Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
335 results
vault preview

vault

GitHubhashicorp/vault

A tool for secrets management, encryption as a service, and privileged access management

authentication-authorizationcloud-securitydevsecops+3
36.1k
2h 48m ago
checkov preview

checkov

GitHubbridgecrewio/checkov

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

cloud-securitycode-analysiscontainer-security+6
9.0k7h 2m ago
nono preview

nono

GitHubnolabs-ai/nono

safe execution paths for agents - zero trust, zero setup, zero latency.

ai-securitycloud-securitycode-analysis+8
3.7k7h 43m ago
trufflehog preview

trufflehog

GitHubtrufflesecurity/trufflehog

Find, verify, and analyze leaked credentials

cloud-securitycode-analysisdevsecops+6
27.5k8h 27m ago
agent-bom preview

agent-bom

GitHubmsaad00/agent-bom

Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings,…

ai-securitycloud-securitycontainer-security+6
309h 23m ago
MCPwner preview

MCPwner

GitHubpigyon/mcpwner

Model Context Protocol server for autonomous vulnerability discovery

devsecopsdynamic-analysis-sandboxingfuzzing+6
5410h 23m ago
atproto preview

atproto

GitHubblacksky-algorithms/atproto

Fork of the AT Protocol reference implementation with performance-optimized AppView, Rust-based firehose indexer, Redis caching, and community…

api-securityauthenticationcloud-infrastructure-security+6
9411h 26m ago
prismor preview

prismor

GitHubprismorsec/prismor

Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt…

ai-securitycontainer-securitydefensive-tools+5
32411h 31m ago
renovate-operator preview

renovate-operator

GitHubmogenius/renovate-operator

Operator to streamline renovate executions in Kubernetes

cloud-securityconfiguration-auditingcontainer-security+4
55012h 45m ago
muad-dib preview

muad-dib

GitHubdnszlsk/muad-dib

Real-time npm/PyPI supply-chain threat detection. Behavioral chain analysis, AST scanning, IOC feeds, and compound scoring engine.

code-analysisdevsecopsdynamic-analysis-sandboxing+8
1513h 2m ago
semgrep preview

semgrep

GitHubsemgrep/semgrep

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

code-analysisdevsecopseducation+4
16.3k13h 8m ago
pip-audit preview

pip-audit

GitHubpypa/pip-audit

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them

devsecopssecret-detectionsupply-chain-security+1
1.3k13h 59m ago
cli preview

cli

GitHubsnyk/cli

Snyk CLI scans and monitors your projects for security vulnerabilities.

cloud-infrastructure-securitycode-analysiscontainer-security+4
5.6k14h 2m ago
pii-shield preview

pii-shield

GitHubpii-shield/pii-shield

Zero-code K8s sidecar for log sanitization. Detects secrets via Entropy Analysis, preserves JSON integrity, and redacts PII deterministically. 🛡️

cloud-securitycontainer-securitydata-exfiltration+4
16314h 8m ago
cynative preview

cynative

GitHubcynative/cynative

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

ai-securitycloud-securitycontainer-security+7
19115h 18m ago
ggshield preview

ggshield

GitHubgitguardian/ggshield

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

code-analysisdevsecopssecret-detection+1
2.0k15h 32m ago
kontext-cli preview

kontext-cli

GitHubkontext-security/kontext-cli

Runtime Security for tool-using AI agents, with local policies, pre-action enforcement, and forensic audit trails.

ai-securityauthentication-authorizationcloud-security+3
21016h 5m ago
sec-af preview

sec-af

GitHubagent-field/sec-af

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

ai-securitycode-analysisdevsecops+7
19417h 22m ago
Previous12…19Next