Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
134 results
agent-scanning preview

agent-scanning

GitHubvigil-xy/agent-scanning

Unified dashboard to monitor, govern, and audit AI agents in real-time. Enforce budgets, detect policy violations, and export compliance reports for…

ai-securityapi-securitycloud-security+2
6
6 months ago
EmailXpose preview

EmailXpose

GitLabroxanne_ardary/emailxpose

EmailXpose is an open source AI-powered email security system that detects phishing, spam, scams, malware, and social engineering attacks. It goes…

ai-securitydynamic-analysis-sandboxingemail-security+8
1 month ago
Watcher preview

Watcher

GitHubthalesgroup-cert/watcher

AI-powered threat intelligence platform for automated CVE/ransomware monitoring, domain surveillance, data leak detection, and incident response with…

ai-securitydata-exfiltrationdns-subdomain-enumeration+7
1.4k16 days ago
MacPersistenceChecker preview

MacPersistenceChecker

GitHubpinperepette/macpersistencechecker

macOS persistence mechanism scanner with code signature verification and timeline tracking.

ai-securitydigital-forensicseducation+7
2693 months ago
Awesome-OSINT-List preview

Awesome-OSINT-List

GitHubastrosp/awesome-osint-list

📡 Comprehensive collection of OSINT tools for cybersecurity professionals, researchers, and bug bounty hunters. Topics: information gathering,…

ai-securityctfcurated-resources+8
4.5k11 days ago
Vulnerability-Disclosures preview

Vulnerability-Disclosures

GitHubmandiant/vulnerability-disclosures

Curated repository of vulnerability disclosures from Mandiant, including CVEs discovered through internal research, red team assessments, and wild…

exploitationpenetration-testingred-teaming+3
2244 days ago
ai-llm-red-team-handbook preview

ai-llm-red-team-handbook

GitHubshiva108/ai-llm-red-team-handbook

AI / LLM Red Team Field Manual & Consultant’s Handbook

adversarial-attackai-securityeducation+6
3354 months ago
Gideon preview

Gideon

GitHubcogensec/gideon

Autonomous security operations agent for threat intelligence, vulnerability research, IOC analysis, and red teaming. Supports dual-mode operations…

ai-securitycommand-and-controleducation+9
343 months ago
Offensive-OSINT-Tools preview

Offensive-OSINT-Tools

GitHubwddadk/offensive-osint-tools

Curated list of OSINT tools for offensive security, covering email harvesting, subdomain enumeration, threat intelligence, and social engineering for…

curated-resourcesdns-analysisemail-harvesting+8
1.3k1 month ago
RedELK preview

RedELK

GitHuboutflanknl/redelk

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

defensive-toolsincident-responseinformation-gathering+4
2.7k10 months ago
VECTR preview

VECTR

GitHubsecurityriskadvisors/vectr

Track red and blue team testing activities to measure detection and prevention capabilities across attack scenarios, with campaign management, TTP…

educationlabs-practicepenetration-testing+2
1.6k1 year ago
vuln-list-update preview

vuln-list-update

GitHubaquasecurity/vuln-list-update

Automated vulnerability data aggregator that collects advisories from NVD, OSV, Alpine, Red Hat, and 20+ other sources into a unified parsable format…

cloud-securitydevsecopsioc-management+2
1975 days ago
trivy-db preview

trivy-db

GitHubaquasecurity/trivy-db

Build and manage Trivy vulnerability databases by aggregating security advisories from NVD, Red Hat, Debian, and more. A CLI tool and library for…

threat-intelligenceutilities-frameworksvulnerability-analysis
3473 days ago
RTA preview

RTA

GitHubflipkart-incubator/rta

Red team Arsenal - An intelligent scanner to detect security vulnerabilities in company's layer 7 assets.

dns-subdomain-enumerationinformation-gatheringnetwork-mapping+6
4153 years ago
InfraGuard preview

InfraGuard

GitHubwhispergate/infraguard

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

anti-botcommand-and-controldns-analysis+8
3211 month ago
vuln-list-redhat preview

vuln-list-redhat

GitHubaquasecurity/vuln-list-redhat

Red Hat security advisories

information-gatheringthreat-feeds-aggregatorsthreat-intelligence+1
178h 11m ago
BloodSOCer preview

BloodSOCer

GitHubscoubi/bloodsocer

Aggregates MITRE ATT&CK, Sigma, and Atomic Red Team data into BloodHound graphs so SOC analysts can map detection coverage, identify gaps, and…

defensive-toolsincident-responsethreat-feeds-aggregators+1
619 months ago
rinhit preview

rinhit

GitLabtoxy4ny/rinhit

Collects macOS and iOS artifacts to build timelines of network activity, cross-device identity, and physical location correlation for reconnaissance…

bluetooth-securitydigital-forensicsinformation-gathering+6
1 month ago
Previous12…8Next