Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
248 results
SupplyChainAttacks preview

SupplyChainAttacks

GitHubbinarly-io/supplychainattacks
curated-resourceseducationfirmware-analysis+4
2821 year ago
Yara-detection-rules preview

Yara-detection-rules

GitHubembee-research/yara-detection-rules

Yara Rules for Modern Malware

curated-resourcesdefensive-toolsintrusion-detection+2
802 years ago
YARA_Rules preview

YARA_Rules

GitHubmalgamy/yara_rules
curated-resourcesdefensive-toolsincident-response+3
653 years ago
fastfluxanalysis preview

fastfluxanalysis

GitHubstaaldraad/fastfluxanalysis

Scripts to detect Fast-Flux and DGA using DNS query responses

dns-analysisnetwork-securityosint+2
459 years ago
Sigma preview

Sigma

GitHubembee-research/sigma

A repository to release detection rules to the public

curated-resourcesdefensive-toolsincident-response+3
83 years ago
CVE-2026-8863 preview

CVE-2026-8863

GitHub0xbekoo/cve-2026-8863

Hashes and shim versions for the UEFI Secure Boot shims affected by CVE-2026-8863

curated-resourcesfirmware-analysishardware-security+3
127 days ago
solarwinds-sunburst-cve-2020-10148 preview

solarwinds-sunburst-cve-2020-10148

GitHubhorrister/solarwinds-sunburst-cve-2020-10148
cloud-securitydns-analysiseducation+6
12 months ago
My-Sigma-Rule-Collection preview

My-Sigma-Rule-Collection

GitHub17patmaks/my-sigma-rule-collection

Sigma Rule for CVE-2025-49666

curated-resourceseducationintrusion-detection+3
5 months ago
notepadpp-supply-chain-iocs preview

notepadpp-supply-chain-iocs

GitHubrenat0z3r0/notepadpp-supply-chain-iocs

IoCs and detection rules for the Notepad++ supply chain attack (CVE-2025-15556) — Lotus Blossom APT, June–December 2025. Includes Falcon LogScale…

educationforensicsincident-response+6
16 months ago
VolWeb preview

VolWeb

GitHubk1nd0ne/volweb

A centralized and enhanced memory analysis platform

digital-forensicseducationforensics+5
5371 month ago
grafeo preview

grafeo

GitHubmnemonic-no/grafeo

Open platform for modelling, collection and exchange of knowledge

data-exfiltrationinformation-gatheringthreat-intelligence+1
1651 year ago
CrowdFMS preview
Archived

CrowdFMS

GitHubcrowdstrike/crowdfms

CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by leveraging the…

api-securitydynamic-analysis-sandboxingmalware-analysis+1
1337 years ago
AIL-framework preview

AIL-framework

GitHubcircl/ail-framework

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

crawlerdata-exfiltrationdigital-forensics+6
1.4k4 days ago
ACE preview

ACE

GitHubinvoke-ir/ace

Automated, Collection, and Enrichment Platform

digital-forensicsforensicsincident-response+2
3258 years ago
SilkETW preview
Archived

SilkETW

GitHubmandiant/silketw
anomaly-detectiondefensive-toolsdigital-forensics+8
8523 years ago
Tyr preview

Tyr

GitLabcyberactivity/tyr

Tools collection to explore CVE and theirs associated data.

information-gatheringthreat-intelligenceutilities-frameworks+1
3 months ago
spiderfoot preview

spiderfoot

GitHubsmicallef/spiderfoot

Automates OSINT data collection and analysis for threat intelligence, attack surface mapping, and reconnaissance. Integrates 200+ modules for DNS,…

dns-analysisemail-harvestinginformation-gathering+7
21.2k2 years ago
Loki preview

Loki

GitHubneo23x0/loki

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…

digital-forensicsforensicshash-analysis+5
3.8k7 months ago
Previous1234…14Next