Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
34 results
SearchPhone preview

SearchPhone

GitHubhackunderway/searchphone

Phone number OSINT toolkit with multi-API search (Google, GitHub, Numverify, Reddit, DuckDuckGo), Hudson Rock infostealer intelligence, and automatic…

crawleremail-harvestinginformation-gathering+5
2.0k
1 month ago
quiver preview

quiver

GitHubstevemcilwain/quiver

Quiver is the tool to manage all of your tools for bug bounty hunting and penetration testing.

exploitationinformation-gatheringpenetration-testing+4
2166 years ago
usernamer preview
Archived

usernamer

GitHubjseidl/usernamer

Pentest Tool to generate usernames/logins based on supplied names.

educationinformation-gatheringpassword-attacks+2
397 years ago
evillimiter-ng preview

evillimiter-ng

GitHubkevincrrl/evillimiter-ng

EvilLimiter Next Generation: monitor, analyze and limit the bandwidth

information-gatheringnetwork-mappingnetwork-security+3
412 days ago
prosey preview

prosey

GitHubtacone/prosey

Download YouTube transcripts

crawlereducationinformation-gathering+3
7 days ago
reconftw preview

reconftw

GitHubsix2dez/reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

cloud-securitydns-analysisdns-subdomain-enumeration+11
8.2k19 days ago
ocr-recon preview

ocr-recon

GitHubstark0de/ocr-recon

This tool is useful to find a particular string in a list of URLs using tesseract's OCR (Optical Character Recognition) capabilities

information-gatheringosintreconnaissance+1
314 years ago
heartbleed-masstest preview

heartbleed-masstest

GitHubmusalbas/heartbleed-masstest

Multi-threaded tool for scanning many hosts for CVE-2014-0160.

information-gatheringnetwork-securitypenetration-testing+3
57111 years ago
ruby-nmap preview

ruby-nmap

GitHubpostmodern/ruby-nmap

A Ruby interface to nmap, the exploration tool and security / port scanner. Allows automating nmap and parsing nmap XML files.

information-gatheringnetwork-mappingport-scanning+3
2989 months ago
cli preview

cli

GitHubvulncheck-oss/cli

VulnCheck's official command line tool

api-securitydns-analysisinformation-gathering+8
16019 days ago
GreeDoS_V2 preview

GreeDoS_V2

GitHubmrechofi/greedos_v2

A Multi-vector DoS tool for Cybersecurity Red Teamers' .

exploitationnetwork-securitypayload-generation+4
178 months ago
SEcraper preview
Archived

SEcraper

GitHubzerobyte-id/secraper

Search engine scraper tool with BASH script.

crawlerinformation-gatheringosint+2
836 years ago
Lucifer preview

Lucifer

GitHubskiller9090/lucifer

A Powerful Penetration Tool For Automating Penetration Tasks Such As Local Privilege Escalation, Enumeration, Exfiltration and More... Use Or Build…

data-exfiltrationinformation-gatheringpenetration-testing+4
3775 years ago
Moxy preview

Moxy

GitHubmatank001/moxy

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

ai-securityapi-security-testingdynamic-analysis-sandboxing+9
1268 months ago
sonar preview

sonar

GitHubraskrebs/sonar

CLI tool for inspecting and managing services listening on localhost ports

devsecopsgeneral-purpose-utilitiesinformation-gathering+3
1.1k20 days ago
SteppingStones preview

SteppingStones

GitHubnccgroup/steppingstones

Web-based red team activity logging, reporting, and situational awareness tool with Cobalt Strike and BloodHound integration.

command-and-controlinformation-gatheringpenetration-testing+3
2435 days ago
afot preview

afot

GitHubharris21/afot

Automation Forensics Tool for Windows

digital-forensicsforensicshash-analysis+3
459 years ago
burpflow preview

burpflow

GitHubcappricio-securities/burpflow

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…

penetration-testingreconnaissancescripting-automation+2
126 months ago
Previous12Next