Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
197 results
oversight preview

oversight

GitHubrakosn1cek/oversight

Terminal-based security auditor that statically analyzes shell scripts and commands, dynamically enforces sandboxing via Linux Landlock, and provides…

code-analysisdevsecopsdynamic-analysis-sandboxing+7
39
1 month ago
capa preview

capa

GitHubmandiant/capa

Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

ai-assisted-reversingbinary-analysiscode-analysis+10
6.2k8 days ago
malwoverview preview

malwoverview

GitHubalexandreborges/malwoverview

Multi-engine threat hunting tool for triaging malware samples, URLs, IPs, and IOCs across 20+ services including VirusTotal, Hybrid Analysis, and…

android-securityinformation-gatheringioc-management+4
4.1k18 days ago
PcapXray preview

PcapXray

GitHubsrixivas/pcapxray

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

ctfdns-analysiseducation+7
1.9k3 months ago
androidqf preview

androidqf

GitHubmvt-project/androidqf

Portable forensic acquisition tool for Android devices that extracts SMS, APKs, system logs, and process lists to identify spyware and compromise…

android-securitydata-recoverydigital-forensics+4
2522 days ago
KoodousFinder preview

KoodousFinder

GitHubhuntdownproject/koodousfinder

A simple tool to allows users to search for and analyze android apps for potential security threats and vulnerabilities

android-securitymalware-analysisosint+2
892 years ago
drovorub-hunt preview

drovorub-hunt

GitHubinsane-forensics/drovorub-hunt

A tool to assist with network-based hunting for GRU's Drovorub malware c2

incident-responseintrusion-detectionmalware-analysis+3
255 years ago
machscope preview

machscope

GitHubm10ust/machscope

macOS IPC, launchd, Mach-O, and trust relationship explorer — zero-dependency terminal-native forensic tool

binary-analysisdigital-forensicsforensics+7
6 days ago
yara preview

yara

GitHubvirustotal/yara

Rule-based pattern matching engine for identifying and classifying malware samples using textual and binary patterns, with Python bindings and…

forensicsmalware-analysisstatic-analysis+2
9.8k18h 51m ago
yara-x preview

yara-x

GitHubvirustotal/yara-x

Rust-based pattern matching engine for malware researchers. Create YARA rules with textual/binary patterns, wildcards, and regex to identify and…

binary-analysisdata-recoverydefensive-tools+14
1.3k17h 55m ago
malcom preview

malcom

GitHubtomchop/malcom

Analyzes network traffic to detect C&C servers, peer-to-peer networks, and DNS fast-flux infrastructures, cross-referencing with known malware…

malware-analysisnetwork-forensicsthreat-intelligence
1.2k8 years ago
awesome-rust-security preview

awesome-rust-security

GitHubosirislab/awesome-rust-security

Curated list of awesome projects and resources related to Rust and computer security

binary-analysiscloud-securitycryptography+9
6062 years ago
ghost preview

ghost

GitHubpandaadir05/ghost

Detects process injection and memory manipulation used by malware. Finds RWX regions, shellcode patterns, API hooks, thread hijacking, and process…

binary-analysisdefensive-toolsforensics+6
38718 days ago
BeaconHunter preview

BeaconHunter

GitHub3lp4tr0n/beaconhunter

Detect and respond to Cobalt Strike beacons using ETW.

defensive-toolsincident-responsemalware-analysis+1
5164 years ago
mwcfg preview

mwcfg

GitHubc3rb3ru5d3d53c/mwcfg

A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck

binary-analysisdefensive-toolsmalware-analysis+3
1342 years ago
malpedia-flossed preview

malpedia-flossed

GitHubmalpedia/malpedia-flossed

FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.

binary-analysiscurated-resourcesdynamic-analysis-sandboxing+8
837 months ago
amcache-evilhunter preview

amcache-evilhunter

GitHubcristianzsh/amcache-evilhunter

Parse and analyze a Windows Amcache.hve registry hive, VirusTotal integration.

digital-forensicsforensicsincident-response+2
1141 year ago
pingback preview

pingback

GitHubcorelight/pingback

Zeek package and Suricata rules to detect ICMP ping tunnels associated with the Pingback C2 malware, enabling network defense against covert…

command-and-controlintrusion-detectionmalware-analysis+2
1111 months ago
Previous12…11Next