Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
15 results
Awesome-Hacking-Resources preview

Awesome-Hacking-Resources

GitHubvitalysim/awesome-hacking-resources

A collection of hacking / penetration testing resources to make you better!

ai-securityctfcurated-resources+9
17.4k
3 months ago
mastg preview

mastg

GitHubowasp/mastg

Comprehensive OWASP guide for mobile app security testing, reverse engineering, and verifying MASVS/MASWE weaknesses through static, dynamic, and…

android-securitycryptographydynamic-analysis-sandboxing+9
13.1k22 days ago
MASTG-Hacking-Playground preview

MASTG-Hacking-Playground

GitHubowasp/mastg-hacking-playground

Collection of intentionally insecure iOS and Android apps for learning mobile security testing, reverse engineering, and vulnerability analysis,…

android-securityeducationios-security+5
6893 years ago
MARA_Framework preview

MARA_Framework

GitHubxtiankisutsa/mara_framework

Mobile application reverse engineering and analysis framework integrating tools for APK decompilation, static analysis, vulnerability scanning, and…

android-securitybinary-analysiscode-analysis+6
6707 years ago
igoat preview

igoat

GitHubowasp/igoat

Interactive iOS app security training tool with hands-on lessons covering common vulnerabilities like injection, broken cryptography, data leaks, and…

authenticationcryptographydata-exfiltration+9
4613 years ago
iGoat-Swift preview

iGoat-Swift

GitHubowasp/igoat-swift

Intentionally vulnerable iOS Swift application for learning mobile app security, exploitation, and defense techniques through hands-on exercises…

ctfeducationios-security+6
4518 months ago
NtTrace preview

NtTrace

GitHubrogerorr/nttrace

An strace-like program for the Windows 'native' API

api-security-testingdebuggersdynamic-code-analysis+2
3881 month ago
Thick-Client-Pentest-Checklist preview

Thick-Client-Pentest-Checklist

GitHubhari-prasaanth/thick-client-pentest-checklist

Checklist for pentesting thick clients with 80+ OWASP-aligned test cases across information gathering, GUI, file, registry, network, assembly,…

binary-analysiscurated-resourceseducation+5
2043 years ago
vuln-bank-mobile preview

vuln-bank-mobile

GitHubcommando-x/vuln-bank-mobile

Intentionally vulnerable Android banking app for practicing mobile security testing. Covers OWASP Mobile Top 10 with hardcoded credentials, insecure…

android-securityauthenticationcryptography+8
1011 year ago
maps_scanner preview

maps_scanner

GitHubhackinglz/maps_scanner

MAPS cloud scanner and response parser for Microsoft Defender research.

api-security-testingdynamic-analysis-sandboxingfuzzing+6
946 months ago
Apkx-Hunter preview

Apkx-Hunter

GitHubsyscallx-18113/apkx-hunter

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

android-securityinformation-gatheringmachine-learning+7
854 days ago
http-breakout-proxy preview

http-breakout-proxy

GitHubjbsouthe/http-breakout-proxy

HTTP Proxy Analysis for reverse engineering protocol communication

api-security-testinginformation-gatheringlog-analysis+5
638 months ago
mas-crackmes preview

mas-crackmes

GitHubowasp/mas-crackmes

Collection of mobile reverse engineering challenges (UnCrackable Apps) from the OWASP MAS project for learning and practicing mobile app security…

android-securitybinary-analysisctf+6
353 years ago
apiscope preview

apiscope

GitHubkaisonox/apiscope

An API hooking framework for intercepting and monitoring Windows applications

api-security-testingbinary-analysisdebuggers+4
192 months ago
SCRAPPER preview

SCRAPPER

GitHubbunelysiareact/scrapper

Local session observer that captures real browser cookies, tokens, and network traffic for use in automation tools. Bypasses bot detection by…

api-security-testingcrawlerdebuggers+6
145 months ago