Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
41 results
osv.dev preview

osv.dev

GitHubgoogle/osv.dev

Open source vulnerability DB and triage service.

devsecopssupply-chain-securitythreat-intelligence+2
2.9k1 day ago
Cortex preview

Cortex

GitHubthehive-project/cortex

Cortex: a Powerful Observable Analysis and Active Response Engine

digital-forensicsincident-responseinformation-gathering+4
1.6k1 month ago
klara preview

klara

GitHubkasperskylab/klara

Kaspersky's GReAT KLara

information-gatheringmalware-analysisthreat-intelligence+1
7282 years ago
rita preview

rita

GitHubactivecm/rita

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

anomaly-detectioncommand-and-controldns-analysis+4
6242 months ago
dataviz preview

dataviz

GitHubopendns/dataviz

OpenDNS Data Visualization Framework

dns-analysisinformation-gatheringnetwork-security+1
26510 years ago
Aegis preview

Aegis

GitHubantropos17/aegis

Open-source EDR for AI agents. Monitor processes, files, network, and behavior of autonomous AI agents.

ai-securityanomaly-detectiondefensive-tools+4
1436 days ago
typofinder preview

typofinder

GitHubnccgroup/typofinder

A finder of domain typos showing country of IP address

dns-subdomain-enumerationinformation-gatheringosint+2
1662 years ago
HallWatch preview

HallWatch

GitHubzypherion-technologies/hallwatch

Usermode detector that catches indirect syscalls. Traps Hell's Hall, Tartarus' Gate, RecycledGate, and VEH syscalls & Many more.

binary-analysisdefensive-toolsincident-response+2
872 months ago
german-owasp-day preview

german-owasp-day

GitHubowasp/german-owasp-day

German OWASP Day conference site & presentation archive

curated-resourceseducationpapers-research+2
2414 days ago
xioc preview

xioc

GitHubassafmo/xioc

Extract indicators of compromise from text, including "escaped" ones.

forensicsinformation-gatheringioc-management+3
1636 years ago
loboguara preview

loboguara

GitHubolivsec/loboguara
data-exfiltrationdns-subdomain-enumerationinformation-gathering+6
731 year ago
wafaray preview

wafaray

GitHubalt3kx/wafaray

Enhance your malware detection with WAF + YARA (WAFARAY)

defensive-toolslabs-practicemalware-analysis+4
1073 years ago
vexhub preview

vexhub

GitHubaquasecurity/vexhub
devsecopsinformation-gatheringsupply-chain-security+2
395 months ago
pytm preview

pytm

GitHubizar/pytm

A Pythonic framework for threat modeling

devsecopseducationthreat-intelligence+1
236 days ago
Antiphishing preview

Antiphishing

GitHubjulioliraup/antiphishing

Advanced Phishing Protection: Suricata rulesets open and free

defensive-toolsdns-analysisids-ips-evasion+6
3012h 32m ago
bunitu_tests preview

bunitu_tests

GitHubhasherezade/bunitu_tests

Scripts for communication with Bunitu Trojan C&Cs

command-and-controlmalware-analysispenetration-testing+2
1910 years ago
zdr preview

zdr

GitHubabubakarsiddik31/zdr
cloud-securitycurated-resourcesdata-exfiltration+3
264 months ago
kratosminifilter preview

kratosminifilter

GitHubmukendi/kratosminifilter

Kratos is a high-performance Windows File System Minifilter driver designed to detect, block, and permanently immunize

anomaly-detectiondefensive-toolsincident-response+2
418 days ago
Previous123Next