Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
215 results
Nim-RunPE preview

Nim-RunPE

GitHubs3cur3th1ssh1t/nim-runpe

A Nim implementation of reflective PE-Loading from memory

binary-exploitationexploitationmalware-analysis+3
296
1 year ago
DGA preview

DGA

GitHub360netlab/dga

Suspicious DGA from PDNS and Sandbox.

dns-analysisinformation-gatheringioc-management+3
1894 years ago
jsunpack-n preview

jsunpack-n

GitHuburule99/jsunpack-n

Automatically exported from code.google.com/p/jsunpack-n

dynamic-analysis-sandboxingmalware-analysisweb-security
16911 years ago
sigma-rules preview

sigma-rules

GitHubjoesecurity/sigma-rules

Sigma rules from Joe Security

curated-resourcesdefensive-toolsintrusion-detection+3
2411 year ago
arya preview

arya

GitHubclaroty/arya

Generates pseudo-malicious files from YARA rules to trigger AV/EDR detection, enabling malware research, rule QA, and network sensor pressure testing…

educationlabs-practicemalware-analysis+2
2603 years ago
Remote-Access-Trojan-Database preview

Remote-Access-Trojan-Database

GitHubrainkin1993/remote-access-trojan-database

A database of RAT collected from Internet

curated-resourceseducationforensics+3
1605 years ago
DetectWindowsCopyOnWriteForAPI preview

DetectWindowsCopyOnWriteForAPI

GitHubnccgroup/detectwindowscopyonwriteforapi

Enumerate various traits from Windows processes as an aid to threat hunting

anomaly-detectiondefensive-toolsforensics+3
2004 years ago
Vba2Graph preview

Vba2Graph

GitHubmalwarecantfly/vba2graph

Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.

code-analysismalware-analysisreverse-engineering+1
2835 years ago
tools preview

tools

GitHubthreatlabz/tools

Ransomware decryption and script deobfuscation utilities from a threat intelligence team, designed for incident responders and malware analysts.

data-recoverydigital-forensicsencryption-decryption-tools+4
1042 months ago
maldrolyzer preview

maldrolyzer

GitHubmaldroid/maldrolyzer

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

android-securitycommand-and-controlinformation-gathering+3
11211 years ago
Orion preview

Orion

GitHubstrangerealintel/orion

A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...

curated-resourcesdefensive-toolsmalware-analysis+1
1412 years ago
public-research preview

public-research

GitHubdeepfield/public-research

DDoS botnet research and indicators of compromise from Nokia Deepfield ERT

ioc-managementmalware-analysisnetwork-security+3
6322 days ago
iocs preview

iocs

GitHubthreatlabz/iocs

Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…

curated-resourcesincident-responseioc-management+4
8110 days ago
2024 preview

2024

GitHub100daysofyara/2024

Rules shared by the community from 100 Days of YARA 2024

curated-resourceseducationlearning-paths-courses+2
901 year ago
2023 preview

2023

GitHub100daysofyara/2023

Rules Shared by the Community from 100 Days of YARA 2023

curated-resourceseducationmalware-analysis
783 years ago
ring3-kit preview

ring3-kit

GitHubwatchdogsecurity/ring3-kit

Hides Process From Task Manager Using NT API Hooking (NtQuerySystemInformation)

defensive-toolsids-ips-evasionmalware-analysis+3
843 years ago
hfinger preview

hfinger

GitHubcert-polska/hfinger

Generates unique fingerprints of malware HTTP requests from pcap files using Tshark, enabling identification and grouping of malware families through…

information-gatheringmalware-analysisthreat-intelligence
1473 years ago
Neton preview

Neton

GitHubaetsu/neton

Agent-based tool that collects OS, hardware, file, and hook data from internet-connected sandboxes via HTTPS exfiltration, aiding Red Team artifact…

educationinformation-gatheringmalware-analysis+1
1003 years ago
Previous1234…12Next