Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
264 results
Dropper-GCleaner-C2-Infrastructure-Kernel-Driver-PowerShell-Conhost-Payload-Analysis preview

Dropper-GCleaner-C2-Infrastructure-Kernel-Driver-PowerShell-Conhost-Payload-Analysis

GitHubkaandemir993/dropper-gcleaner-c2-infrastructure-kernel-driver-powershell-conhost-payload-analysis

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

binary-analysiscommand-and-controldata-exfiltration+6
1
1 day ago
reconkg preview

reconkg

GitHubxghst0/reconkg

Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

network-securitypenetration-testingthreat-feeds-aggregators+2
0 days ago
RedLine-Stealer-C2-Defender-Bypass-Payload-Analysis preview

RedLine-Stealer-C2-Defender-Bypass-Payload-Analysis

GitHubkaandemir993/redline-stealer-c2-defender-bypass-payload-analysis

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

command-and-controldata-exfiltrationmalware-analysis+4
17 days ago
Vulnerability Database -- VulnBook preview

Vulnerability Database -- VulnBook

GitLabt-beckett/vulnbook

Static vulnerability findings tracker with parallel search across 11 CVE databases, EPSS enrichment, CISA KEV badges, coordinated disclosure…

defensive-toolsincident-responsethreat-feeds-aggregators+2
6 days ago
Malware-IOCs preview

Malware-IOCs

GitHubexecutemalware/malware-iocs
curated-resourcesdigital-forensicsincident-response+3
5091 year ago
threat-intel preview

threat-intel

GitHubvolexity/threat-intel

Signatures and IoCs from public Volexity blog posts.

defensive-toolsintrusion-detectionioc-management+4
3691 month ago
IoCs preview

IoCs

GitHubsophoslabs/iocs

Sophos-originated indicators-of-compromise from published reports

curated-resourcesioc-managementmalware-analysis+1
6689 days ago
ExtractedDefender preview

ExtractedDefender

GitHubhackinglz/extracteddefender

Collection of extracted Microsoft Defender data for security research purposes

curated-resourcesmalware-analysisreverse-engineering+1
2384 years ago
Gozi preview

Gozi

GitHubpr0xylife/gozi
command-and-controldata-exfiltrationmalware-analysis+4
54 years ago
VN_daily_samples preview

VN_daily_samples

GitHubm4now4r/vn_daily_samples
curated-resourcesmalware-analysisthreat-intelligence
62 years ago
ThreatIntelligenceDiscordBot preview

ThreatIntelligenceDiscordBot

GitHubvxunderground/threatintelligencediscordbot

Gets updates from various clearnet domains and ransomware threat actor domains

information-gatheringosintthreat-feeds-aggregators+1
4342 years ago
refinery preview

refinery

GitHubbinref/refinery

Composable command-line toolkit for malware triage and binary analysis: decode, decrypt, carve, and extract indicators from malicious files and…

binary-analysiscryptographyforensics+4
86814 days ago
Sigma-Rules preview

Sigma-Rules

GitHubthe-dfir-report/sigma-rules

Rules generated from our investigations.

curated-resourcesdefensive-toolsincident-response+3
2131 month ago
memOptix preview

memOptix

GitHubblueteam0ps/memoptix

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

digital-forensicsforensicsincident-response+2
983 years ago
ioc-finder preview

ioc-finder

GitHubfhightower/ioc-finder

Python library for extracting Indicators of Compromise, URLs, IP addresses, hashes, and email addresses from text using declarative grammars instead…

ioc-managementmalware-analysisthreat-intelligence+1
18411 days ago
iocs preview

iocs

GitHubthreatlabz/iocs

Curated Indicators of Compromise and YARA rules from Zscaler ThreatLabz public reports for threat hunting, malware research, and detection…

curated-resourcesincident-responseioc-management+4
8110 days ago
phishurl-list preview

phishurl-list

GitHubjpcertcc/phishurl-list

Curated dataset of confirmed phishing URLs from JPCERT/CC, including confirmation date, full URL, and spoofed brand for threat intelligence and…

curated-resourcesphishingthreat-feeds-aggregators+1
2101 month ago
Zeek-Intelligence-Feeds preview

Zeek-Intelligence-Feeds

GitHubcriticalpathsecurity/zeek-intelligence-feeds

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

command-and-controlintrusion-detectionnetwork-security+3
39913h 43m ago
Previous12…15Next