Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
627 results
scambuster preview

scambuster

GitHublaugiov/scambuster

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

ai-securitydefensive-toolsemail-security+5
13
3 days ago
CVE-2007-2447-Exploitation-SIEM-Detection-Lab preview

CVE-2007-2447-Exploitation-SIEM-Detection-Lab

GitHubharshiys/cve-2007-2447-exploitation-siem-detection-lab

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

educationexploitationexploit-frameworks+7
5 days ago
Vulnerability Findings Database -- VulnBook-deletion_scheduled-85395299 preview

Vulnerability Findings Database -- VulnBook-deletion_scheduled-85395299

GitLabt-beckett/vulnbook-deletion_scheduled-85395299

Offline-first vulnerability findings tracker that searches 11 CVE databases in parallel, adds EPSS/KEV enrichment, and manages coordinated disclosure…

defensive-toolsinformation-gatheringthreat-feeds-aggregators+2
5 days ago
Vulnerability Database -- VulnBook preview

Vulnerability Database -- VulnBook

GitLabt-beckett/vulnbook

Static vulnerability findings tracker with parallel search across 11 CVE databases, EPSS enrichment, CISA KEV badges, coordinated disclosure…

defensive-toolsincident-responsethreat-feeds-aggregators+2
6 days ago
AISA-Scanner preview

AISA-Scanner

GitHubgmh5225/aisa-scanner

AISA-Scanner is an AI-powered autonomous vulnerability scanner that maps CVEs to metasploit exploits, MITRE, CEH, and SANS, delivering intelligent,…

ai-securityexploitationpenetration-testing+6
11 year ago
IntelligentProcessLifecycle preview

IntelligentProcessLifecycle

GitHubd3sre/intelligentprocesslifecycle

The Intelligent Process Lifecycle of Active Cyber Defenders

configuration-auditingcurated-resourceseducation+6
343 years ago
YARAify preview

YARAify

GitHubabusech/yaraify

Open YARA scan- and search engine

hash-analysismalware-analysisstatic-analysis+1
261 year ago
ExtractedDefender preview

ExtractedDefender

GitHubhackinglz/extracteddefender

Collection of extracted Microsoft Defender data for security research purposes

curated-resourcesmalware-analysisreverse-engineering+1
2384 years ago
BruteRatel-DetectionTools preview

BruteRatel-DetectionTools

GitHubimmersive-labs-sec/bruteratel-detectiontools

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

command-and-controldefensive-toolsincident-response+3
674 years ago
Raccine preview

Raccine

GitHubneo23x0/raccine

A Simple Ransomware Vaccine

anomaly-detectiondefensive-toolsincident-response+3
9822 years ago
mwcfg preview

mwcfg

GitHubc3rb3ru5d3d53c/mwcfg

A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck

binary-analysisdefensive-toolsmalware-analysis+3
1342 years ago
akamai-security-research preview

akamai-security-research

GitHubakamai/akamai-security-research

This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.

exploitationioc-managementmalware-analysis+2
5374 months ago
ThreatIntelligenceDiscordBot preview

ThreatIntelligenceDiscordBot

GitHubvxunderground/threatintelligencediscordbot

Gets updates from various clearnet domains and ransomware threat actor domains

information-gatheringosintthreat-feeds-aggregators+1
4342 years ago
APT_REPORT preview

APT_REPORT

GitHubblackorbird/apt_report

Interesting APT Report Collection And Some Special IOCs

curated-resourcesmalware-analysisthreat-intelligence
3.1k10 days ago
dotnetfile preview

dotnetfile

GitHubpan-unit42/dotnetfile
binary-analysisforensicshash-analysis+4
1196 months ago
Sigma-Rules preview

Sigma-Rules

GitHubthe-dfir-report/sigma-rules

Rules generated from our investigations.

curated-resourcesdefensive-toolsincident-response+3
2131 month ago
strelka-ui preview

strelka-ui

GitHubtarget/strelka-ui

Strelka Web UI for File Submission and Analysis

authenticationdefensive-toolslog-analysis+2
7624 days ago
Abused-Legitimate-Services preview

Abused-Legitimate-Services

GitHubbushidouk/abused-legitimate-services

Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups

curated-resourcespapers-researchphishing+2
603 years ago
Previous12…35Next