Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
129 results
CVE-2023-4596-OpenSSH-Multi-Checker preview

CVE-2023-4596-OpenSSH-Multi-Checker

GitHubx-projetion/cve-2023-4596-openssh-multi-checker

CVE-2024-6387-checker is a tool or script designed to detect the security vulnerability known as CVE-2024-6387 OpenSSH. CVE-2024-6387 OpenSSH is an…

information-gatheringnetwork-securitypenetration-testing+3
1
2 years ago
PortDog preview

PortDog

GitHubpuniaze/portdog
anomaly-detectiondefensive-toolsintrusion-detection+3
13410 years ago
CVE-2024-6387-Checker preview

CVE-2024-6387-Checker

GitHubrickgeex/cve-2024-6387-checker

CVE-2024-6387-Check is a streamlined and efficient tool created to detect servers operating on vulnerable versions of OpenSSH.

information-gatheringnetwork-securitypenetration-testing+3
32 years ago
AutoPWN-Suite preview

AutoPWN-Suite

GitHubgamehunterkaan/autopwn-suite

AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.

exploitationinformation-gatheringnetwork-security+5
1.1k1 month ago
RTA preview

RTA

GitHubflipkart-incubator/rta

Red team Arsenal - An intelligent scanner to detect security vulnerabilities in company's layer 7 assets.

dns-subdomain-enumerationinformation-gatheringnetwork-mapping+6
4153 years ago
siemframework preview

siemframework

GitHubelevenpaths/siemframework
exploit-frameworksinformation-gatheringnetwork-mapping+7
425 years ago
zmap preview

zmap

GitHubzmap/zmap

ZMap is a fast single packet network scanner designed for Internet-wide network surveys.

information-gatheringnetwork-mappingnetwork-security+2
6.4k27 days ago
reconftw preview

reconftw

GitHubsix2dez/reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

cloud-securitydns-analysisinformation-gathering+7
8.0k1 month ago
rengine preview

rengine

GitHubyogeshojha/rengine

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines,…

crawlerdns-subdomain-enumerationinformation-gathering+9
8.8k9 months ago
Striker preview

Striker

GitHubs0md3v/striker

Striker is an offensive information and vulnerability scanner.

information-gatheringport-scanningreconnaissance+3
2.3k7 years ago
frogy2.0 preview

frogy2.0

GitHubiamthefrogy/frogy2.0

Orbis is an full spectrum automated external attack surface intelligent toolkit.

cloud-securitydns-analysisemail-security+9
40010 days ago
freshonions-torscraper preview

freshonions-torscraper

GitHubdirtyfilthy/freshonions-torscraper

Fresh Onions is an open source TOR spider / hidden service onion crawler hosted at zlal32teyptf4tvi.onion

crawlerinformation-gatheringnetwork-mapping+4
5396 years ago
infoooze preview

infoooze

GitHubdevxprite/infoooze

A OSINT tool which helps you to quickly find information effectively. All you need is to input and it will take take care of rest.

dns-analysisemail-harvestinginformation-gathering+5
1.1k2 years ago
Vanquish preview

Vanquish

GitHubfrizb/vanquish

Vanquish is Kali Linux based Enumeration Orchestrator. Vanquish leverages the opensource enumeration tools on Kali to perform multiple active…

dns-subdomain-enumerationexploitationinformation-gathering+8
5168 years ago
magicRecon preview

magicRecon

GitHubrobotshell/magicrecon

MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this…

dns-analysisinformation-gatheringosint+7
1.1k2 years ago
omnisci3nt preview

omnisci3nt

GitHubspyboy-productions/omnisci3nt

Omnisci3nt is an open-source web reconnaissance and intelligence tool for extracting deep technical insights from domains, including subdomains, SSL…

dns-analysisinformation-gatheringosint+6
3682 months ago
Dracnmap preview

Dracnmap

GitHubscreetsec/dracnmap

Dracnmap is an open source program which is using to exploit the network and gathering information with nmap help. Nmap command comes with lots of…

information-gatheringnetwork-mappingpenetration-testing+2
1.4k8 years ago
Rock-ON preview

Rock-ON

GitHubsilverpoision/rock-on

Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.

crawlerdns-subdomain-enumerationinformation-gathering+5
2906 years ago
Previous12…8Next