Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
22 results
reconftw preview

reconftw

GitHubsix2dez/reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

cloud-securitydns-analysisdns-subdomain-enumeration+11
8.2k
13 days ago
naabu preview

naabu

GitHubprojectdiscovery/naabu

A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface…

information-gatheringnetwork-mappingpenetration-testing+3
6.3k7h 46m ago
phantomrecon preview

phantomrecon

GitHubl33tdawg/phantomrecon

PhantomRecon is a CLI-based, modular, agent-driven red team automation tool designed to demonstrate autonomous offensive security workflows powered…

dns-analysisexploitationinformation-gathering+6
37 months ago
Argus preview

Argus

GitHubdivinelabio/argus

The Ultimate Information Gathering Toolkit

crawlerdns-subdomain-enumerationemail-harvesting+8
4.2k9 months ago
unwaf preview

unwaf

GitHubmmarting/unwaf

Go tool that passively discovers the real origin IP behind a WAF/CDN using multiple OSINT sources, then verifies candidates via HTML similarity, SSL…

dns-subdomain-enumerationinformation-gatheringnetwork-mapping+7
1927 months ago
NetworkSherlock preview

NetworkSherlock

GitHubhalildeniz/networksherlock

Multi-threaded port scanner with TCP/UDP support, banner grabbing, and Shodan integration for enhanced network reconnaissance and vulnerability…

information-gatheringnetwork-securityosint+2
1151 year ago
CVE-2023-27163-InternalProber preview

CVE-2023-27163-InternalProber

GitHubsamh4cks/cve-2023-27163-internalprober

A tool to perform port scanning using vulnerable Request-Baskets

exploitationpenetration-testingport-scanning+3
53 years ago
Alfred preview
Archived

Alfred

GitHubpwnfuzz/alfred

WIP - Revamped Alfred [2.0]

exploitationinformation-gatheringpenetration-testing+4
401 year ago
zmap preview

zmap

GitHubzmap/zmap

ZMap is a fast single packet network scanner designed for Internet-wide network surveys.

information-gatheringnetwork-mappingnetwork-security+3
6.4k1 month ago
Dracnmap preview

Dracnmap

GitHubscreetsec/dracnmap

Dracnmap is an open source program which is using to exploit the network and gathering information with nmap help. Nmap command comes with lots of…

information-gatheringnetwork-mappingpenetration-testing+2
1.4k8 years ago
fi6s preview

fi6s

GitHubsfan5/fi6s

IPv6 port scanner designed to be fast, aimed at Internet scanning and discovery

information-gatheringnetwork-mappingnetwork-security+2
1782 months ago
chomtesh preview

chomtesh

GitHubmr-rizwan-syed/chomtesh

CHOMTE.SH is a powerful shell script designed to automate reconnaissance tasks during penetration testing. It utilizes various Go-based tools to…

dns-subdomain-enumerationinformation-gatheringosint+7
1367 months ago
nullscan preview

nullscan

GitHubnoptrix/nullscan

A modular framework designed to chain and automate security tests.

exploitationinformation-gatheringnetwork-security+5
445 years ago
CVE-2023-4596-OpenSSH-Multi-Checker preview

CVE-2023-4596-OpenSSH-Multi-Checker

GitHubx-projetion/cve-2023-4596-openssh-multi-checker

CVE-2024-6387-checker is a tool or script designed to detect the security vulnerability known as CVE-2024-6387 OpenSSH. CVE-2024-6387 OpenSSH is an…

information-gatheringnetwork-securitypenetration-testing+3
12 years ago
CVE-2024-6387 preview

CVE-2024-6387

GitHubr4tw1z/cve-2024-6387

This script, created by R4Tw1z, is designed to scan IP addresses to check if they are running a potentially vulnerable version of OpenSSH. The tool…

exploitationinformation-gatheringnetwork-security+3
12 years ago
sx preview

sx

GitHubv-byte-cpu/sx

:vulcan_salute: Fast, modern, easy-to-use network scanner

information-gatheringnetwork-mappingpenetration-testing+2
1.6k1 month ago
xmap preview

xmap

GitHubidealeer/xmap

High-performance network scanner for Internet-wide IPv4/IPv6 research, featuring multi-probe modules (ICMP, TCP SYN, UDP, DNS) and sub-5-minute…

dns-analysisinformation-gatheringnetwork-mapping+3
4926 months ago
SharpSploitConsole preview

SharpSploitConsole

GitHubanthemtotheego/sharpsploitconsole

C# console application for post-exploitation and red team operations, integrating SharpSploit to execute Mimikatz commands, perform Kerberoasting,…

command-and-controlexploitationinformation-gathering+9
1814 years ago
Previous12Next