Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
243 results
aura preview

aura

GitHubsourcecode-ai/aura

Python source code auditing and static analysis on a large scale

code-analysiseducationmalware-analysis+4
4933 years ago
static-analysis preview

static-analysis

GitHubanalysis-tools-dev/static-analysis

Curated directory of static analysis (SAST) tools and linters for programming languages, configs, build tools, and CI, focused on improving code…

code-analysiscurated-resourcesdevsecops+5
14.8k12 days ago
xwiki__xwiki-commons_CVE-2023-31126_14-10-3 preview

xwiki__xwiki-commons_CVE-2023-31126_14-10-3

GitHubshoucheng3/xwiki__xwiki-commons_cve-2023-31126_14-10-3

Java library providing technical commons for XWiki projects, with a focus on vulnerability analysis and static code inspection for security testing.

code-analysisgeneral-purpose-utilitiesstatic-analysis+1
11 months ago
VulTriage preview

VulTriage

GitHubvinsontang1/vultriage

The code of VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection

ai-securitycode-analysiseducation+4
104 months ago
AMDH preview

AMDH

GitHuba-yatta/amdh

Android Mobile Device Hardening

android-securityconfiguration-auditingforensics+4
2253 years ago
codehaus-plexus__plexus-utils_CVE-2017-1000487_3-0-15 preview

codehaus-plexus__plexus-utils_CVE-2017-1000487_3-0-15

GitHubshoucheng3/codehaus-plexus__plexus-utils_cve-2017-1000487_3-0-15

Java utility library with a focus on a specific CVE vulnerability, providing code analysis and static analysis capabilities for security assessment.

code-analysisgeneral-purpose-utilitiesstatic-analysis+1
1 year ago
MATE preview

MATE

GitHubgaloisinc/mate

Interactive program analysis suite using Code Property Graphs to hunt for bugs in C and C++ code, unifying application-specific and low-level…

binary-analysiscode-analysisstatic-analysis+1
1993 years ago
x-stream__xstream_CVE-2013-7285_1-4-6 preview

x-stream__xstream_CVE-2013-7285_1-4-6

GitHubshoucheng3/x-stream__xstream_cve-2013-7285_1-4-6

Java XML serialization library with a focus on the CVE-2013-7285 deserialization vulnerability, providing source code, binaries, and documentation…

code-analysisexploitationpenetration-testing+3
1 year ago
dawnscanner preview

dawnscanner

GitHubthesp0nge/dawnscanner

Dawn is a static analysis security scanner for ruby written web applications. It supports Sinatra, Padrino and Ruby on Rails frameworks.

code-analysisstatic-analysisvulnerability-scanners+1
7492 years ago
external_expat-2.1.0_CVE-2022-43680 preview

external_expat-2.1.0_CVE-2022-43680

GitHubtrinadh465/external_expat-2.1.0_cve-2022-43680

Source code repository for Expat 2.1.0, a stream-oriented XML parser library, with focus on analyzing and addressing CVE-2022-43680.

binary-analysiscode-analysisexploitation+3
3 years ago
FreeMOCA preview

FreeMOCA

GitHubiqsec-lab/freemoca

Memory-free continual learning framework for malware classification using mode connectivity-based interpolation. Supports class-incremental and…

android-securityeducationmachine-learning+3
8 days ago
SEW preview

SEW

GitHubsuhanmen/sew

Embeds and detects keyed, style-based watermarks in LLM-generated Python, Java, and C++ code via CST rewriting, preserving functional correctness and…

ai-securitycode-analysiscryptography+2
13 days ago
sec-af preview

sec-af

GitHubagent-field/sec-af

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

ai-securitycode-analysisdevsecops+7
1991 month ago
replica preview

replica

GitHubreb311ion/replica

Ghidra plugin that enhances reverse engineering by fixing missed disassembly, detecting functions, labeling crypto constants, and renaming functions…

binary-analysiscryptographymalware-analysis+2
3146 years ago
covirt preview

covirt

GitHubdmaivel/covirt

An x86-64 code virtualizer for VM based obfuscation

binary-analysiscode-analysisdynamic-analysis-sandboxing+3
2691 year ago
disrobe preview

disrobe

GitHub1-3-7/disrobe

Rust CLI suite that statically decompiles, deobfuscates, and unpacks native code, bytecode, scripts, firmware, and app packages across 15+ ecosystems…

android-securitybinary-analysisfirmware-analysis+4
1411 day ago
Deserializer preview

Deserializer

GitHubjoshuaprovoste/deserializer

AST-based Static Code Analyzer with Agentic LLM-Powered Relationship Mapping to discover Python RCE paths and deep deserialization chains on AI, LLM,…

ai-securitycode-analysisexploitation+6
3 days ago
glassworm-hunter preview

glassworm-hunter

GitHubafine-com/glassworm-hunter

Detects GlassWorm supply chain attack payloads by scanning VS Code extensions, npm/PyPI packages, and git repos for invisible Unicode payloads,…

code-analysisdevsecopseducation+9
304 months ago
Previous12…14Next