Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
28 results
ioctlance preview

ioctlance

GitHubzeze-zeze/ioctlance

A tool that is used to hunt vulnerabilities in x64 WDM drivers

binary-analysisdynamic-analysis-sandboxingexploit-frameworks+4
472
2 months ago
MaliciousBrowserExtensions preview

MaliciousBrowserExtensions

GitHubgherardofiori/maliciousbrowserextensions

This Repository is created after my own research into malicious browser extensions, by brining the work of many others and news articles into one…

curated-resourcesdynamic-analysis-sandboxingeducation+4
291 month ago
android_application_analyzer preview

android_application_analyzer

GitHubnotsosecure/android_application_analyzer

The tool is used to analyze the content of the android application in local storage.

android-securitydynamic-analysis-sandboxingmobile-app-pentesting+2
1752 months ago
mhf preview

mhf

GitHubstuxctf/mhf

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

android-securityinformation-gatheringios-security+5
288 months ago
file-unpumper preview

file-unpumper

GitHub0x11dfe/file-unpumper

Tool that can be used to trim useless things from a PE file such as the things a file pumper would add.

binary-analysismalware-analysisreverse-engineering+1
301 year ago
Fern Pattern Scanner preview

Fern Pattern Scanner

GitLabgitlab-da/tutorials/security-and-governance/custom-scanner-integration/fern-pattern-scanner

Scans selected files for patterns stated in rules. This is used in order to find secrets you may have accidentally written to a file. This scanner is…

code-analysisdevsecopseducation+3
52 years ago
RATDecoders preview

RATDecoders

GitHubkevthehermit/ratdecoders

Python Decoders for Common Remote Access Trojans

dynamic-analysis-sandboxingforensicsincident-response+6
1.1k4 years ago
XLMMacroDeobfuscator preview

XLMMacroDeobfuscator

GitHubdissectmalware/xlmmacrodeobfuscator

Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)

dynamic-analysis-sandboxingmalware-analysisreverse-engineering+1
5874 years ago
QLinspector preview

QLinspector

GitHubsynacktiv/qlinspector

Finding Java/C# gadget chains with CodeQL

code-analysisexploitationpayload-development+2
1881 month ago
platform_external_libvpx_v1.8.0_CVE-2023-5217 preview

platform_external_libvpx_v1.8.0_CVE-2023-5217

GitHubtrinadh465/platform_external_libvpx_v1.8.0_cve-2023-5217
binary-analysiscode-analysisdynamic-analysis-sandboxing+3
2 years ago
VulFi preview

VulFi

GitHubaccenture/vulfi

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.

binary-analysisreverse-engineeringstatic-analysis+1
6701 year ago
YARA_Rules preview

YARA_Rules

GitHubmalgamy/yara_rules
curated-resourcesdefensive-toolsincident-response+3
653 years ago
canon-mf644 preview

canon-mf644

GitHubsynacktiv/canon-mf644
binary-exploitationembedded-systems-securityexploitation+6
293 years ago
fernflower preview

fernflower

GitHubjetbrains/fernflower

Decompiler from Java bytecode to Java, used in IntelliJ IDEA.

binary-analysisreverse-engineeringstatic-analysis
4.4k10 days ago
bidi_char_detector preview
Archived

bidi_char_detector

GitHubmaweil/bidi_char_detector

Checks your files for existence of Unicode BIDI characters which can be misused for supply chain attacks. See CVE-2021-42574

code-analysismisconfigurationsecret-detection+3
63 years ago
CVE-2025-70330 preview

CVE-2025-70330

GitHubthemalwareguardian/cve-2025-70330

Easy Grade Pro 4.1 file parsing bug used as an educational example to show how beginners can start vulnerability research through reverse engineering.

binary-analysisbinary-exploitationcode-analysis+7
25 months ago
springhound preview

springhound

GitHubmebibite/springhound

Created after the disclosure of CVE-2022-22965 and CVE-2022-22963. Bash script that detects Spring Framework occurrences in your projects and…

code-analysismisconfigurationstatic-analysis+2
4 years ago
CallObfuscator preview

CallObfuscator

GitHubd35ha/callobfuscator

Obfuscate specific windows apis with different apis

binary-analysisdefensive-toolsdynamic-analysis-sandboxing+4
1.0k5 years ago
Previous12Next