Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
104 results
flare-floss preview

flare-floss

GitHubmandiant/flare-floss

FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

malware-analysisreverse-engineeringstatic-analysis
4.1k21h 59m ago
publications preview

publications

GitHubtrailofbits/publications

Publications from Trail of Bits

binary-analysiscryptographyctf+5
1.9k6 days ago
fernflower preview

fernflower

GitHubjetbrains/fernflower

Decompiler from Java bytecode to Java, used in IntelliJ IDEA.

binary-analysisreverse-engineeringstatic-analysis
4.4k10 days ago
auto-re-agent preview

auto-re-agent

GitHubdryxio/auto-re-agent

Open-source AI reverse-engineering agent using Ghidra and LLMs to reconstruct and validate C/C++ functions from binaries.

ai-assisted-reversingbinary-analysisbinary-exploitation+5
1.4k28 days ago
python-decompile3 preview

python-decompile3

GitHubrocky/python-decompile3

Python decompiler for 3.7-3.8 Stripped down from uncompyle6 so we can refactor and start to fix up some long-standing problems

binary-analysisdebuggerseducation+3
1.3k1 month ago
jsluice preview

jsluice

GitHubbishopfox/jsluice

Extract URLs, paths, secrets, and other interesting bits from JavaScript

code-analysisinformation-gatheringpenetration-testing+3
1.9k2 years ago
JSONPath preview

JSONPath

GitHubjsonpath-plus/jsonpath

A fork of JSONPath from http://goessner.net/articles/JsonPath/

code-analysisgeneral-purpose-utilitiesscripting-automation+2
1.2k3 days ago
talisman preview

talisman

GitHubthoughtworks/talisman

Git hook-based secret scanner that detects tokens, passwords, and private keys in outgoing changesets, preventing sensitive data from being committed…

code-analysisdevsecopssecret-detection+1
2.1k9 months ago
dexcalibur preview

dexcalibur

GitHubreversenseorg/dexcalibur

[Official] Android reverse engineering tool focused on dynamic instrumentation automation leveraging Frida. It disassembles dex, analyzes it…

android-securitybinary-analysisdebuggers+5
1.2k1 month ago
ddisasm preview

ddisasm

GitHubgrammatech/ddisasm

Datalog-based disassembler producing reassemblable assembly from ELF/PE binaries, with GTIRB intermediate representation for binary analysis and…

binary-analysisdebuggersfirmware-analysis+2
8601 month ago
decomp2dbg preview

decomp2dbg

GitHubmahaloz/decomp2dbg

A plugin to introduce interactive symbols into your debugger from your decompiler

binary-analysisbinary-exploitationdebuggers+3
8141 month ago
coruna preview

coruna

GitHubmatteyeux/coruna

deobfuscated JS and blobs from https://b27[.]icu, first attempt at using claude

malware-analysisreverse-engineeringstatic-analysis
2845 months ago
quokka preview

quokka

GitHubquarkslab/quokka

Exports disassembly from IDA Pro, Ghidra, and Binary Ninja into compact protobuf files for fast, standalone binary analysis and program manipulation…

binary-analysiscode-analysisreverse-engineering+2
22516 days ago
AndroPyTool preview

AndroPyTool

GitHubalexmyg/andropytool

A framework for automated extraction of static and dynamic features from Android applications

android-securitydynamic-analysis-sandboxingmalware-analysis+2
3816 years ago
Apkatshu preview

Apkatshu

GitHub0xpwny/apkatshu

Apkatshu is a Tool for extracting urls , emails , ip address , and interesting data from APK files

android-securityinformation-gatheringmobile-security+1
2523 years ago
Vba2Graph preview

Vba2Graph

GitHubmalwarecantfly/vba2graph

Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.

code-analysismalware-analysisreverse-engineering+1
2835 years ago
BFScan preview

BFScan

GitHubblackfan/bfscan

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…

android-securityapi-securityinformation-gathering+5
2568 months ago
Apepe preview

Apepe

GitHub0xdsm/apepe

Extracts app settings, permissions, deeplinks, and SSL pinning bypass suggestions from Android APK files via static analysis of AndroidManifest.xml,…

android-securityinformation-gatheringmobile-app-pentesting+1
15610 months ago
Previous123456Next