Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
264 results
raccoon_config preview

raccoon_config

GitHubnexusfuzzy/raccoon_config

Scans a list of raccoon servers from Tria.ge and extracts the config

dynamic-analysis-sandboxingmalware-analysisthreat-intelligence
153 years ago
icannTLD preview

icannTLD

GitHubcorelight/icanntld

Zeek script using the official ICANN Top-Level Domain (TLD) list with the Input Framework to extract the relevant information from a DNS query and…

dns-analysisinformation-gatheringintrusion-detection+3
81 year ago
confusable-vision preview

confusable-vision

GitHubpaultendo/confusable-vision

793 confusable pairs missing from Unicode TR39, world-first cross-script dataset, font-aware SSIM scoring across 230 fonts and 22,000+ characters

curated-resourceseducationosint+5
115 months ago
presentations preview

presentations

GitHubsecurepeacock/presentations

Slides and materials from conference presentations

curated-resourceseducationincident-response+3
94 months ago
AI-driven-MITRE-Attack preview

AI-driven-MITRE-Attack

GitHubmouna23/ai-driven-mitre-attack

This repository demonstrates a machine learning pipeline for detecting MITRE ATT&CK techniques from logs and enriching the output using a local LLM.

anomaly-detectioneducationintrusion-detection+3
89 months ago
coeus-ci preview

coeus-ci

GitHubopfour/coeus-ci

Competitive Intelligence from public data sources. Named after Coeus, the Greek Titan of the inquisitive mind.

curated-resourcesdns-analysiseducation+6
1 month ago
GOXLR-malware-family preview

GOXLR-malware-family

GitHubdestiny-creates/goxlr-malware-family

Malware analysis from the domain goxlr.net

digital-forensicsinformation-gatheringioc-management+3
42 months ago
100DaysofYARA preview

100DaysofYARA

GitHubsquiblydoo/100daysofyara

Rules shared by the community from 100 Days of YARA 2026

curated-resourceseducationlabs-practice+3
55 months ago
bleeding_onions preview

bleeding_onions

GitHub0xinf0/bleeding_onions

Script to find Exit and Guard nodes in the Tor Network, that are still suffering from CVE-2014-0160

information-gatheringnetwork-securityreconnaissance+2
612 years ago
shazhupan preview

shazhupan

GitHubpacketrat/shazhupan

Slides and IoCs from pig butchering research

curated-resourceseducationosint+2
52 years ago
redtail-ioc preview

redtail-ioc

GitHublukeslp/redtail-ioc

IOCs and a read-only triage checklist from a real Linux root compromise: RedTail miner, XorDDoS persistence, MoneroOcean miner, DirtyFrag LPE…

curated-resourcesdigital-forensicseducation+6
21 month ago
Orbit Tracer preview

Orbit Tracer

GitLabrajus-agent/orbit-tracer

Orbit Tracer Security Agent for intelligent security remediation. Traces vulnerability blast radius using Orbit's knowledge graph, scores risk,…

ai-securitycode-analysisdevsecops+3
1 month ago
Wireshark preview

Wireshark

GitHubkirkdjohnson/wireshark

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…

command-and-controldigital-forensicseducation+9
32 years ago
Confluence-CVE-2022-26134 preview

Confluence-CVE-2022-26134

GitHubarchanchoudhury/confluence-cve-2022-26134

This repository talks about Zero-Day Exploitation of Atlassian Confluence, it's defense and analysis point of view from a SecOps or Blue Team…

educationexploitationforensics+6
44 years ago
shai-scan preview

shai-scan

GitHubdigi4care/shai-scan

Zero-dependency CLI scanner for npm/PyPI supply chain compromises. Detects compromised packages in lockfiles and system-level IOCs from attacks like…

code-analysisdevsecopsincident-response+6
3 months ago
panrapidcheck preview

panrapidcheck

GitHubhackinglz/panrapidcheck

Extract useful information from PANOS support file for CVE-2024-3400

forensicsincident-responseioc-management+3
21 year ago
Feb2023-CVE-2021-21974-OSINT preview

Feb2023-CVE-2021-21974-OSINT

GitHubn2x4/feb2023-cve-2021-21974-osint

Analysis of the ransom demands from Shodan results

cryptographyinformation-gatheringosint+3
23 years ago
pulse-meter preview

pulse-meter

GitHubrxwx/pulse-meter

Parses the System Snapshot from an Ivanti Connect Secure applicance to identify possible IOCs related to CVE-2023-46805, CVE-2024-21887 and…

exploitationforensicsincident-response+3
11 year ago
Previous1…567…15Next