Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
25 results
wtfis preview

wtfis

GitHubpirxthepilot/wtfis

Passive hostname, domain and IP lookup tool for non-robots

dns-analysisinformation-gatheringosint+3
1.8k4 months ago
gundog preview

gundog

GitHubjangeisbauer/gundog

PowerShell-based guided hunting tool for Microsoft 365 Defender that automates alert triage, entity enrichment, and IOC lookups across email and…

incident-responseinformation-gatheringlog-analysis+2
535 years ago
ThreatIngestor preview

ThreatIngestor

GitHubpedramamini/threatingestor

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

information-gatheringintrusion-detectionioc-management+3
9243 months ago
cve-search preview

cve-search

GitHubcve-search/cve-search

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.

database-securityinformation-gatheringioc-management+4
2.6k1 month ago
intelmq preview

intelmq

GitHubcerttools/intelmq

Message-queue-based threat intelligence feed collector and processor for CSIRTs. Automates ingestion, normalization, and sharing of security…

incident-responseinformation-gatheringintrusion-detection+6
1.1k4 months ago
machinae preview

machinae

GitHubhurricanelabs/machinae

Automated security intelligence collector that queries public feeds and APIs for threat data on IPs, domains, URLs, hashes, and SSL fingerprints,…

information-gatheringosintthreat-feeds-aggregators+1
5362 months ago
PatrowlHears preview

PatrowlHears

GitHubpatrowl/patrowlhears

Real-time vulnerability intelligence platform aggregating CVE, exploits, and threat news for SOC and threat hunting teams.

defensive-toolsexploitationinformation-gathering+3
1675 months ago
expel-intel preview

expel-intel

GitHubexpel-io/expel-intel

Curated repository of IOCs and threat intelligence from the Expel Intel Team, providing actionable indicators for detection and response workflows.

information-gatheringioc-managementosint+2
622 days ago
ThreatKB preview

ThreatKB

GitHubinquest/threatkb

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

information-gatheringioc-managementmalware-analysis+2
1045 months ago
abusech preview

abusech

GitHubrollwagen/abusech

Command-line client for abuse.ch threat intelligence APIs, enabling query and retrieval of Indicators of Compromise (IOCs) for threat hunting and…

information-gatheringioc-managementthreat-feeds-aggregators+1
18 months ago
GOSINT preview
Archived

GOSINT

GitHubciscocsirt/gosint

Framework for collecting, processing, and exporting high-quality indicators of compromise (IOCs) to enrich security operations with structured threat…

information-gatheringioc-managementosint+3
5603 years ago
Argos preview

Argos

GitLabfunctori/argos/argos

Analysis and Representation of Graphs of Suspicious Operations (Analyse et Représentation des Graphes des Opérations Suspectes)

anomaly-detectiondigital-forensicsinformation-gathering+3
14 days ago
iocextract preview

iocextract

GitHubpedramamini/iocextract

Defanged Indicator of Compromise (IOC) Extractor.

digital-forensicsforensicsinformation-gathering+5
5831 year ago
vuln-list-redhat preview

vuln-list-redhat

GitHubaquasecurity/vuln-list-redhat

Structured repository of Red Hat security advisories and vulnerability metadata, designed for integration into automated vulnerability scanning and…

information-gatheringthreat-feeds-aggregatorsthreat-intelligence+1
151 day ago
darkgrid preview

darkgrid

GitHubkaal22/darkgrid

3D threat intelligence dashboard that visualizes malicious infrastructure from OSINT sources like AbuseIPDB and OpenPhish, with a live threat feed,…

dns-analysisinformation-gatheringnetwork-security+4
135 months ago
ARTIF preview

ARTIF

GitHubcred-club/artif

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

information-gatheringintrusion-detectionioc-management+5
2493 years ago
RansomLook preview

RansomLook

GitHubransomlook/ransomlook

Automated ransomware and leak-site OSINT tracker scraping dark-web markets, monitoring victim posts, enriching actor/crypto data, and sending…

crawlerdefensive-toolsinformation-gathering+3
6595 days ago
Crawlector preview

Crawlector

GitHubmfmokbel/crawlector

Threat hunting framework that scans websites for malicious objects using Yara rules, URLhaus feeds, TLSH hashing, and deep object extraction, with…

crawlerinformation-gatheringmalware-analysis+5
1238 months ago
Previous12Next