Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
45 results
hakrawler preview

hakrawler

GitHubhakluke/hakrawler

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

crawlerinformation-gatheringpenetration-testing+2
5.1k
15 days ago
tbhm preview

tbhm

GitHubjhaddix/tbhm

The Bug Hunters Methodology

curated-resourceseducationlearning-paths-courses+4
4.4k3 years ago
BloodHound preview

BloodHound

GitHubspecterops/bloodhound

Six Degrees of Domain Admin

defensive-toolsidentity-access-managementinformation-gathering+4
3.3k10h 56m ago
nfcgate preview

nfcgate

GitHubnfcgate/nfcgate

An NFC research toolkit application for Android

android-securityeducationexploitation+5
2.3k1 month ago
google-dorks-bug-bounty preview

google-dorks-bug-bounty

GitHubtaksec/google-dorks-bug-bounty

A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting

curated-resourcesinformation-gatheringosint+2
1.9k10 months ago
NucleiFuzzer preview

NucleiFuzzer

GitHub0xkayala/nucleifuzzer

Automated web vulnerability scanner combining URL discovery tools (ParamSpider, waybackurls, gauplus, hakrawler, katana) with Nuclei fuzzing…

fuzzinginformation-gatheringpenetration-testing+3
1.9k4 months ago
AD_Miner preview

AD_Miner

GitHubad-security/ad_miner

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

configuration-auditingeducationinformation-gathering+6
1.6k5 months ago
skipfish preview

skipfish

GitHubspinkham/skipfish

Web application security scanner created by lcamtuf for google - Unofficial Mirror

crawlerdynamic-analysis-sandboxingfuzzing+7
8753 years ago
waf-checker preview

waf-checker

GitHubpapamica/waf-checker

Tests your WAF with +160 payloads

api-security-testingdns-analysisids-ips-evasion+8
5535 months ago
Invoke-ADEnum preview

Invoke-ADEnum

GitHubleo4j/invoke-adenum

Automated Active Directory auditing and enumeration tool that generates detailed HTML audit reports with CSV/XLSX export, designed for security…

configuration-auditinginformation-gatheringpenetration-testing+2
5392 months ago
hackbox preview

hackbox

GitHubsamhaxr/hackbox

HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

information-gatheringmisconfigurationpenetration-testing+5
4183 years ago
ReconNote preview

ReconNote

GitHub0xdekster/reconnote

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…

information-gatheringpenetration-testingreconnaissance+3
4115 years ago
See-SURF preview

See-SURF

GitHubin3tinct/see-surf

Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.

ai-securityreconnaissancevulnerability-scanners+2
3646 months ago
url-tracker preview

url-tracker

GitHubal-sultani/url-tracker

Change monitoring app that checks the content of web pages in different periods.

information-gatheringreconnaissanceweb-security
3611 year ago
Optiva-Framework preview

Optiva-Framework

GitHubjoker25000/optiva-framework

Optiva-Framework 🔎 Web Application Scanner🕵️

encryption-decryption-toolshash-analysisinformation-gathering+6
3146 years ago
ShareHound preview

ShareHound

GitHubp0dalirius/sharehound

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

configuration-auditinginformation-gatheringnetwork-mapping+5
3113 months ago
pentest-muse-cli preview

pentest-muse-cli

GitHubabstractengine/pentest-muse-cli
ai-securitycode-analysiseducation+4
2362 years ago
CiscoRV320Dump preview

CiscoRV320Dump

GitHub0x27/ciscorv320dump

CVE-2019-1652 /CVE-2019-1653 Exploits For Dumping Cisco RV320 Configurations & Debugging Data AND Remote Root Exploit!

configuration-auditingexploitationpassword-attacks+3
2287 years ago
Previous123Next