Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
Leaked-Credentials preview

Leaked-Credentials

GitHubh4x0r-dz/leaked-credentials

how to look for Leaked Credentials !

educationinformation-gatheringpenetration-testing+2
1.1k
2 years ago
infisical preview

infisical

GitHubinfisical/infisical

Infisical is the open-source platform for secrets, certificates, and privileged access management.

authentication-authorizationcloud-securityconfiguration-auditing+4
29.0k16h 46m ago
wrongsecrets-binaries preview

wrongsecrets-binaries

GitHubowasp/wrongsecrets-binaries

Source code for the Binaries of OWASP WrongSecrets

binary-analysiscode-analysisctf+6
126 days ago
Aurea preview

Aurea

GitLabroxanne_ardary/aurea

Aurea is an open-source, AI-powered platform that secures infrastructure-as-code (IaC) across Terraform, Kubernetes, Docker, and Ansible. It…

ai-securitycloud-infrastructure-securitycontainer-security+5
1 month ago
LLMReaper preview

LLMReaper

GitHubthewhiteh4t/llmreaper

Passive LLM Conversation Capture & Sensitive Data Exposure Research

educationinformation-gatheringosint+3
173 months ago
mcp-shark preview

mcp-shark

GitHubmcp-shark/mcp-shark

Wireshark-like forensic analysis for Model Context Protocol communications Capture, inspect, and investigate all HTTP requests and responses between…

ai-securityapi-securityconfiguration-auditing+7
1754 months ago
Pribado preview

Pribado

GitHub0xrlawrence/pribado

Zero-knowledge privacy platform for confidential API key management, encrypted vault, and secure chat. Built on Oasis Sapphire TEEs

api-securityauthentication-authorizationcloud-security+5
58 months ago
studio preview

studio

GitHubshipsecai/studio

Workflow automation for Security Teams

cloud-securitydevsecopseducation+7
3766 months ago
miasma-toolkit preview

miasma-toolkit

GitHubjchable/miasma-toolkit

Detection & remediation toolkit for the Miasma / Shai-Hulud worm and CVE-2026-35603 (AI-agent/IDE config injection)

devsecopseducationforensics+7
2 months ago
CTT-HEARTBLEED-Temporal-Resonance-Memory-Leak-Exploit-Heartbleed-CVE-2014-0160 preview

CTT-HEARTBLEED-Temporal-Resonance-Memory-Leak-Exploit-Heartbleed-CVE-2014-0160

GitHubsimoesctt/ctt-heartbleed-temporal-resonance-memory-leak-exploit-heartbleed-cve-2014-0160

Heartbleed (CVE-2014-0160) was devastating because it leaked adjacent memory. CTT-Heartbleed goes further—it uses 33-layer temporal resonance to map,…

educationexploitationinformation-gathering+6
7 months ago
duo-agentflow-auditor preview

duo-agentflow-auditor

GitLabcentisgood/duo-agentflow-auditor

AI Code Security — four agents that catch what SAST misses in AI-generated code. Built on GitLab Duo Agent Platform.

ai-securitycode-analysisdevsecops+8
5 months ago
envsec preview

envsec

GitHubdavidnussio/envsec

Secure CLI tool for managing environment secrets using native OS credential stores (macOS Keychain, Linux Secret Service, Windows Credential Manager)

authentication-authorizationcloud-securitydevsecops+3
154 months ago
CVE-2024-0368 preview

CVE-2024-0368

GitHubrandomrobbiebf/cve-2024-0368

Hustle Plugin <= 7.8.3 contains hardcoded HubSpot API credentials in inc/providers/hubspot/hustle-hubspot-api.php

educationexploitationinformation-gathering+3
17 months ago
semgrep preview

semgrep

GitHubsemgrep/semgrep

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

api-securityapi-security-testingcode-analysis+9
16.4k2 days ago
anticipator preview

anticipator

GitHubcalusdotai/anticipator

Anticipator is an open-source threat detection platform for multi-agent AI systems.

ai-securityanomaly-detectioncode-analysis+6
6 months ago
kontext-cli preview

kontext-cli

GitHubkontext-security/kontext-cli

Secure agents in seconds with permissions enforced at runtime.

ai-securityauthentication-authorizationcloud-security+3
2112 days ago
kubebot preview

kubebot

GitHubanshumanbh/kubebot

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

cloud-securitydevsecopsinformation-gathering+5
1641 year ago
aura preview

aura

GitHubsourcecode-ai/aura

Python source code auditing and static analysis on a large scale

code-analysiseducationmalware-analysis+4
4932 years ago
Previous12Next