioc-management+3
43 years ago
raspi-corelight preview

raspi-corelight

GitHubcorelight/raspi-corelight

Corelight@Home script

intrusion-detectionlog-analysisnetwork-security+1
462 years ago
cve-2021-27065 preview
Archived

cve-2021-27065

GitHubadamrpostjr/cve-2021-27065

Quick One Line Powershell scripts to detect for webshells, possible zips, and logs.

digital-forensicsforensicsincident-response+3
115 years ago
CVE-2022-29072 preview

CVE-2022-29072

GitHubsentinelblue/cve-2022-29072

** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the…

exploitationincident-responselog-analysis+3
84 years ago
CVE-2021-44228---detection-with-PowerShell preview

CVE-2021-44228---detection-with-PowerShell

GitHubintel-xeon/cve-2021-44228---detection-with-powershell

PowerShell-based scanner to detect Log4j CVE-2021-44228 vulnerability by searching directories and log files for exploitation indicators.

information-gatheringlog-analysisscripting-automation+2
4 years ago
CVE-2020-35488 preview

CVE-2020-35488

GitHubguillaumepetit84/cve-2020-35488

Proof-of-concept exploit for CVE-2020-35488, a denial-of-service vulnerability in NXLOG Community Edition via crafted syslog payloads causing…

exploitationlog-analysispenetration-testing+1
15 years ago
rootly-graphify-importer preview

rootly-graphify-importer

GitHubrootly-ai-labs/rootly-graphify-importer

Turn Rootly incidents, alerts, and teams into a queryable knowledge graph. Visualize service dependencies, on-call coverage gaps, and cross-incident…

incident-responseinformation-gatheringlog-analysis+1
444 months ago
cpanel-cve-41940-detector preview

cpanel-cve-41940-detector

GitHublimo57640-crypto/cpanel-cve-41940-detector

Read-only cPanel CVE-2026-41940 IOC detector for .sorry ransomware, Mr_Rot13 Filemanager backdoors, C2 callbacks, cron, SSH, and logs.

digital-forensicsforensicsincident-response+6
2 months ago