Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
247 results
agentic-threat-hunting-framework preview

agentic-threat-hunting-framework

GitHubnebulock-inc/agentic-threat-hunting-framework

ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.

ai-securityeducationincident-response+7
361
7 days ago
Security-Detections-MCP preview

Security-Detections-MCP

GitHubmhaggis/security-detections-mcp

MCP to help Defenders Detection Engineer Harder and Smarter

ctfcurated-resourceseducation+6
4742 months ago
ATTACKdatamap preview

ATTACKdatamap

GitHubolafhartong/attackdatamap

A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework

educationinformation-gatheringthreat-feeds-aggregators+2
3575 years ago
Honeypot-Project preview

Honeypot-Project

GitHubowasp/honeypot-project

Deploy web honeypots to capture emerging attack data, analyze ModSecurity audit logs via ELK, and share threat intelligence with MISP for…

defensive-toolseducationincident-response+5
10810 days ago
S1EM preview

S1EM

GitHubv1d1an/s1em

This project is a SIEM with SIRP and Threat Intel, all in one.

educationforensicsincident-response+6
4621 year ago
patoolkit preview

patoolkit

GitHubpentesteracademy/patoolkit

PA Toolkit is a collection of traffic analysis plugins focused on security

dns-analysiseducationnetwork-security+3
4336 years ago
threatspec preview

threatspec

GitHubthreatspec/threatspec

threatspec - continuous threat modeling, through code

devsecopseducationthreat-intelligence+1
3915 years ago
DGA preview

DGA

GitHubandrewaeva/dga

The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research the…

dns-analysiseducationmachine-learning+4
2269 years ago
ad-honeypot-autodeploy preview

ad-honeypot-autodeploy

GitHubtothi/ad-honeypot-autodeploy

Deploy a small, intentionally insecure, vulnerable Windows Domain for RDP Honeypot fully automatically.

educationlabs-practicelog-analysis+3
2593 years ago
pwnspoof preview

pwnspoof

GitHubpunk-security/pwnspoof

Pwnspoof repository

ctfeducationincident-response+4
2662 years ago
kestrel-lang preview

kestrel-lang

GitHubopencybersecurityalliance/kestrel-lang

Kestrel threat hunting language: building reusable, composable, and shareable huntflows across different data sources and threat intel.

educationinformation-gatheringlabs-practice+2
3231 year ago
SpotifyC2 preview

SpotifyC2

GitHubnirvanaon/spotifyc2

Windows-based C2 research tool that uses Spotify playlists as a command channel and Telegram for output delivery, demonstrating cloud-assisted…

command-and-controleducationosint+3
1781 month ago
CVE2PoC preview

CVE2PoC

GitHub0liverflow/cve2poc

CVE2PoC is a tool that helps penetration testers, bug hunters, and security researchers quickly find public exploits or PoCs related to a CVE ID

educationexploitationinformation-gathering+5
1481 month ago
awesome-reverse-engineering-and-malware-analysis preview

awesome-reverse-engineering-and-malware-analysis

GitHubzx41r/awesome-reverse-engineering-and-malware-analysis

A verified map of reverse engineering and malware analysis. Disassemblers, unpacking, exploit dev, fuzzing, DFIR, and the deep-cut writeups other…

binary-analysisbinary-exploitationctf+8
9022 days ago
Threat-Hunting preview

Threat-Hunting

GitHuba2awais/threat-hunting

Curated collection of threat hunting and detection queries for CrowdStrike Falcon (CQL) and Microsoft Defender XDR (KQL), mapped to MITRE ATT&CK…

educationincident-responseinformation-gathering+4
8213 days ago
TTPRunner preview

TTPRunner

GitHubantonlovesdnb/ttprunner

Run TTPs, with AI!

command-and-controleducationexploit-frameworks+7
1406 months ago
soc-faker preview

soc-faker

GitHubswimlane/soc-faker

A python package for use in generating fake data for SOC and security automation.

defensive-toolseducationincident-response+4
1751 year ago
socbench preview

socbench

GitHubdeeptempo/socbench

An Open Harness and Benchmark for AI in Cybersecurity Operations.

ai-securityeducationmachine-learning+2
571 day ago
Previous1…567…14Next