Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
405 results
Above preview

Above

GitHubcaster0x00/above

Passive network security sniffer that analyzes 28 protocols (ARP, STP, OSPF, VLAN, SCADA) to detect vulnerabilities in network equipment without…

network-securitypacket-sniffing-analysispenetration-testing+2
868
7 months ago
Dome preview

Dome

GitHubv4d1/dome

Fast Python-based subdomain enumeration tool combining passive OSINT and active brute-force scanning with DNS wildcard detection, port scanning, and…

dns-analysisosintpenetration-testing+3
5452 years ago
scavenger preview

scavenger

GitHubspiderlabs/scavenger

scavenger : is a multi-threaded post-exploitation scanning tool for scavenging systems, finding most frequently used files and folders as well as…

data-exfiltrationinformation-gatheringpenetration-testing+2
3427 years ago
privacy-parser preview

privacy-parser

GitHubchiefautism/privacy-parser

Reverse of OpenAI Privacy Filter: same 1.5B model, returns PII as structured spans instead of masking.

data-exfiltrationinformation-gatheringmachine-learning+5
4023 months ago
MAAD-AF preview

MAAD-AF

GitHubvectra-ai-research/maad-af

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

adversarial-attackcloud-securitydata-exfiltration+6
4317 months ago
UPnP-Pentest-Toolkit preview

UPnP-Pentest-Toolkit

GitHubnccgroup/upnp-pentest-toolkit

UPnP Pentest Toolkit for Windows

exploitationhardware-iot-securitynetwork-security+5
26111 years ago
nox-framework preview

nox-framework

GitHubnox-project/nox-framework

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

crawlerdata-exfiltrationdigital-forensics+8
3213 months ago
lazyrecon preview

lazyrecon

GitHubstorenth/lazyrecon

Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.

fuzzingosintpenetration-testing+4
1495 months ago
SnafflerParser preview

SnafflerParser

GitHubzh54321/snafflerparser

Parses Snaffler output file and generate beautified outputs.

data-exfiltrationinformation-gatheringlog-analysis+5
1492 months ago
wxpath preview

wxpath

GitHubrodricios/wxpath

wxpath - declarative web crawling with XPath; a Web Query Language (WQL)

crawlerdata-exfiltrationinformation-gathering+3
1111 month ago
linkedin-extension-fingerprinting preview

linkedin-extension-fingerprinting

GitHubmdp/linkedin-extension-fingerprinting
data-exfiltrationfingerprint-spoofinginformation-gathering+4
2156 months ago
poet preview

poet

GitHubofflinemark/poet

[unmaintained] Post-exploitation tool

command-and-controldata-exfiltrationpayload-generation+4
18110 years ago
pegasus-neo preview

pegasus-neo

GitHubsobri3195/pegasus-neo

PEGASUS-NEO is a comprehensive penetration testing framework designed for security professionals and ethical hackers. It combines multiple security…

exploitationforensicsosint+9
1235 months ago
PowerSploit preview

PowerSploit

GitHubzerodaylab/powersploit

PowerSploit - A PowerShell Post-Exploitation Framework

command-and-controldata-exfiltrationexploit-frameworks+7
2394 years ago
Teamsniper preview

Teamsniper

GitHubxret2pwn/teamsniper

Teamsniper is a tool for fetching keywords in a Microsoft Teams such as (passwords, emails, database, etc.).

authenticationdata-exfiltrationinformation-gathering+2
1983 years ago
peeko preview

peeko

GitHubb3rito/peeko

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

command-and-controldata-exfiltrationinformation-gathering+7
2331 year ago
smbcrawler preview

smbcrawler

GitHubsyss-research/smbcrawler

smbcrawler is no-nonsense tool that takes credentials and a list of hosts and 'crawls' (or 'spiders') through those shares

data-exfiltrationinformation-gatheringnetwork-security+3
1899 months ago
sccm-http-looter preview

sccm-http-looter

GitHubbadsectorlabs/sccm-http-looter

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)

data-exfiltrationinformation-gatheringmisconfiguration+3
2161 year ago
Previous1…192021…23Next